Security News

Hackers Used WhatsApp 0-Day Flaw to Secretly Install Spyware On Phones
2019-05-14 06:18

Whatsapp has recently patched a severe vulnerability that was being exploited by attackers to remotely install surveillance malware on a few "selected" smartphones by simply calling the targeted...

0-Day in TP-Link SR20 Routers Allows Command Execution
2019-04-01 05:29

An unpatched vulnerability in the TP-Link SR20 smart hub and router can be exploited to achieve arbitrary command execution, a security researcher has discovered.  read more

Research Firm Offers $3 Million for iOS, Android 0-Days
2019-03-11 16:14

Vulnerability research firm Crowdfense has launched a new 0-day acquisition program and is promising payouts of up to $3 million for full-chain, previously unreported exploits.  read more

Crowdfense launches $15M 0-day 2019 global Acquisition Program
2019-03-11 01:00

Crowdfense announces the launch of a $15M global Acquisition Program dedicated to the purchase and further refinement of zero-day vulnerabilities for the most popular software platforms, including...

At least Sony offered a t-shirt, says macOS flaw finder: Bug bounties now for Macs if you want this 0-day, Apple
2019-02-07 01:41

Cupertino's tight-wads called out by fella who found password, private key leak Vid The bloke who found a password-spaffing bug in macOS says he won't divulge details on the flaw to Apple until...

0-Days Found in iPhone X, Samsung Galaxy S9, Xiaomi Mi6 Phones
2018-11-15 11:48

At Pwn2Own 2018 mobile hacking competition held in Tokyo on November 13-14, white hat hackers once again demonstrated that even the fully patched smartphones running the latest version of software...

63 New Flaws (Including 0-Days) Windows Users Need to Patch Now
2018-11-14 10:03

It's Patch Tuesday once again…time for another round of security updates for the Windows operating system and other Microsoft products. This month Windows users and system administrators need to...

Week in review: VirtualBox 0day, GPU side channel attacks, vulnerable self-encrypting SSDs
2018-11-11 18:41

Here’s an overview of some of last week’s most interesting news and articles: Five key considerations when developing a Security Operations Center Organizations should start with the following...

VirtualBox Guest-to-Host escape 0day and exploit released online
2018-11-07 13:07

Independent vulnerability researcher Sergey Zelenyuk has made public a zero-day vulnerability he discovered in VirtualBox, the popular open source virtualization software developed by Oracle....

Magecart Cybergang Targets 0days in Third-Party Magento Extensions
2018-10-24 20:17

Over two dozen third-party ecommerce plugins contain zero-day vulnerabilities being exploited in a recent Magecart campaign.