Security News > 2018 > May

Severe DoS Flaw Discovered in Siemens SIMATIC PLCs
2018-05-15 16:42

Siemens informed customers on Tuesday that some of its SIMATIC S7-400 CPUs are affected by a high severity denial-of-service (DoS) vulnerability. read more

Attackers Use UPnP to Sidestep DDoS Defenses
2018-05-15 16:19

Universal Plug and Play networking protocols can be exploited to bypass DDoS mitigations.

Deleted Signal Messages Linger on macOS
2018-05-15 15:57

Messages from the Signal desktop application for Mac are not deleted from the machine, but instead copied to the notifications bar, where they persist, a security researcher warns. read more

UPnP protocol exploit makes it harder for IT to shut down DDoS attacks
2018-05-15 15:46

Attackers can use the Universal Plug and Play protocol to hide packet sources during a DDoS attack.

Flaws in Open Source Components Pose Increasing Risk to Apps: Study
2018-05-15 15:29

Open source components have been increasingly used by developers, but failure to patch vulnerabilities in this type of software can pose serious risks. read more

Adobe Doles Out Second Round of Higher Priority Patches
2018-05-15 15:26

Adobe has issued a round of higher priority patches less than a week after its Patch Tuesday updates last week.

EU Data Protection May Trigger Global Ripple Effect
2018-05-15 15:05

The EU's new data protection rules that enter into force later this month are having an impact around the world as firms, including in the United States and China, move to comply. read more

#EU
Dutch Govt Dropping Kaspersky Software Over Spying Fears
2018-05-15 14:41

The Dutch government is phasing out the use of anti-virus software made by Russian firm Kaspersky Lab amid fears of possible spying, despite vehement denials by the Moscow-based cyber security...

OCR Plans Do-Over for 'Accounting of Disclosures' Proposal
2018-05-15 14:33

Agency Will Ditch Previous HIPAA Privacy Rule Revamp Plan, Seek New IdeasFederal regulators plan to craft a new proposal for revamping a HIPAA Privacy Rule provision for "accounting of...

Signal Flaw Allowed Code Execution With No User Interaction
2018-05-15 14:26

An update released over the weekend for the desktop version of the privacy-focused communications app Signal patches a critical vulnerability that could have been exploited for remote code...