Security News > 2020 > May > Week in review: Password psychology, SaltStack Salt vulnerabilities exploited, Patch Tuesday forecast

Week in review: Password psychology, SaltStack Salt vulnerabilities exploited, Patch Tuesday forecast
2020-05-10 07:10

SaltStack Salt vulnerabilities actively exploited by attackers, patch ASAP!Two vulnerabilities in SaltStack Salt, an open-source remote task and configuration management framework, are being actively exploited by attackers, CISA warns.

The US Department of Homeland Security and the UK National Cyber Security Centre issued a joint advisory in early April, warning about this increasing activity.

GitHub Code Scanning aims to prevent vulnerabilities in open source softwareGitHub has made available two new security features for open and private repositories: code scanning and secret scanning.

Password psychology: People aren't protecting themselves even though they know betterPeople aren't protecting themselves from cybersecurity risks even though they know they should, a study on password psychology by LogMeIn reveals.

Microsoft announces limited Azure Sphere bug bounty programMicrosoft has announced a new security research / bug bounty program aimed at testing and improving the security of Azure Sphere, its comprehensive IoT security solution.


News URL

http://feedproxy.google.com/~r/HelpNetSecurity/~3/aTY6SITRMpY/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Saltstack 5 2 11 17 18 48