Security News

Cloud-surfing orgs under attack, Microsoft antivirus for Chrome, Windows 10 S bypass, non-RSA gigs, and more
2018-04-21 11:06

Your guide to this week in infosec Roundup Here's a roundup of this week's security news, beyond what we've already covered.…

Authentication Bypass Vulnerability Found in Auth0 Identity Platform
2018-04-07 18:06

A critical authentication bypass vulnerability has been discovered in one of the biggest identity-as-a-service platform Auth0 that could have allowed a malicious attacker to access any portal or...

Hard-coded Password Lets Attackers Bypass Lenovo's Fingerprint Scanner
2018-01-29 14:03

Lenovo has recently rolled out security patches for a severe vulnerability in its Fingerprint Manager Pro software that could allow leak sensitive data stored by the users. Fingerprint Manager Pro...

Critical "Same Origin Policy" Bypass Flaw Found in Samsung Android Browser
2017-12-29 12:33

A critical vulnerability has been discovered in the browser app comes pre-installed on hundreds of millions of Samsung Android devices that could allow an attacker to steal data from browser tabs...

AutoIt Scripting Used By Overlay Malware to Bypass AV Detection
2017-11-10 17:00

IBM’s X-Force Research team reports hackers attacking Brazilian banks are using the Windows scripting tool called AutoIt to reduces the likelihood of antivirus software detection.

Flawed BIOS Implementations Lead to Intel Boot Guard Bypass
2017-10-09 11:56

Poor firmware implementation can lead to the bypass of advanced technologies created to protect Unified Extensible Firmware Interface (UEFI) BIOS, such as Intel Boot Guard, from illegal...

Apple Silently Patched macOS Security Bypass Flaw
2017-09-28 16:05

Researchers claim Apple has silently patched a macOS vulnerability that can be exploited to bypass one of the operating system’s security features and execute arbitrary JavaScript code without...

Windows Defender Bypass Tricks OS into Running Malicious Code
2017-09-28 14:36

Researchers at CyberArk have devised a Windows Defender bypass that tricks the operating system into executing malicious code while Defender scans a benign file.

Report: North Korea Seeks Bitcoins to Bypass Sanctions
2017-09-14 12:03

JP Morgan Chief Slams Bitcoin as Fit Only for Drug Dealers, Murderers, RegimesIn cryptocurrency we trust: The government of North Korea has been turning to bitcoin exchange heists and...

Microsoft Won’t Fix Security Bypass Vulnerability in Edge (Threatpost)
2017-09-07 18:24

Microsoft is opting to stand pat and not fix a content security bypass vulnerability in its Edge browser, something researchers warn could potentially lead to the disclosure of confidential information.