Security News

Active Campaign Exploits Critical Apache Struts 2 Flaw in the Wild
2018-09-05 17:48

A Monero cryptomining script is spreading in an ongoing campaign using the recently disclosed critical remote command-execution flaw.

Critical Vulnerability Patched in PHP Package Repository
2018-08-31 14:29

A critical remote code execution vulnerability was recently addressed in packagist.org read more

Critical Flaws in Syringe Pump, Device Gateways Threaten Patient Safety
2018-08-30 13:34

The Qualcomm Life Capsule Datacaptor Terminal Server and the Becton Dickinson Alaris TIVA Syringe Pump allow remote access without authentication.

The 4 Critical Building Blocks for Digital Threat Hunting
2018-08-29 17:15

Having the right set of broad data is the linchpin to effective threat-hunting.

Critical Apache Struts Vulnerability Exploited in Live Attacks
2018-08-28 14:07

A Critical remote code execution vulnerability in Apache Struts 2 that was patched last week is already being abused in malicious attacks, threat intelligence firm Volexity warns. read more

PoC exploit for critical Apache Struts flaw found online
2018-08-27 15:26

The Apache Software Foundation revealed last week the existence of a critical Apache Struts flaw (CVE-2018-11776) similar to the one exploited in the Equifax breach and urged organizations and...

Critical Flaw in Fortnite Android App Lets Hackers Install Malware
2018-08-27 07:33

Security researchers from Google have publicly disclosed an extremely serious security flaw in the first Fortnite installer for Android that could allow other apps installed on the targeted...

Week in review: DNS interception, critical Apache Struts flaw, cybersecurity career pathing
2018-08-26 19:21

Here’s an overview of some of last week’s most interesting news and articles: The importance of career pathing in the cybersecurity industry A major issue facing our industry right now is a...

Apache Struts 2 Flaw Uncovered: ‘More Critical Than Equifax Bug’
2018-08-23 16:46

Apache has patched a critical remote code-execution vulnerability in Struts 2, and users should update immediately.