Security News

Apple patches critical Broadpwn vulnerability in its various OSes (Help Net Security)
2017-07-20 20:03

Apple has released security updates for iOS, macOS (Sierra, El Capitan, and Yosemite), Safari, iCloud, iTunes, watchOS and tvOS. As per usual, the same fixed Webkit flaws abound in all of the...

Critical Code Injection Flaw In Gnome File Manager Leaves Linux Users Open to Hacking (The Hackers News)
2017-07-20 03:54

A security researcher has discovered a code injection vulnerability in the thumbnail handler component of GNOME Files file manager that could allow hackers to execute malicious code on targeted...

Critical security vulnerabilities enable full control of the Segway miniPRO electric scooter (Help Net Security)
2017-07-19 19:54

New IOActive research exposes critical security vulnerabilities found in the Segway miniPRO electric scooter. If exploited, an attacker could bypass safety systems and remotely take control of the...

Organizations Slow to Patch Critical Memcached Flaws (Security Week)
2017-07-18 11:56

Tens of Thousands of Internet-Exposed Memcached Servers Are Vulnerable to Attacks Tens of thousands of servers running Memcached are exposed to the Internet and affected by several critical...

Cisco Patches Another Critical Ormandy Bug in WebEx Extension (Threatpost)
2017-07-17 20:26

Researchers Tavis Ormandy and Cris Neckar privately disclosed a critical vulnerability in Cisco's WebEx extension for Chrome and Firefox that allows for remote code execution.

Critical WebEx Flaws Allow Remote Code Execution (Security Week)
2017-07-17 19:02

Cisco has updated the WebEx extensions for Chrome and Firefox to address critical remote code execution vulnerabilities identified by researchers working for Google and Divergent Security. read more

Critical RCE Vulnerability Found in Cisco WebEx Extensions, Again — Patch Now! (The Hackers News)
2017-07-17 10:30

A highly critical vulnerability has been discovered in the Cisco Systems’ WebEx browser extension for Chrome and Firefox, for the second time in this year, which could allow attackers to remotely...

Inadequate Boundary Protections Common in Critical Infrastructure: ICS-CERT (Security Week)
2017-07-14 13:11

The assessments conducted by the U.S. Industrial Control Systems Cyber Emergency Response Team (ICS-CERT) in 2016 showed that inadequate boundary protection has remained the most prevalent...

Constant availability: Mission-critical business data challenges (Help Net Security)
2017-07-12 16:07

In today’s world, consumers expect businesses to be always-on, but 24/7/365 availability – for both data and applications – comes with specific information security challenges. “The most...