Security News

The latest on the critical RCE Cisco WebEx extension vulnerability (Help Net Security)
2017-01-30 15:14

Since Google bug hunter Tavis Ormandy revealed the existence of a remotely exploitable code execution flaw in the Cisco WebEx extension for Google Chrome last week, Cisco has pushed out several...

Cisco Warns of Critical Flaw in Teleconferencing Gear (Threatpost)
2017-01-28 14:15

Cisco Systems is warning customers of a critical vulnerability affecting three of its TelePresence MCU platform models.

Cisco Patches Critical Flaw in WebEx Chrome Plugin (Threatpost)
2017-01-24 13:32

Cisco has fixed a vulnerability in its WebEx extension for Chrome that allowed for remote code execution on computers running the plugin.

Apple Patches Critical Kernel Vulnerabilities (Threatpost)
2017-01-23 21:35

Apple released updates across its product lines, including iOS 10.2.1, patching a number of critical code execution vulnerabilities in the kernel, libarchive and WebKit.

Massive Oracle Critical Patch Update fixes 270 vulnerabilities (Help Net Security)
2017-01-19 17:22

Oracle has released the first Critical Patch Update scheduled for 2017, and it’s massive. It fixes 270 vulnerabilities across multiple products, and over 100 of them are remotely exploitable by...

Oracle Patches 270 Vulnerabilities in Year’s First Critical Patch Update (Threatpost)
2017-01-18 18:26

Oracle patched 270 vulnerabilities, many remotely exploitable, across 45 different products as part of its quarterly Critical Patch Update (CPU) on Tuesday.

Microsoft Patches Two Critical Security Vulnerabilities (Threatpost)
2017-01-10 20:52

Microsoft patched two vulnerabilities rated critical that tied to Office 2016, its Edge browser and its Local Security Authority Subsystem Service (LSASS).

Should Elections Be Classified as "Critical Infrastructure"? (Schneier on Security)
2017-01-10 12:02

I am co-author on a paper discussing whether elections be classified as "critical infrastructure" in the US, based on experiences in other countries: Abstract: With the Russian government hack of...