Security News

Critical flaw opens Netgear routers to hijacking (Help Net Security)
2016-12-12 15:16

Several Netgear router models can be easily hijacked by remote, unauthenticated attackers, CERT/CC has warned on Friday. The vulnerability that allows this takeover can be exploited by simply...

Critical Vulnerability Patched in Roundcube Webmail (Threatpost)
2016-12-07 15:00

Open source webmail provider Roundcube was patched against a vulnerability that could be trivially exploited to run code on servers or access email accounts.

Drupal Fixes ‘Moderately Critical’ Vulnerabilities in Core Engine (Threatpost)
2016-11-18 18:56

Drupal fixed a handful of issues in version 7 and 8 of the content management system core engine that could have led to cache poisoning, social engineering attacks, and a denial of service condition.

Critical Linux bug opens systems to compromise (Help Net Security)
2016-11-15 20:30

Researchers from the Polytechnic University of Valencia have discovered a critical flaw that can allow attackers – both local and remote – to obtain root shell on affected Linux systems. So far,...

GitLab plugs critical flaw in its code repository manager software (Help Net Security)
2016-11-04 15:25

GitLab (the company) has pushed out security updates for both the Community Edition (CE) and Enterprise Edition (EE) of the GitLab software, fixing a critical security flaw in the “import/export...

Cisco plugs critical hole in Prime Home management platform (Help Net Security)
2016-11-03 17:48

Cisco has released nine security alerts on Wednesday, and among these are two for critical vulnerabilities in its ASR 900 Series routers and the Cisco Prime Home management platform (for...