Security News

Weaponized BlueKeep Exploit Released
2019-09-09 19:03

Metasploit: Release Intended to Call Attention to Urgent Need to Patch VulnerabilityA new weaponized proof-of-concept exploit for the BlueKeep vulnerability in Windows has been released by...

BlueKeep Exploit Added to Metasploit
2019-09-09 13:57

An initial public exploit targeting the recently addressed BlueKeep vulnerability in Microsoft Windows has been added to Rapid7’s Metasploit framework.  read more

Too bad, so sad, exploit devs: Google patches possibly several million dollars' worth of security flaws in Android
2019-09-05 23:43

Except one – a 'your phone is now my phone' bug reported months ago and still not fixed Google this week emitted the September edition of its monthly Android security updates – and has left at...

Android Zero-Days Now Worth More Than iPhone Exploits
2019-09-04 14:33

Exploit broker Zerodium has implemented a $2.5 million price tag for a zero-click 0-day in Android.

Exploit Reseller Offering Up To $2.5 Million For Android Zero-Days
2019-09-04 08:48

Well, there's some good news for hackers and vulnerability hunters, though terrible news for Google, Android device manufacturers, and their billions of users worldwide. The zero-day buying and...

Zerodium Offers Up to $2.5 Million for Android Exploits
2019-09-04 04:30

Exploit acquisition firm Zerodium announced on Tuesday that it’s offering up to $2.5 million for powerful Android exploits, more than what it’s offering for the same type of exploit on iOS. read more

Come on, hackers, do your worst ‒ Facebook opens Portal gizmo to Pwn2Own exploit fest
2019-08-28 20:37

Thousands of dollars and new kit up for grabs if you can blow a hole in Zuck's video-conf gear Facebook is opening its Portal videoconferencing hardware to hackers for the first time at the...

Asruex Malware Exploits Old vulnerabilities to Infect PDF, Word Docs
2019-08-23 17:23

A recently observed variant of the Asruex backdoor acts as an infector by targeting old vulnerabilities in Microsoft Office and Adobe Reader and Acrobat 9.x, Trend Micro reports.  read more

Cisco warns about public exploit code for critical flaws in its 220 Series smart switches
2019-08-22 09:47

Cisco has fixed over 30 vulnerabilities in various solutions, including Cisco UCS Director, Cisco UCS Director Express for Big Data, Cisco IMC Supervisor, and the Cisco 220 Series smart switches....

Dear Planet Earth: Patch Webmin now – zero-day exploit emerges for potential hijack hole in server control panel
2019-08-19 20:28

Flawed code traced to home build system, vulnerability can be attacked in certain configs The maintainers of Webmin – an open-source application for system administration tasks on Unix-flavored...