Security News

UK heat wave causes Google and Oracle cloud outages
2022-07-19 20:07

An ongoing heatwave in the United Kingdom has led to Google Cloud and Oracle Cloud outages after cooling systems failed at the companies' data centers. Today, with temperatures reaching a record-breaking 40.2 degrees Celsius, cooling systems at data centers used by Google and Oracle to host their cloud infrastructure have begun to fail.

TikTok's chief security officer steps aside, thanks to Oracle move
2022-07-18 03:58

TikTok's Global Chief Security Officer Roland Cloutier has "Transitioned" from his job into "a strategic advisory role focusing on the business impact of security and trust programs." Cloutier's change was revealed in a Saturday organizational update that starts with Cloutier himself signing off from the job on grounds that TikTok has "Made significant progress in delivering on the promises we've made to our global community, business partners, and governments around the world."

Oracle already wins 'crypto bug of the year' with Java digital signature bypass
2022-04-20 20:11

Java versions 15 to 18 contain a flaw in its ECDSA signature validation that makes it trivial for miscreants to digitally sign files and other data as if they were legit organizations. Java 15-18 ECDSA doesn't sanity check that the random x coordinate and signature proof are nonzero; a signature validates any message.

Researchers Detail Privilege Escalation Bugs Reported in Oracle VirtualBox
2021-11-23 22:54

A now-patched vulnerability affecting Oracle VM VirtualBox could be potentially exploited by an adversary to compromise the hypervisor and cause a denial-of-service condition. "Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox," the advisory reads.

Google, Microsoft and Oracle amassed the most cybersecurity vulnerabilities in the first half of 2021
2021-09-21 14:48

A recent AtlasVPN report highlights the companies that have amassed the most security vulnerabilities through the first half of 2021. In the first six months of 2021, Google and Microsoft have "Accumulated the most vulnerabilities," according to Atlas VPN findings based on a recent Telefonica Tech report.

Windows 11 is no longer compatible with Oracle VirtualBox VMs
2021-09-18 17:59

Windows 11 is no longer compatible with the immensely popular Oracle VirtualBox virtualization platform after Microsoft changed its hardware requirement policies for virtual machines. "Microsoft recognizes that the user experience when running the Windows 11 in virtualized environments may vary from the experience when running non-virtualized. So, while Microsoft recommends that all virtualized instances of the Windows 11 follow the same minimum hardware requirements as described in Section 1.2, the Windows 11 does not apply the hardware-compliance check for virtualized instances either during setup or upgrade," explains Microsoft in their Windows 11 minimum hardware requirements document.

Oracle adds MySQL Autopilot to MySQL HeatWave service to improve performance
2021-08-12 01:30

Oracle announced availability of MySQL Autopilot, a new component of MySQL HeatWave service, the in-memory query acceleration engine for MySQL Database Service in Oracle Cloud Infrastructure. MySQL Autopilot makes the HeatWave query optimizer increasingly intelligent as more queries are executed, resulting in continually improving system performance over time-a capability not available on Amazon Aurora, Amazon Redshift, Snowflake, or other MySQL-based database services.

Oracle Warns of Critical Remotely Exploitable Weblogic Server Flaws
2021-07-22 01:21

Oracle on Tuesday released its quarterly Critical Patch Update for July 2021 with 342 fixes spanning across multiple products, some of which could be exploited by a remote attacker to take control of an affected system. Chief among them is CVE-2019-2729, a critical deserialization vulnerability via XMLDecoder in Oracle WebLogic Server Web Services that's remotely exploitable without authentication.

Oracle Releases July 2021 CPU With 342 Security Patches
2021-07-21 13:33

Oracle on Tuesday announced the availability of a total of 342 new security patches as part of its July 2021 Critical Patch Update. The most severe of these issues is CVE-2021-2244, a security bug in the Essbase Analytic Provider Services product of Oracle Essbase that could be exploited remotely without authentication and which could lead to the complete takeover of the affected product.

Accenture acquires Cloudworks to expand Oracle capabilities in Canada
2021-07-20 23:00

"As organizations across Canada continue to accelerate their technology transformation programs, we anticipate the demand for Oracle solutions to grow significantly," said Jeffrey Russell, president of Accenture in Canada. Jennifer Jackson, Accenture Technology lead for Canada, said, "Cloudworks is a well-known Oracle services provider that has worked with organizations across Canada and across industries. We are thrilled to grow our Technology practice in Canada with the Cloudworks team who strengthen our ability to meet the growing need from Canadian organizations to unleash the power of cloud, data and innovation to create truly future-ready organizations."