Security News

Oracle: Run, don't walk, to patch this critical Database takeover bug
2018-08-14 18:44

Flaw in House Larry's flagship product allows "complete compromise" of servers Oracle is advising customers to update their database software following the discovery and disclosure of a critical...

CVE? Nope. NVD? Nope. Serious must-patch type flaws skipping mainstream vuln lists – report
2018-08-14 15:10

Infosec firm fingers 'decentralised' reporting The first half of 2018 saw a record haul of reported software vulnerabilities yet a high proportion of these won’t appear in any mainstream...

Adobe Patch Tuesday: Fixes for Critical Acrobat and Reader Flaws
2018-08-14 14:21

Adobe's August Patch Tuesday release impacts Flash Player, and Acrobat DC and Reader.

Critical vulnerability in Oracle Database, patch without delay!
2018-08-13 15:42

Oracle is urging users to patch their Oracle Database installations to plug a critical security issue that can result in complete compromise of the Oracle Database and shell access to the...

For Effective Patch Management, Don’t Overlook Risk
2018-08-13 11:50

Patch management has always been an evergreen topic for security practitioners. Each time poor patching is identified as the root cause of a breach, it triggers a new flood of opinions on the...

August Patch Tuesday forecast: Looking ahead after a frustrating July
2018-08-10 11:30

Approaching August Patch Tuesday, we are supposed to be in the ‘dog days’ of summer where everything slows down. Unfortunately, July was full of CVEs and stability fixes with no time to just lie...

Ever seen printer malware in action? Install this HP Ink patch – or you may find out
2018-08-03 19:24

Firmware update tackles remote code bugs in InkJet machines HP Inc has posted an update to address a pair of serious security vulnerabilities in its InkJet printers.…

Symfony Flaw Leaves Drupal Sites Vulnerable to Hackers—Patch Now
2018-08-03 11:18

It's time to update your Drupal websites. Drupal, the popular open-source content management system, has released a new version of its software to patch a security bypass vulnerability that could...

Apache, IBM Patch Critical Cloud Vulnerability
2018-07-24 19:38

The flaw opened a hole in IBM's serverless Cloud Functions platform, potentially exposing confidential customer data.

Dust yourself off and try again: Ancient Solaris patch missed the mark
2018-07-24 14:04

Privilege escalation bug was still sitting there 11 years later A vulnerability first detected and "resolved" years ago in Oracle's Unix OS, Solaris, has resurfaced, necessitating a fix in Big...