Security News

For Effective Patch Management, Don’t Overlook Risk
2018-08-13 11:50

Patch management has always been an evergreen topic for security practitioners. Each time poor patching is identified as the root cause of a breach, it triggers a new flood of opinions on the...

August Patch Tuesday forecast: Looking ahead after a frustrating July
2018-08-10 11:30

Approaching August Patch Tuesday, we are supposed to be in the ‘dog days’ of summer where everything slows down. Unfortunately, July was full of CVEs and stability fixes with no time to just lie...

Ever seen printer malware in action? Install this HP Ink patch – or you may find out
2018-08-03 19:24

Firmware update tackles remote code bugs in InkJet machines HP Inc has posted an update to address a pair of serious security vulnerabilities in its InkJet printers.…

Symfony Flaw Leaves Drupal Sites Vulnerable to Hackers—Patch Now
2018-08-03 11:18

It's time to update your Drupal websites. Drupal, the popular open-source content management system, has released a new version of its software to patch a security bypass vulnerability that could...

Apache, IBM Patch Critical Cloud Vulnerability
2018-07-24 19:38

The flaw opened a hole in IBM's serverless Cloud Functions platform, potentially exposing confidential customer data.

Dust yourself off and try again: Ancient Solaris patch missed the mark
2018-07-24 14:04

Privilege escalation bug was still sitting there 11 years later A vulnerability first detected and "resolved" years ago in Oracle's Unix OS, Solaris, has resurfaced, necessitating a fix in Big...

Big bad Bluetooth bug battered – but not everyone's got a patch
2018-07-24 02:56

Crypto blunder lets middle-person spy on connections after snooping on pairing With a bunch of security fixes announced and more on the way, details had been made public of a Bluetooth bug that...

If at first you, er, make things worse, you're probably Microsoft: Bug patch needed patching
2018-07-23 21:34

VBScript hole 'fixed' in May actually left open for months A remote code execution vulnerability in the Windows VBScript engine was left open for exploitation for two months after it was...

4 exploitable bugs plague Intel Management Engine: Patch now
2018-07-23 13:24

Some of the flaw require privileged access, but a buffer overflow vulnerability is fairly serious.

ABB to Patch Code Execution Flaw in HMI Tool
2018-07-19 09:28

Swiss industrial tech company ABB is working on a patch for a serious arbitrary code execution vulnerability affecting one of its engineering tools. read more