Security News

Equifax Suffered Data Breach After It Failed to Patch Old Apache Struts Flaw
2017-09-14 01:38

The massive Equifax data breach that exposed highly sensitive data of as many as 143 million people was caused by exploiting a flaw in Apache Struts framework, which Apache patched over two months...

Patch Tuesday: 80+ vulnerabilities fixed, one exploited in the wild
2017-09-13 18:53

As part of its regular, monthly Patch Tuesday update, Microsoft has released patches for 81 new vulnerabilities, including a zero-day in the .NET Framework. The September patch dump also includes...

Immediately Patch Windows 0-Day Flaw That's Being Used to Spread Spyware
2017-09-13 04:09

Get ready to install a fairly large batch of security patches onto your Windows computers. As part of its September Patch Tuesday, Microsoft has released a large batch of security updates to patch...

Patch your Android device to foil Toast Overlay attacks (Help Net Security)
2017-09-08 20:29

Overlay attacks are nothing new for Android users, and Palo Alto Networks Unit 42 researchers have found yet another way for attackers to perpetrate them. An “overlay attack” allows an attacker’s...

Smiths Medical to Patch Serious Flaws in Syringe Infusion Pumps (Security Week)
2017-09-08 10:47

Minnesota-based speciality medical device manufacturer Smiths Medical is working to address several potentially serious vulnerabilities affecting some of the company’s wireless syringe infusion...

Patch Released for Critical Apache Struts Bug (Threatpost)
2017-09-05 18:10

The Apache Software Foundation released a patch on Tuesday for a critical vulnerability impacting all versions of Struts since 2008.

SAP Patch Tuesday Update Resolves 19 Flaws, Three High Severity (Threatpost)
2017-08-09 21:01

SAP released 19 patches on Tuesday, including a trio of vulnerabilities marked high severity in its business management software.

Microsoft fixes 25 critical issues in August Patch Tuesday (Help Net Security)
2017-08-09 17:40

The Microsoft August 2017 Patch Tuesday update has landed and contains patches for 48 vulnerabilities, 25 of which are for critical issues. 27 of the vulnerabilities can be exploited to achieve...

Organizations Slow to Patch Critical Memcached Flaws (Security Week)
2017-07-18 11:56

Tens of Thousands of Internet-Exposed Memcached Servers Are Vulnerable to Attacks Tens of thousands of servers running Memcached are exposed to the Internet and affected by several critical...

Critical RCE Vulnerability Found in Cisco WebEx Extensions, Again — Patch Now! (The Hackers News)
2017-07-17 10:30

A highly critical vulnerability has been discovered in the Cisco Systems’ WebEx browser extension for Chrome and Firefox, for the second time in this year, which could allow attackers to remotely...