Security News

Google Fixes Critical Android RCE Flaw
2020-01-07 20:50

Google kicked off its first Android Security Bulletin of 2020 patching a critical flaw in its Android operating system, which if exploited could allow a remote attacker to execute code. Google said its' critical vulnerability exists in Android's Media framework, which includes support for playing a variety of common media types, so that users can easily utilize audio, video and images.

Week in review: The data skills gap,  new Kali Linux release, Apache Solr RCEs with public PoCs
2019-12-01 16:30

Here’s an overview of some of last week’s most interesting news and articles: The overlooked part of an infosec strategy: Cyber insurance underwriting When a data breach or cyber attack hits the...

Apache Solr RCEs with public PoCs could soon be exploited
2019-11-25 10:33

Two remote code execution (RCE) vulnerabilities in Apache Solr could be exploited by attackers to compromise the underlying server. One – CVE-2019-12409 – has already been patched, while the other...

WhatsApp RCE flaw can be exploited by sending malicious MP4 files
2019-11-18 14:20

Facebook has patched a critical vulnerability (CVE-2019-11931) affecting various versions of its popular WhatsApp Messenger app and is urging users to update as soon as possible. About the patched...

Microsoft Patches RCE Bug Actively Under Attack
2019-11-12 21:35

Microsoft tackles 74 bugs as part of its November Patch Tuesday security bulletin.

PoC Exploits Published for Unpatched RCE Bugs in rConfig
2019-11-05 10:22

A security researcher has published proof of concept exploits for two remote code execution vulnerabilities in rConfig that haven’t been patched yet. read more

Week in review: Keeping up with ransomware, critical PHP RCE exploited, DevOps firewall
2019-11-03 15:00

Here’s an overview of some of last week’s most interesting news and articles: Leading domain name registrars suffered data breach Web technology company Web.com and its subsidiaries – domain name...

Watch Out IT Admins! Two Unpatched Critical RCE Flaws Disclosed in rConfig
2019-11-03 13:04

If you're using the popular rConfig network configuration management utility to protect and manage your network devices, here we have an important and urgent warning for you. A cybersecurity...

PHP RCE flaw actively exploited to pop NGINX servers
2019-10-28 12:24

A recently patched vulnerability (CVE-2019-11043) in PHP is being actively exploited by attackers to compromise NGINX web servers, threat intelligence firm Bad Packets has confirmed. For a...

7-Year-Old Critical RCE Flaw Found in Popular iTerm2 macOS Terminal App
2019-10-09 18:49

A 7-year-old critical remote code execution vulnerability has been discovered in iTerm2 macOS terminal emulator app—one of the most popular open source replacements for Mac's built-in terminal...