Security News

Serious Vulnerabilities Found in Kace K1000 Appliance
2019-06-03 13:14

Several vulnerabilities have been found and patched in the Kace K1000 systems management appliance from Quest. read more

Vulnerabilities in industrial control systems surface lack of basic security hygiene
2019-05-30 13:27

Standard security practices among IT companies do not necessarily carry over to the IT departments of other firms, leading to products sold without basic security measures in place.

Critical Vulnerabilities Plague South Korean ActiveX Controls
2019-05-22 15:47

Tens of very basic but Critical vulnerabilities were found in 10 South Korean ActiveX controls as part of a short research project, security researchers with Risk Based Security say.  read more

Over half of all reported vulnerabilities in Q1 2019 have a remote attack vector
2019-05-20 05:00

There were 5,501 vulnerabilities aggregated by Risk Based Security’s VulnDB that were disclosed during the first three months of 2019. This represents a 1% increase over the same period in 2018,...

Week in review: New Intel CPU vulnerabilities, SharePoint servers under attack
2019-05-19 17:00

Here’s an overview of some of last week’s most interesting news and articles: High-risk vulnerability in Cisco’s secure boot process impacts millions of devices Red Balloon Security has discovered...

Cisco Patches Critical Vulnerabilities in Prime Infrastructure (PI) Software
2019-05-16 16:13

Cisco has released patches for numerous vulnerabilities affecting its products, including Critical flaws in the Cisco Prime Infrastructure (PI) Software that could allow remote code execution. A...

MDS vulnerabilities lead Chrome OS 74 to disable hyper-threading
2019-05-16 14:52

Hyper-Threading, Intel's implementation of symmetric multithreading (SMT) can be exploited using the newly-disclosed MDS vulnerabilities, like Fallout and ZombieLoad.

Why MDS vulnerabilities present a threat as serious as Spectre and Meltdown
2019-05-15 18:00

Microarchitectural Data Sampling are CPU side-channel vulnerabilities that allow attackers to view in-flight data from CPU-internal buffers. Learn more about MDS attacks in this comprehensive guide.

Microsoft plugs wormable RDP flaw, new speculative execution side channel vulnerabilities
2019-05-15 09:33

For May 2019 Patch Tuesday, Microsoft has released fixes for 79 vulnerabilities, 22 of which are deemed critical. Among the fixes is that for CVE-2019-0708, a “wormable” RDP flaw that is expected...