Security News

Hot fuzz: Bug detectives whip up smarter version of classic AFL fuzzer to hunt code vulnerabilities
2018-11-28 08:03

Flaw-spotting toolkit already has 42 zero-days to its name A group of university researchers from around the globe have teamed up to develop what they say is a powerful new tool to root out...

DoS Vulnerabilities Impact Linux Kernel
2018-11-26 16:17

Two recently disclosed Linux kernel vulnerabilities that remain unpatched could be exploited for local denial-of-service (DoS). The flaws, both which were made public last week, impact Linux...

For recent big data software vulnerabilities, botnets and coin mining are just the beginning
2018-11-26 06:30

The phrase “with great power comes great responsibility” was excellent advice when Ben Parker said it to his nephew Peter, aka Spiderman. It is even more applicable to any organization using open...

Old Printer Vulnerabilities Die Hard
2018-11-23 14:00

New research on an old problem reveals despite efforts, the InfoSec professionals still have a way to go when it comes to securing printers.

Attackers Target Drupal Web Servers with Chained Vulnerabilities
2018-11-20 15:20

A recent attack targeted Drupal web servers with a chain of vulnerabilities that included the infamous Drupalgeddon2 and DirtyCOW flaws, Imperva security researchers say. The attack was short and...

66.1% of vulnerabilities published through Q3 2018 have a documented solution
2018-11-20 06:45

There have been 16,172 vulnerabilities disclosed through October 29th, which is a 7% decrease from the high record reported last year at this time. The 16,172 vulnerabilities cataloged through Q3...

CVSS Scores Often Misleading for ICS Vulnerabilities: Experts
2018-11-16 05:59

While the Common Vulnerability Scoring System (CVSS) can be useful for rating vulnerabilities, the scores assigned to flaws affecting industrial control systems (ICS) may be misleading, which can...

Siemens Releases 7 Advisories for SIMATIC, SCALANCE Vulnerabilities
2018-11-14 14:35

Siemens on Tuesday released 7 new advisories to inform customers of potentially serious vulnerabilities affecting various SIMATIC and SCALANCE products. Patches and/or mitigations are available...

Several Vulnerabilities Patched in nginx
2018-11-08 17:10

Updates released this week for the nginx open source web server software address several denial-of-service (DoS) vulnerabilities. read more