Security News

Custom code accounts for 93% of application vulnerabilities (Help Net Security)
2017-07-25 13:55

Although third-party software libraries represent a majority of an application’s code, they account for less than seven percent of application vulnerabilities. Typically, applications contain both...

Apple Patches Vulnerabilities Across All Platforms (Security Week)
2017-07-20 12:25

Apple this week released security patches for all four of its operating systems to resolve tens of security bugs in each of them. read more

Critical security vulnerabilities enable full control of the Segway miniPRO electric scooter (Help Net Security)
2017-07-19 19:54

New IOActive research exposes critical security vulnerabilities found in the Segway miniPRO electric scooter. If exploited, an attacker could bypass safety systems and remotely take control of the...

Oracle Patches Record-Breaking 308 Vulnerabilities in July Update (Security Week)
2017-07-19 10:25

Oracle on Tuesday released its July 2017 Critical Patch Update (CPU) to address a total of 308 vulnerabilities, the highest number of security fixes ever released in a quarter by the enterprise...

Oracle Releases Biggest Update Ever: 308 Vulnerabilities Patched (Threatpost)
2017-07-18 20:47

Oracle's July Critical Patch Update included fixes for 308 vulnerabilities, 165 of which are remotely exploitable.

Code Execution, DoS Vulnerabilities Found in FreeRADIUS (Security Week)
2017-07-18 09:29

Security testing of FreeRADIUS using a technique known as fuzzing revealed more than a dozen issues, including vulnerabilities that can be exploited for denial-of-service (DoS) attacks and remote...

Cisco Patches Publicly Disclosed SNMP Vulnerabilities in IOS, IOS XE (Threatpost)
2017-07-14 15:01

Cisco patched nine publicly disclosed remote code execution vulnerabilities in the SNMP subsystem running in its IOS and IOS XE software.

Vulnerabilities Expose Oracle OAM 10g to Remote Session Hijacking (Threatpost)
2017-07-12 12:18

Version 10g of Oracle Access Manager suffers from vulnerabilities that could allow an attacker to hijack sessions.

HPE Addresses Vulnerabilities in Several Products (Security Week)
2017-07-12 11:17

Hewlett Packard Enterprise (HPE) has informed customers of security bypass, information disclosure, remote code execution, cross-site scripting (XSS) and URL redirection vulnerabilities in several...

Microsoft Patches Over 50 Vulnerabilities (Security Week)
2017-07-12 06:42

Microsoft has patched more than 50 vulnerabilities in its products, including Windows, Internet Explorer, Edge, Office, SharePoint, .NET, Exchange and HoloLens. While some of them have already...