Security News

URGENT/11 Vulnerabilities: Taking Action
2019-10-04 18:18

Healthcare organizations can take steps to start mitigating risks while awaiting vendor software patches to address URGENT/11 IPnet vulnerabilities in their medical devices, says researcher Ben...

APTs Exploiting Enterprise VPN Vulnerabilities, UK Govt Warns
2019-10-04 18:12

Advanced persistent threat (APT) actors have been exploiting recently disclosed vulnerabilities affecting enterprise VPN products from Fortinet, Palo Alto Networks and Pulse Secure, the UK’s...

Life's certainties: Death, taxes, and Cisco patching more serious vulnerabilities
2019-10-04 00:52

Switchzilla closes off 18 CVE-listed holes, get to work Cisco has issued an update to address security flaws in three of its networking and security offerings.…

FDA Issues Alert on Medical Device IPnet Vulnerabilities
2019-10-01 19:18

Agency Warns That 11 Issues May Pose Risks to Devices, NetworksThe Food and Drug Administration has issued an alert warning healthcare organizations about 11 vulnerabilities dubbed "URGENT/11"...

Tridium Niagara Affected by BlackBerry QNX Vulnerabilities
2019-09-30 15:12

The U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) informed organizations last week that Tridium’s Niagara product is affected by two...

GAO Raises Concerns About Power Grid Vulnerabilities
2019-09-27 19:33

Audit Makes Risk Mitigation Recommendations, Including Use of NIST FrameworkThe U.S. electric grid is growing increasingly vulnerable to cyberattacks from countries such as Russia, and a well...

Older vulnerabilities and those with lower severity scores still being exploited by ransomware
2019-09-25 04:30

Almost 65% of top vulnerabilities used in enterprise ransomware attacks targeted high-value assets like servers, close to 55% had CVSS v2 scores lower than 8, nearly 35% were old (from 2015 or...

Edgesource launches new certification program designed to detect and mitigate vulnerabilities
2019-09-24 01:30

Launched by government cybersecurity contractor Edgesource Corporation, Tier 1 Cyber is arming businesses with a new standard of cybersecurity through the launch of its Tier 1 Secure...

Google Awards $40,000 for Chrome Sandbox Escape Vulnerabilities
2019-09-23 08:58

Google has paid out a total of $40,000 for a couple of vulnerabilities that can be exploited to escape Chrome’s sandbox. read more

Disclosing vulnerabilities to improve software security is good for everyone
2019-09-23 05:30

Today, software companies and security researchers are near universal in their belief that disclosing vulnerabilities to improve software security is good for everyone, according to a Veracode...