Security News

BMC Vulnerabilities Expose Supermicro Servers to Remote USB-Attacks
2019-09-03 10:19

Enterprise servers powered by Supermicro motherboards can remotely be compromised by virtually plugging in malicious USB devices, cybersecurity researchers at firmware security company Eclypsium...

iOS Vulnerabilities Allowed Attackers to Remotely Hack iPhones for Years
2019-08-30 14:56

Google on Thursday published detailed information on five iOS exploit chains, one of which has been used to remotely hack iPhones for at least two years.  read more

How to use Harbor to scan Docker images for vulnerabilities
2019-08-28 20:50

Make sure you're not deploying containers based on vulnerable images by scanning those images with Harbor.

Cisco UCS Vulnerabilities Allow Complete Takeover of Affected Systems
2019-08-28 16:28

A researcher has disclosed the details and created Metasploit modules for Cisco UCS vulnerabilities that can be exploited to take complete control of affected systems. read more

Five vendors accounted for 24.1% of vulnerabilities in 2019 so far
2019-08-26 04:30

Risk Based Security reported today that VulnDB aggregated 11,092 vulnerabilities with disclosure dates during the first half of 2019, with CVE/NVD falling behind by 4,332 entries, according to...

Friday Squid Blogging: Vulnerabilities in Squid Server
2019-08-23 23:19

It's always nice when I can combine squid and security: Multiple versions of the Squid web proxy cache server built with Basic Authentication features are currently vulnerable to code execution...

Kubernetes Patches Recent HTTP/2 Vulnerabilities
2019-08-23 17:48

Software updates released by Kubernetes this week address HTTP/2 implementation vulnerabilities that were disclosed earlier this month.  read more

Asruex Malware Exploits Old vulnerabilities to Infect PDF, Word Docs
2019-08-23 17:23

A recently observed variant of the Asruex backdoor acts as an infector by targeting old vulnerabilities in Microsoft Office and Adobe Reader and Acrobat 9.x, Trend Micro reports.  read more

Cybersecurity alert: 34% of vulnerabilities found this year remain unpatched
2019-08-23 12:00

The overall number of reported vulnerabilities in the first half of 2019 has dropped slightly from last year, but risks remain high, according to Risk Based Security.

Bumper Cisco patches fix four new ‘critical’ vulnerabilities
2019-08-23 10:45

Cisco just issued some urgent patching homework in the form of 31 security fixes, 4 of them for flaws rated ‘critical’.