Security News

Google Researcher Finds Code Execution Vulnerability in Notepad
2019-05-29 14:16

Google Project Zero researcher Tavis Ormandy revealed on Tuesday that he identified a code execution vulnerability in Microsoft’s Notepad text editor. read more

Vulnerability management solution Tripwire IP360 released on AWS Marketplace
2019-05-28 23:00

Tripwire has joined the global partner program for Amazon Web Services (AWS). As a new Advanced Technology Partner of the AWS Partner Network (APN), Tripwire has now made its vulnerability...

Week in review: BlueKeep vulnerability, preventing Google account takeovers
2019-05-26 17:45

Here’s an overview of some of last week’s most interesting news and articles: Data privacy: A hot-button issue for Americans one year after GDPR In recognition of GDPR’s first anniversary, nCipher...

Nessus expands vulnerability scanner offerings to 16 IPs in commercial environments
2019-05-24 12:22

Tenable introduced the free Nessus Essentials product, and also discussed the wisdom of building apps in Electron, along with fixes for Spectre and Meltdown.

How mainstream media coverage affects vulnerability management
2019-05-24 06:11

For better or for worse, mainstream media is increasingly covering particularly dangerous, widespread or otherwise notable security vulnerabilities. The growing coverage has made more people aware...

Thangrycat: A Serious Cisco Vulnerability
2019-05-23 16:52

Summary: Thangrycat is caused by a series of hardware design flaws within Cisco's Trust Anchor module. First commercially introduced in 2013, Cisco Trust Anchor module (TAm) is a proprietary...

If you haven’t yet patched the BlueKeep RDP vulnerability, do so now
2019-05-23 10:36

There is still no public, working exploit code for CVE-2019-0708, a flaw that could allow an unauthenticated remote attacker to execute remote code on a vulnerable target running Remote Desktop...

Linux Kernel Privilege Escalation Vulnerability Found in RDS Over TCP
2019-05-20 16:42

A memory corruption vulnerability recently found in Linux Kernel’s implementation of RDS over TCP could lead to privilege escalation.  Tracked as CVE-2019-11815 and featuring a CVSS base score of...

Tenable Updates Free Vulnerability Assessment Solution
2019-05-17 13:29

Tenable this week announced Nessus Essentials, an expanded version of its free vulnerability assessment solution previously known as Nessus Home.  read more

Wormable Windows RDS Vulnerability Poses Serious Risk to ICS
2019-05-17 12:34

A critical remote code execution vulnerability patched recently by Microsoft in Windows Remote Desktop Services (RDS) poses a serious risk to industrial environments, experts have warned. read more