Security News

Tenable Adds 'Predictive Prioritization' to Vulnerability Management Offering
2019-02-11 14:06

Tenable on Monday announced the general availability of a new service designed to help organizations identify the vulnerabilities that have the highest likelihood of being exploited. read more

Bezos Case Exposes Billionaires' Vulnerability to Hackers
2019-02-11 04:54

The stunning revelation that a tabloid obtained below-the-belt selfies of Amazon founder Jeff Bezos -- the world's richest man -- suggests that even billionaires are not out of the reach of...

Assessing US Vulnerability to a Nation-State Cyberattack
2019-02-08 12:03

The latest edition of the ISMG Security Report features a summary of alarming new findings about the ability of the U.S. to counter a nation-state malware attack. Plus, a discussion of "fusion...

Apple Patches FaceTime Spying Vulnerability
2019-02-08 06:56

Apple has finally released an iOS update that should fully patch the Group FaceTime vulnerability that could have been exploited to spy on users through their device’s microphone and camera. read more

Zero-day Vulnerability Highlights the Responsible Disclosure Dilemma
2019-02-07 17:30

A zero-day vulnerability found in a video-conferencing system and responsibly disclosed led to the response, "Our developers are aware of some known vulnerabilities with the systems, development...

Microsoft Confirms Serious ‘PrivExchange’ Vulnerability
2019-02-06 15:24

The elevated privilege flaw exists in Microsoft Exchange and would allow a remote attacker to impersonate an administrator.

Major Zcash Vulnerability Fixed
2019-02-05 20:59

Zcash just fixed a vulnerability that would have allowed "infinite counterfeit" Zcash. Like all the other blockchain vulnerabilities and updates, this demonstrates the ridiculousness of the notion...

Bug-hunter faces jail for vulnerability reports, DuckDuckPwn (almost), family spied on via Nest gizmo, and more
2019-02-02 13:37

Your rapid-fire guide to all the other infosec news of the week Roundup This was the week we saw GPS grumbles, shady speakers, and Yahoo! Losing! Again!…

Privilege escalation vulnerability uncovered in Microsoft Exchange
2019-01-30 12:25

A researcher has discovered an alarming way that an attacker controlling a Microsoft Exchange mailbox account could potentially elevate their privileges to become a Domain Administrator.

iPhone FaceTime Vulnerability
2019-01-29 19:12

This is kind of a crazy iPhone vulnerability: it's possible to call someone on FaceTime and listen on their microphone -- and see from their camera -- before they accept the call. This is...