Security News

PoC Code Surfaces to Exploit Apache Struts 2 Vulnerability
2018-08-24 22:07

Researchers find proof-of-concept code that can take advantage of the recently identified Apache Struts framework (CVE-2018-11776) vulnerability.

Vulnerability in OpenSSH “for two decades” (no, the sky isn’t falling!)
2018-08-23 15:27

An OpenSSH bug that was reclassified as a vulnerability after it was fixed has made scary headlines - but the sky isn't falling

One-in-two JavaScript project audits by NPM tools sniff out at least one vulnerability...
2018-08-22 19:57

...and those devs are then applying patches, we hope JavaScript library custodian NPM, after years of security scrambling, looks to be getting a grip on its code safety.…

Vulnerability in IP Relay Service Impacts Major Canadian ISPs
2018-08-20 13:40

A recently addressed local file disclosure vulnerability in the SOLEO IP Relay service impacted nearly all major Internet service providers (ISPs) in Canada, a security researcher has discovered. read more

Philips Vulnerability Exposes Sensitive Cardiac Patient Information
2018-08-17 19:07

The unpatched flaw would allow a bad actor to execute information-exfiltrating malware, backdoors, ransomware or any other kind of bad code he or she chose.

52% of businesses have weak cybersecurity vulnerability assessment strategies
2018-08-15 15:50

With the increasing number of cyberattacks, businesses must stay on top of vulnerability assessments. How mature is your cybersecurity?

Intel Foreshadow exploits: How to protect yourself from latest chip vulnerability
2018-08-15 13:47

What are the Foreshadow/ L1TF exploits? Which chips are affected? How to secure your systems.

Vulnerability Could Allow Insider to Bypass CEO's Multi-Factor Authentication
2018-08-14 19:01

Vulnerability Allows a Second Factor for One Account to be Used for All Accounts in an Organization read more

Apple macOS vulnerability paves the way for system compromise with a single click
2018-08-14 14:31

Tampering with two lines of code unveiled a serious bug which could lead to full system compromise.

Critical vulnerability in Oracle Database, patch without delay!
2018-08-13 15:42

Oracle is urging users to patch their Oracle Database installations to plug a critical security issue that can result in complete compromise of the Oracle Database and shell access to the...