Security News

Critical PGP Vulnerability
2018-05-14 14:33

EFF is reporting that a critical vulnerability has been discovered in PGP and S/MIME. No details have been published yet, but one of the researchers wrote: We'll publish critical vulnerabilities...

Critical PGP vulnerability could reveal text of your encrypted business emails
2018-05-14 12:45

The vulnerability, called EFAIL, is exploitable against encrypted email, including previously transmitted mail, according to researchers.

Lenovo Patches Secure Boot Vulnerability in Servers
2018-05-08 20:05

Lenovo has released patches for a High severity vulnerability impacting the Secure Boot function on some System x servers. read more

The importance of threat intelligence and vulnerability remediation prioritization
2018-05-04 12:00

In this podcast recorded at RSA Conference 2018, Jimmy Graham, Director of Product Management, Vulnerability Management at Qualys, talks about the importance of threat intelligence and...

Schneider Electric Patches Critical RCE Vulnerability
2018-05-02 14:13

Researchers found a critical remote code execution vulnerability afflicting two Schneider Electric products that could give attackers to disrupt or shut down plant operations.

KRACK Vulnerability Puts Medical Devices At Risk
2018-04-30 20:43

A slew of products from medical dispensing company BD are susceptible to the KRACK vulnerability disclosed last fall.

NIST Updates Cybersecurity Framework to Tackle Supply Chain Threats, Vulnerability Disclosure and More
2018-04-30 15:49

Version 1.1 includes updates on authentication and identity, self-assessment, supply-chain security and vulnerability disclosure, among other changes.

New Drupal RCE vulnerability under active exploitation, patch ASAP!
2018-04-26 15:05

Yet another Drupal remote code execution vulnerability has been patched by the Drupal security team, who urge users to implement the offered updates immediately as the flaw is being actively...

Vulnerability Management: Why the Problem Can't Be Solved
2018-04-24 21:03

86 Percent of Bugs Patchable Within 24 Hours, Says Flexera's Alejandro LavieOne measure of why it's so difficult for organizations to keep their software patched and better secured: Of the nearly...

Vulnerability in NVIDIA Tegra Chipsets Allows for Code Execution
2018-04-24 14:38

A vulnerability in NVIDIA's Tegra chipsets allows for the execution of custom code on locked-down devices, security researcher Kate Temkin reveals. read more