Security News

Obscure E-Mail Vulnerability
2018-04-09 11:30

This vulnerability is a result of an interaction between two different ways of handling e-mail addresses. Gmail ignores dots in addresses, so [email protected] is the same as...

Authentication Bypass Vulnerability Found in Auth0 Identity Platform
2018-04-07 18:06

A critical authentication bypass vulnerability has been discovered in one of the biggest identity-as-a-service platform Auth0 that could have allowed a malicious attacker to access any portal or...

Critical vulnerability opens Cisco switches to remote attack
2018-04-04 15:35

A critical vulnerability affecting many of Cisco’s networking devices could be exploited by unauthenticated, remote attackers to take over vulnerable devices or trigger a reload and crash. The...

Critical Vulnerability Patched in Microsoft Malware Protection Engine
2018-04-04 15:24

An update released this week by Microsoft for its Malware Protection Engine patches a vulnerability that can be exploited to take control of a system by placing a malicious file in a location...

Drupal to Patch Highly Critical Vulnerability This Week
2018-03-26 12:25

Drupal announced plans to release a security update for Drupal 7.x, 8.3.x, 8.4.x, and 8.5.x on March 28, 2018, aimed at addressing a highly critical vulnerability. The Drupal security team hasn’t...

VMware Patches DoS Vulnerability in Workstation, Fusion
2018-03-16 17:23

VMware informed customers on Thursday that it has patched a denial-of-service (DoS) vulnerability in its Workstation and Fusion products. Details of the flaw and proof-of-concept code have been...

Remotely Exploitable Vulnerability Discovered in MikroTik's RouterOS
2018-03-16 13:11

A vulnerability exists in MikroTik's RouterOS in versions prior to the latest 6.41.3, released Monday, March 12, 2018. Details were discovered February and disclosed by Core Security on Thursday....

Vulnerability in Robots Can Lead To Costly Ransomware Attacks
2018-03-09 14:01

A vulnerability recently found in several robots on the market can enable hackers to cause them to stop working, curse at customers, or even perform violent movements as part of ransomware attacks.

Exim vulnerability opens 400,000 servers to remote code execution
2018-03-07 17:46

If you’re using the Exim mail transfer agent on your Internet-connected Unix-like systems and you haven’t yet upgraded to version 4.90.1, now is the time to do it as all previous versions contain...

Cisco Adds Vulnerability Identification to Tetration Platform
2018-03-05 22:34

Cisco today announced the availability of identification of software vulnerabilities and exposures as part of the security capabilities of its Tetration platform. read more