Security News

Bugcrowd Raises $26 Million to Expand Vulnerability Hunting Business
2018-03-01 16:07

Crowdsourced security testing company Bugcrowd announced today that it has closed $26 million in a Series C funding round led by Triangle Peak Partners. read more

Widespread Vulnerability Found in Single-Sign-On Products
2018-02-27 14:41

A behavioral quirk in SAML libraries has left many single-sign-on (SSO) implementations vulnerable to abuse. It allows an attacker that has gained any authenticated access to trick the system into...

GitLab Patches Domain Hijacking Vulnerability
2018-02-23 12:30

Open source Git repository management system GitLab has addressed a security hole that could have been exploited to hijack users’ custom domains and point them to malicious content. GitLab Pages...

uTorrent Users Warned of Remote Code Execution Vulnerability
2018-02-21 21:26

Google Project Zero researchers are warning of two critical remote code vulnerabilities in popular versions of uTorrent's web-based BitTorrent client and its uTorrent Classic desktop client.

Google Discloses Unpatched Edge Vulnerability
2018-02-19 05:54

Google Project Zero has made public the details of an unpatched vulnerability affecting the Edge web browser after Microsoft failed to release a patch within a 90-day deadline. read more

Week in review: Vulnerability tracking, GDPR quick guide, tackling the insider threat
2018-02-19 02:56

Here’s an overview of some of last week’s most interesting news and articles: Intel offers to pay for Spectre-like side channel vulnerabilities Intel is expanding the bug bounty program it started...

Still relying solely on CVE and NVD for vulnerability tracking? Bad idea
2018-02-16 12:30

2017 broke the previous all-time record for the highest number of reported vulnerabilities. The 20,832 vulnerabilities cataloged during 2017 by Risk Based Security (VulnDB) eclipsed the total...

Microsoft Won't Patch a Severe Skype Vulnerability Anytime Soon
2018-02-14 10:03

A serious vulnerability has been discovered in Microsoft-owned most popular free web messaging and voice calling service Skype that could potentially allow attackers to gain full control of the...

Lenovo Warns Critical WiFi Vulnerability Impacts Dozens of ThinkPad Models
2018-02-09 17:59

Lenovo issued a security bulletin Friday warning customers of two previously disclosed critical Broadcom vulnerabilities impacts 25 models of its popular ThinkPad laptops.

Google Paid $2.9 Million in Vulnerability Rewards in 2017
2018-02-08 14:50

Normal 0 false false false EN-US X-NONE X-NONE read more