Security News

Apple Patches KRACK Vulnerability in iOS 11.1
2017-10-31 19:12

Apple has patched the KRACK vulnerability in iOS and elsewhere in its product line, closing a key re-installation vulnerability in the WPA2 protocol implemented used by its software.

How a Medical Device Vulnerability Can Compromise Privacy
2017-10-27 19:03

Medical device cybersecurity scrutiny usually focuses on potential patient safety issues. But vulnerabilities identified in a cardiac pacemaker programming device illustrate the risks also posed...

Russian Hackers Exploit Recently Patched Flash Vulnerability
2017-10-20 11:06

The Russia-linked cyber espionage group known as APT28 has been using a recently patched Adobe Flash Player vulnerability in attacks aimed at government organizations and aerospace companies,...

Vulnerability in code library allows attackers to work out private RSA keys
2017-10-17 21:09

Researchers have discovered a security vulnerability in the Infineon-developed RSA library, which could be exploited by attackers to discover the RSA private key corresponding to an RSA public key...

Firm Backs Vulnerability Management Service With $1 Million Guarantee
2017-10-16 19:06

San Francisco-based consulting firm AsTech has today announced a $1 million guarantee for its Qualys Managed Services offering. AsTech is one of a small but growing number of vendors applying a...

Unpatched SQLi vulnerability in SmartVista e-commerce suite
2017-10-12 16:14

Companies using SmartVista, the popular e-commerce/payment management product suite developed by Swiss company BPC Group, are urged to put limit access to its management interface. That’s because...

RubyGems Patches Remote Code Execution Vulnerability
2017-10-11 15:36

RubyGems patched an unsafe object deserialization vulnerability this week that could have allowed attackers to remotely execute code on vulnerable systems.

Equifax Warned About Vulnerability, Didn't Patch It: Ex-CEO
2017-10-02 19:41

The security team at Equifax failed to patch a vulnerability in March after getting a warning about the flaw, opening up the credit agency to a breach affecting 143 million people, the former...

Siemens Patches Improper Access Vulnerability in Ruggedcom Protocol
2017-09-29 15:50

Industrial manufacturer Siemens is encouraging users running devices that use its Ruggedcom protocol to apply firmware updates this week. The updates resolve a serious and remotely exploitable...

Two-Year Old Vulnerability Patched in Linux Kernel
2017-09-27 14:56

A high risk security vulnerability that could be exploited to escalate privileges has been patched in Linux kernel after being initially discovered more than two years ago. read more