Security News

Exploited Windows Flaws Affect Siemens Medical Imaging Products (Security Week)
2017-08-04 15:23

Siemens has informed customers that some of its molecular imaging products are exposed to remote attacks due to vulnerabilities affecting Windows and other third-party components. read more

NSA Collects MS Windows Error Information (Schneier on Security)
2017-08-01 11:00

Back in 2013, Der Spiegel reported that the NSA intercepts and collects Windows bug reports: One example of the sheer creativity with which the TAO spies approach their work can be seen in a...

Zero-Day Vulnerabilities against Windows in the NSA Tools Released by the Shadow Brokers (Schneier on Security)
2017-07-28 11:16

In April, the Shadow Brokers -- presumably Russia -- released a batch of Windows exploits from what is presumably the NSA. Included in that release were eight different Windows vulnerabilities....

Microsoft offers rewards for Windows bugs (Help Net Security)
2017-07-27 13:20

Microsoft is asking researchers to look for bugs inside the latest Windows 10 version (Insider Preview slow ring). Remote code execution bugs can net finders up to $15,000, elevation of privilege...

Microsoft Launches Windows Bug Bounty Program (Security Week)
2017-07-27 06:38

Microsoft announced on Wednesday the launch of a Windows bug bounty program with payouts ranging between $500 and $250,000. read more

CowerSnail — Windows Backdoor from the Creators of SambaCry Linux Malware (The Hackers News)
2017-07-27 04:40

Last month, we reported about a group of hackers exploiting SambaCry—a 7-year-old critical remote code execution vulnerability in Samba networking software—to hack Linux computers and install...

Microsoft expands bug bounty program to cover any Windows flaw (ArsTechnica)
2017-07-26 20:28

Now every part of Windows is covered by a bug bounty scheme.

Windows SMB Zero Day to Be Disclosed During DEF CON (Threatpost)
2017-07-26 13:00

Microsoft has said it will not patch a two-decade-old Windows SMB vulnerability, called SMBloris because it behaves comparably to the Slowloris attacks. The flaw will be disclosed and demonstrated...

New Windows Backdoor Linked to SambaCry Linux Malware (Security Week)
2017-07-26 08:00

The cybercriminals who had recently delivered a cryptocurrency miner to Linux servers by exploiting the Samba vulnerability known as EternalRed and SambaCry are believed to have developed a...

EternalSynergy-Based Exploit Targets Recent Windows Versions (Security Week)
2017-07-18 16:18

A security researcher has devised an EternalSynergy-based exploit that can compromise versions of Windows newer than Windows 8. read more