Security News

Netflix Sleepy Puppy Awakens XSS Vulnerabilities in Secondary Applications (Threatpost)
2015-09-02 18:21

Netflix released Sleepy Puppy, a cross-site scripting payload management framework, to open source. The tool finds XSS vulnerabilities in secondary applications.

Salesforce Patches XSS on a Subdomain (Threatpost)
2015-08-13 18:27

Salesforce.com patched a cross-site scripting vulnerability on one of its domains that could have led to phishing attacks.

WordPress Patches Critical XSS Vulnerability in All Builds (Threatpost)
2015-07-23 17:08

WordPress rolled out a new version of its content management system this morning that addresses a nasty cross-site scripting (XSS) vulnerability that could ultimately lead to site compromise.

TotoLink Routers Plagued By XSS, CSRF, RCE Bugs (Threatpost)
2015-07-16 16:53

A slew of routers manufactured in China are fraught with vulnerabilities, some which have existed in products for as long as six years.