Security News

News Wrap: Linux Utility Backdoor, Steam Zero Day Disclosure Drama
2019-08-23 16:38

From a backdoor placed in the Webmin utility to vulnerability disclosure drama around zero-days in Valve's Steam gaming clients, Threatpost breaks down this week's top stories.

Steam cleaned of zero-day security holes after Valve turned off by bug bounty snub outrage
2019-08-22 23:14

Security bod may be invited back into vuln reward program, Half-Life 3 still ain't happening Games giant Valve is attempting to make nice with the infosec bod who disclosed zero-day exploits for...

Steam cleaned of zero-day security holes after Valve turned off by bug bounty snub outage
2019-08-22 23:14

Security bod may be invited back into vuln reward program, Half-Life 3 still ain't happening Games giant Valve is attempting to make nice with the infosec bod who disclosed zero-day exploits for...

Disgruntled bug-hunter drops Steam zero-day to get back at Valve for refusing him a bounty
2019-08-22 05:16

EoP bug now free for the world to see after bounty was rejected A security bod angry at Valve's handling of bug reports has released a zero-day vulnerability affecting the games giant's flagship...

Researcher Discloses Second Steam Zero-Day After Valve Bug Bounty Ban
2019-08-21 20:40

After Valve banned him from its bug bounty program, a researcher has found a second zero-day vulnerability affecting the Steam gaming client.

Dear Planet Earth: Patch Webmin now – zero-day exploit emerges for potential hijack hole in server control panel
2019-08-19 20:28

Flawed code traced to home build system, vulnerability can be attacked in certain configs The maintainers of Webmin – an open-source application for system administration tasks on Unix-flavored...

Dear sysadmins: Patch Webmin now – zero-day exploit emerges for potential hijack hole in server control panel
2019-08-19 20:28

Flawed code traced to home build system, vulnerability can be attacked in certain configs The maintainers of Webmin – an open-source application for system administration tasks on Unix-flavored...

Coinbase explains background to June zero-day Firefox attack
2019-08-14 10:52

A recent, highly targeted attack on cryptocurrency exchange Coinbase offers a glimpse into how sophisticated phishing attacks can be.

Gamers Beware: Zero-Day in Steam Client Affects All Windows Users
2019-08-12 15:07

Valve said it wouldn't fix an elevation-of-privilege bug that allows attackers to run any program on a target machine with high privileges.

Critical Industries at Risk from Eleven Zero-day Flaws in Real Time Operating System
2019-07-29 15:00

Eleven vulnerabilities have been found in the Wind River VxWorks real time operating system (RTOS). Six of these security flaws are classed as critical. The vulnerabilities allow complete remote...