Application Security
A security advisory published by Microsoft on Wednesday provides information on how users can protect themselves against recent attacks abusing the Dynamic Data Exchange...
Hi, what are you looking for?
SEC Consult has published technical details on vulnerabilities mentioned in a complaint filed by several US states.
A security advisory published by Microsoft on Wednesday provides information on how users can protect themselves against recent attacks abusing the Dynamic Data Exchange...
Hundreds of mobile applications that use the Twilio SDK or REST API include hardcoded credentials that could be abused to access millions of calls...
A recently disclosed crypto-related vulnerability affecting some Infineon chips can be exploited in a shorter amount of time than initially believed, researchers demonstrated.
Remote attackers can cause thousands of Brother printers to temporarily stop working by exploiting an unpatched vulnerability discovered recently by researchers at Trustwave.
Organizations That Do Not Invest Even in Baseline Security Are Realistically Uncompetitive
Savitech drivers used by several companies that provide specialized audio products expose computers to hacker attacks by installing a new root certificate into the...
Organizations Not Working to Defend Shadow IT Are in Danger of Data Loss and Regulatory Violations
Researchers have managed to hack the Samsung Galaxy S8, the iPhone 7 and the Huawei Mate 9 Pro on the first day of the...
A serious SQL injection vulnerability was patched on Tuesday by WordPress developers with the release of version 4.8.3.
Threat intelligence provider Recorded Future today announced that it has raised $25 million in a Series E round of funding Led by Insight Venture...
IBM Security announced on Tuesday the launch of a product designed to help banks and other service providers protect their customers against new account...
A bug bounty hunter has earned more than $15,000 from Google after finding several potentially serious vulnerabilities related to the company’s Issue Tracker, including...
Oracle informed customers on Friday that its Identity Manager product is affected by a critical vulnerability that can be easily exploited by malicious actors.
IOActive has long been interested in the security of satellite communications. In 2014, it published a report on “multiple high risk vulnerabilities” in all...
Some industrial networking devices are also vulnerable to the recently disclosed KRACK Wi-Fi attack, including products from Cisco, Rockwell Automation and Sierra Wireless.
Microsoft announced this week the availability of Sonar, an open source linting and website scanning tool designed to help developers identify and fix performance...
Cryptonite, a Rockville, Maryland-based startup that aims to prevent reconnaissance and lateral movement in the network using moving target defense and micro-segmentation technologies, has...
Security analytics firm Skybox announced Wednesday that it has secured $150 million growth equity comprising $100 million from CVC Capital Partners’ Growth Fund (CVC...
Forty-seven percent of organizations have already deployed machine learning (ML) solutions, with another 23% engaged in pilot projects, to help detect increasingly sophisticated incursions...
Thirty percent of CEOs from the world's largest organizations have had their company email address and password stolen from a breached service.