ICS-CERT has published an advisory detailing a cross-site request forgery (CSRF) vulnerability found in 442SR wind turbines produced by Wilsonville, OR-based wind energy solutions...
Hi, what are you looking for?
ICS-CERT has published an advisory detailing a cross-site request forgery (CSRF) vulnerability found in 442SR wind turbines produced by Wilsonville, OR-based wind energy solutions...
The National Institute of Standards and Technology (NIST) has released an updated version of its “Guide to Industrial Control Systems (ICS) Security.”The guide, initially...
Researchers at Trend Micro have come across MalumPOS, a new point-of-sale (PoS) malware designed to target systems running Micros and other PoS platforms.
Malicious actors have been leveraging medical devices deployed in hospitals as key pivot points within the targeted institutions’ networks. Since threats are not easily...
A serious vulnerability in Unity Web Player can be exploited by malicious actors to steal sensitive information from users, a researcher has warned.Unity is...
The Drupal security team announced this week that it’s prepared to offer up to $1,000 for vulnerabilities found in Drupal 8, the latest version...
Whitelisting Not Always Effective As Legitimate Applications Successfully Abused by AttackersLONDON - Infosecurity Europe 2015 - The trust-based foundations of whitelisting make it more...
Just days after the developers of the Angler exploit kit started leveraging a recently patched Flash Player vulnerability to distribute malware, an exploit for...
Blue Coat has released a software update to address a total of four vulnerabilities affecting the web-based administration console (WebUI) of the company’s SSL...
A remote attacker can compromise the Extensible Firmware Interface (EFI) on Mac computers and install a rootkit by getting the device to sleep for...
An individual claiming to be the developer of the crypto ransomware known as Locker has published the private keys needed to recover the files...
The Rombertik malware has made numerous headlines over the past weeks due to a destructive feature that overwrites the computer’s master boot record (MBR)....
Many cybersecurity experts have raised concerns after the Bureau of Industry and Security (BIS) published a proposal for the implementation of the Wassenaar Arrangement...
Kaspersky Lab has published a report detailing the botnet-assisted distributed denial-of-service (DDoS) attacks launched by malicious actors in the first quarter of 2015.
Professional beauty supplies retailer Sally Beauty has provided an update on its investigation into the recent breach of its payment card systems.
SEARCH-LAB, a Hungary-based security testing company that specializes in embedded systems, has identified more than 50 vulnerabilities in network-attached storage (NAS) and network video...
Rockwell Automation has released a patch to address a vulnerability in one of the company’s human-machine interface (HMI) products that can be exploited by...
Researchers at Onapsis, a firm specializing in business-critical application security, have identified two medium severity vulnerabilities in the database management system SAP HANA (High-Performance...
Researchers at Trend Micro have identified a high severity vulnerability in the Android version of Apache Cordova. Updates have been released to address the...
SensioLabs, the creator of the popular PHP web application framework Symfony, announced on Wednesday the availability of updates that address a security bug.