Mozilla patches Wednesday’s Pwn2Own double-exploit… on Friday!
That was quick! 48 hours from exploit report to published patch. Continue reading Mozilla patches Wednesday’s Pwn2Own double-exploit… on Friday!
Collaborate Disseminate
That was quick! 48 hours from exploit report to published patch. Continue reading Mozilla patches Wednesday’s Pwn2Own double-exploit… on Friday!
Remember the good old days when security patches rarely needed patches? Because security patches themlelves were rare enough anyway? Continue reading Microsoft patches the Patch Tuesday patch that broke authentication
Find and patch. Right now. If you can’t patch, get it off the network. Right now! Oh, and show us what you did to comply. Continue reading US Government says: Patch VMware right now, or get off our network
Latest episode – listen now! Continue reading S3 Ep83: Cracking passwords, patching Firefox, and Apple vulns [Podcast]
What’s better? Disclose early, patch fast? Or dig deep, disclose in full, patch more slowly? Continue reading Pwn2Own hacking schedule released – Windows and Linux are top targets
You’ll find fixes for numerous kernel-level code execution holes, including an 0-day vulnerability in many (though not all) versions. Continue reading Apple patches zero-day kernel hole and much more – update now!
A new point-release of Firefox. Not unusual, but the timing of this one is interesting, with Pwn2Own coming up in a few days. Continue reading Firefox out-of-band update to 100.0.1 – just in time for Pwn2Own?
Crooks don’t need a password for every user on your network to break in and wreak havoc. One could be enough… Continue reading He sold cracked passwords for a living – now he’s serving 4 years in prison
Latest episode – lots to learn – plain English – fun with a serious side – listen now! Continue reading S3 Ep82: Bugs, bugs, bugs (and Colonial Pipeline again) [Podcast]
Learn how to write plain-speaking and purposeful security advisories from one of the most widely-used open source tools in the world. Continue reading Serious Security: Learning from curl’s latest bug update