PoC Exploit Targeting Apache Struts Surfaces on GitHub

Researchers have discovered freely available PoC code and exploit that can be used to attack unpatched security holes in Apache Struts 2. Continue reading PoC Exploit Targeting Apache Struts Surfaces on GitHub

Two 0-Days Under Active Attack, Among 120 Bugs Patched by Microsoft

One of the two zero-day bugs is rated ‘critical’ and is classified as a remote code-execution bug impacting Microsoft’s Internet Explorer. Continue reading Two 0-Days Under Active Attack, Among 120 Bugs Patched by Microsoft

Qualcomm Bugs Open 40 Percent of Android Handsets to Attack

Researchers identified serious flaws in Qualcomm’s Snapdragon SoC and the Hexagon architecture that impacts nearly half of Android handsets. Continue reading Qualcomm Bugs Open 40 Percent of Android Handsets to Attack

Black Hat 2020: Influence Campaigns Are a Cybersecurity Problem

An inside look at how nation-states use social media to influence, confuse and divide — and why cybersecurity researchers should be involved. Continue reading Black Hat 2020: Influence Campaigns Are a Cybersecurity Problem

Black Hat 2020: Using Botnets to Manipulate Energy Markets for Big Profits

Black Hat 2020 session discusses how high-wattage connected devices like dishwashers and heating systems can be recruited into botnets and used to manipulate energy markets. Continue reading Black Hat 2020: Using Botnets to Manipulate Energy Markets for Big Profits

Microsoft Tackles 123 Fixes for July Patch Tuesday

Eighteen critical bugs, impacting Windows Server, Office and Outlook, were fixed as part of the patch roundup. Continue reading Microsoft Tackles 123 Fixes for July Patch Tuesday

Critical DNS Bug Opens Windows Servers to Infrastructure Takeover

Microsoft gives the ‘wormable’ flaw a security rating of 10 – the most severe warning possible. Continue reading Critical DNS Bug Opens Windows Servers to Infrastructure Takeover