Login with Facebook Bug Earns $20K Bounty
The cross-site scripting vulnerability could have allowed trivial account takeover. Continue reading Login with Facebook Bug Earns $20K Bounty
Collaborate Disseminate
The cross-site scripting vulnerability could have allowed trivial account takeover. Continue reading Login with Facebook Bug Earns $20K Bounty
OpenWrt is an open source operating system used by millions of home and small business routers and embedded devices. Continue reading Patch now! Critical flaw found in OpenWrt router software
An out-of-band Adobe security update addressed critical flaws in Photoshop, Acrobat Reader and other products. Continue reading Adobe Discloses Dozens of Critical Photoshop, Acrobat Reader Flaws
Slack has fixed a bug that allowed attackers to hijack user accounts by tampering with their HTTP sessions. Continue reading Slack fixes account-stealing bug
What’s the difference between a scheduled security update and one that’s out-of-band? In this case, it’s two days. Continue reading Microsoft patches wormable Windows 10 ‘SMBGhost’ flaw
Chris Eng with Veracode talks about how organizations are falling into security debt due to patch management issues. Continue reading Chris Eng: Patch Management Challenges Drive ‘Security Debt’
The uncontrolled search path vulnerability allows a local user to use DLLs to escalate privileges and affects Windows PCs. Continue reading Dell Patches SupportAssist Flaw That Allows Arbitrary Code Execution
By Waqas
Smart door and building access control systems are currently the top targets of hackers to launch DDoS attacks (distributed denial-of-service attacks).
This is a post from HackRead.com Read the original post: Hackers exploiting vulnerability i… Continue reading Hackers exploiting vulnerability in smart doors to launch DDoS attacks
Maya Horowitz with Check Point Research discussed recently-disclosed Zoom vulnerabilities that could have opened up web conferencing meetings to hackers. Continue reading Video: Zoom Researcher Details Web Conference Security Risks, 2020 Threats
A fortnight in to 2020 and we have the first security flaw to be given its own name: Cable Haunt – complete with eye-catching logo. Continue reading ‘Cable Haunt’ vulnerability exposes 200 million cable modem users