A Couple Critical Zoom Chat Vulnerabilities Found and Fixed

Security researchers found a couple of vulnerabilities affecting the chat features of the popular video conferencing app Zoom that, if exploited, would have let attackers achieve arbitrary code execution. While the mere mention of Zoom makes people thi… Continue reading A Couple Critical Zoom Chat Vulnerabilities Found and Fixed

FIRST releases updated coordination principles for Multi-Party Vulnerability Coordination and Disclosure

The Forum of Incident Response and Security Teams (FIRST) has released an updated set of coordination principles – Guidelines for Multi-Party Vulnerability Coordination and Disclosure version 1.1. Stakeholder roles and communication paths The purpose T… Continue reading FIRST releases updated coordination principles for Multi-Party Vulnerability Coordination and Disclosure

US Government Advises Everyone to Upgrade Google Chrome as Soon as Possible

The US Cybersecurity and Infrastructure Security Agency (CISA) is advising companies, institutions and regular users to update their Google Chrome browsers to the latest version as soon as possible. Given the dominant position of Google Chrome in the I… Continue reading US Government Advises Everyone to Upgrade Google Chrome as Soon as Possible

Researchers design a tool to identify the source of errors caused by software updates

We’ve all shared the frustration when it comes to errors – software updates that are intended to make our applications run faster inadvertently end up doing just the opposite. These bugs, dubbed in the computer science field as performance … Continue reading Researchers design a tool to identify the source of errors caused by software updates

Critical Flaws in Magento e-Commerce Platform Allow Code-Execution

Admins are encouraged to update their websites to stave off attacks from Magecart card-skimmers and others. Continue reading Critical Flaws in Magento e-Commerce Platform Allow Code-Execution

Updating to Windows 10 for Fun and Profit: Make Those OEM Keys Go Further

Microsoft seems to have an every-other-version curse. We’re not sure how much of this is confirmation bias, but consider the track record of releases. Windows 95 was game-changing, Windows 98 famously crashed during live demo. Windows 2000 was amazing, Windows ME has been nicknamed the “Mistake Edition”. XP was the …read more

Continue reading Updating to Windows 10 for Fun and Profit: Make Those OEM Keys Go Further

Cisco Fixes High-Risk Vulnerabilities in Some Small Business RV Series Routers

A number of Cisco Small Business RV Series Routers series were found to be vulnerable to a couple of attacks, and Cisco was quick to explain what the vulnerabilities were and that the patches were issued. Cisco confirmed that command injection and arbi… Continue reading Cisco Fixes High-Risk Vulnerabilities in Some Small Business RV Series Routers