Vulnerability disclosure policy bill for federal contractors clears Senate panel

The Homeland Security and Governmental Affairs Committee on Wednesday also advanced legislation to strengthen the federal IT supply chain.

The post Vulnerability disclosure policy bill for federal contractors clears Senate panel appeared first on CyberScoop.

Continue reading Vulnerability disclosure policy bill for federal contractors clears Senate panel

Vulnerability disclosure policy bill for federal contractors clears Senate panel

The Homeland Security and Governmental Affairs Committee on Wednesday also advanced legislation to strengthen the federal IT supply chain.

The post Vulnerability disclosure policy bill for federal contractors clears Senate panel appeared first on CyberScoop.

Continue reading Vulnerability disclosure policy bill for federal contractors clears Senate panel

Android warns of Qualcomm exploit in latest security bulletin

The November security bulletin includes two CVE’s reportedly exploited in the wild.

The post Android warns of Qualcomm exploit in latest security bulletin appeared first on CyberScoop.

Continue reading Android warns of Qualcomm exploit in latest security bulletin

EU adopts Cyber Resilience Act to secure connected products

The EU Council has adopted the Cyber Resilience Act (CRA), a new law that aims to make consumer products with digital components safe(r) to use. CRA requirements The CRA outlines EU-wide cybersecurity standards for digital products, i.e. products that … Continue reading EU adopts Cyber Resilience Act to secure connected products

Printer bug sends researchers into uproar, affects major Linux distros

The vulns would allow attackers to run any commands on targeted computers without user knowledge. But it would take a lot of work to get to that point.

The post Printer bug sends researchers into uproar, affects major Linux distros appeared first on CyberScoop.

Continue reading Printer bug sends researchers into uproar, affects major Linux distros

Automatic tank gauge vendors alerted of software vulnerabilities in their products

If exploited, the vulnerabilities could give hackers full administrative access to critical networks found in the management systems for large fuel storage.

The post Automatic tank gauge vendors alerted of software vulnerabilities in their products appeared first on CyberScoop.

Continue reading Automatic tank gauge vendors alerted of software vulnerabilities in their products

Here’s what Microsoft fixed in September’s Patch Tuesday

The tech giant’s regular vulnerability list includes new vulnerabilities for Windows Updater and Installer.

The post Here’s what Microsoft fixed in September’s Patch Tuesday appeared first on CyberScoop.

Continue reading Here’s what Microsoft fixed in September’s Patch Tuesday

Vulnerability disclosure policies eyed for federal contractors in Senate bill

The legislation from Sens. Warner and Lankford would require federal contractors to adhere to NIST’s guidelines on VDPs.

The post Vulnerability disclosure policies eyed for federal contractors in Senate bill appeared first on CyberScoop.

Continue reading Vulnerability disclosure policies eyed for federal contractors in Senate bill

A critical vulnerability in Delinea Secret Server allows auth bypass, admin access

Organizations with on-prem installations of Delinea Secret Server are urged to update them immediately, to plug a critical vulnerability that may allow attackers to bypass authentication, gain admin access and extract secrets. Fixing the Delinea Secret… Continue reading A critical vulnerability in Delinea Secret Server allows auth bypass, admin access

Six-year old bug will likely live forever in Lenovo, Intel products

A report from Binarly finds that a silently patched bug in a popular web server will likely live on in several major end-of-life products.

The post Six-year old bug will likely live forever in Lenovo, Intel products appeared first on CyberScoop.

Continue reading Six-year old bug will likely live forever in Lenovo, Intel products