2017 Cisco WebEx flaw increasingly leveraged by attackers, phishing campaigns rise

Network attacks targeting a vulnerability in the Cisco Webex Chrome extension have increased dramatically. In fact, they were the second-most common network attack, according to WatchGuard Technologies latest Internet Security Report for the last quart… Continue reading 2017 Cisco WebEx flaw increasingly leveraged by attackers, phishing campaigns rise

Webex Vulnerability Can Enable Remote Code Execution

Cisco Systems patched a serious privilege escalation vulnerability in the Webex Meetings Desktop App and the Webex Productivity Tools that could be exploited remotely on local networks. The flaw has been dubbed WebExec and was found during a penetrati… Continue reading Webex Vulnerability Can Enable Remote Code Execution

Zero-Day RCE Flaw Found in Microsoft JET Database Engine

Trend Micro’s Zero Day Initiative (ZDI) team has publicly disclosed a serious remote code execution vulnerability in the Microsoft JET Database engine which is used by several Microsoft products. ZDI decided to disclose the flaw even though ther… Continue reading Zero-Day RCE Flaw Found in Microsoft JET Database Engine

Cisco fixes a host of security holes, including latest Apache Struts flaw

Cisco has plugged a heap of security holes – three of which are critical – in a variety of its products. The critical flaws The flaws deemed critical are: A DoS and RCE vulnerability (CVE-2018-0423) in the web-based management interface of … Continue reading Cisco fixes a host of security holes, including latest Apache Struts flaw

Drupal, Twitter, iLo Ransomware, and Cambridge Analytica – Paul’s Security Weekly #558

Firms running Cisco WebEx are told to update their software, Medical devices vulnerable to KRACK Wi-Fi attacks, Kitty Cryptomining Malware Cashes in on Drupalgeddon 2.0, Facebook fires engineer accused of stalking women, and more on this episode of Pau… Continue reading Drupal, Twitter, iLo Ransomware, and Cambridge Analytica – Paul’s Security Weekly #558

Cisco rolls out new wave of must-install WebEx patches

Cisco has released several patches for users of WebEx clients and its Access Control System, all of which are mandatory if users want to keep using the products safely. The release comes two weeks after the networking giant issued critical patches for … Continue reading Cisco rolls out new wave of must-install WebEx patches