News

netgear

Netgear urges its customers to update their routers’ and gateways’ firmware in order to plug flaws. The list of the…

|
Last updated September 23, 2021
slack_logo

A flaw that could automate Slack account takeovers has been already fixed and disclosed now. The attack would involve five…

|
Last updated September 23, 2021
microsoft sbm servers

A wormable flaw on SMBv3 has been published, but not fixed by Microsoft yet. The company offered some workarounds and…

|
Last updated September 23, 2021
password manager vault

Dashlane, LastPass, Keeper, 1Password, and RoboForm were subjected to multiple security tests. Some succumbed to brute forcing, others to clipboard…

|
Last updated September 23, 2021
pwn2own vancouver

“Pwn2Own 2020” has ended, and researchers made it a huge success once again. Many widely-used software tools and operating systems…

|
Last updated September 23, 2021
password

Zoom could allow an attacker to capture the hashed Windows login credentials and then dehash them. The attack takes place…

|
Last updated September 23, 2021
camera

A researcher unveils two zero-day flaws that concern the macOS version of Zoom, the digital meetings app. The first bug…

|
Last updated September 23, 2021
microsoft windows

Microsoft April Tuesday Patch is bringing 115 fixes, 19 of which concern critical vulnerabilities. The latest patch covers a wide…

|
Last updated September 23, 2021
mozilla firefox

Firefox fixed two zero-day "use-after-free" flaws that were under exploitation in the wild. The particular flaws may affect other Web…

|
Last updated September 23, 2021
iphone

Researchers warn about a nasty flaw in Apple Mail, which is triggered by large email messages. The attack is pretty…

|
Last updated September 23, 2021
ibm_fix

A researcher has tried to report four severe zero-days to IBM concerning their IDRM product. The company ignored the report,…

|
Last updated September 23, 2021
Patch on a hand

Microsoft has released another fixing update for Windows components, plugging 17 critical flaws.  The vulnerabilities concern remote code execution, elevation…

|
Last updated September 23, 2021
microsoft teams

Researchers have discovered a way to grab the authentication tokens from Microsoft Teams. The exploit chain presupposes the compromise of…

|
Last updated September 23, 2021
vulnerability

The flaws that are being exploited the most concern MS Office and Windows tools. All of them have been addressed…

|
Last updated September 23, 2021
code

Someone working for Huawei has tried to contribute to the Linux kernel. The proposed patch contained a trivially exploitable vulnerability,…

|
Last updated September 23, 2021
Android mascot

An image using an unsupported color space is causing an out-of-bound crash on Android 10 or earlier. Some devices are…

|
Last updated September 23, 2021
photo album

Four QNAP Photo Album vulnerabilities that were discovered and fixed last year are still affecting 450k instances. The researcher who…

|
Last updated September 23, 2021
vlc media player

VLC has published a new bug-fixing version, and people are advised to apply it urgently. The flaw may result in…

|
Last updated September 23, 2021
usb stick

FabulaTech’s “USB for Remote Desktop” allows hackers to create fake virtual USB devices and launch attacks on the software’s users.…

|
Last updated September 23, 2021
palo alto networks

A freshly discovered and patched critical vulnerability threatens corporate networks with catastrophic attacks. An actor could potentially access protected information…

|
Last updated September 23, 2021
For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: