News

password_manager

Five of the most widely used password managers were found to use poor memory sanitization techniques. Hackers who know of…

|
Last updated September 23, 2021
british-airways-entertainment

A cybersecurity researcher figures out a way to crash the chat app in a flight entertainment system. The buffer overflow…

|
Last updated September 23, 2021
gog_galaxy

GOG Galaxy contains six severe vulnerabilities that permit privilege escalation and arbitrary code execution. Most of the vulnerabilities concern the…

|
Last updated September 23, 2021

Xiaomi’s Guard Provider makes the devices vulnerable to MITM attacks, leading to malware infection. The vulnerability lies in the fact…

|
Last updated September 23, 2021
dropbox_app

Dropbox’s latest HackerOne round brings in 264 new vulnerabilities and takes out $320k in rewards. The company is taking bug…

|
Last updated September 23, 2021
wifi_chip

Two Broadcom WiFi chipset drivers are vulnerable to validation bypassing and heap buffer overflow. There’s an extensive list of 166…

|
Last updated September 23, 2021
malware_code

AdBlock, AdBlock Plus, and uBlock are vulnerable to arbitrary code execution. There are numerous web services that can be exploited…

|
Last updated September 23, 2021
email_laptop

Quite a lot of the most widely used email clients are vulnerable to signature spoofing attacks. The relevant study shows…

|
Last updated September 23, 2021
Dell Campus

Dell’s SupportAssist allows malicious actors to download and run arbitrary executables. The software was supposed to be locked from getting…

|
Last updated September 23, 2021

A WhatsApp call is enough to plant particularly nasty spyware in your smartphone. The actors are using NSO’s Pegasus, a…

|
Last updated September 23, 2021
Microsoft_building

Users of older and unsupported Windows versions are in danger, but Microsoft won’t leave them to their fate. A new…

|
Last updated September 23, 2021
GNOME DE

Recent Linux Kernel versions are vulnerable to a complicated scenario of exploitation. The primary source of the problem is a…

|
Last updated September 23, 2021

Slimstat Analytics plugin is vulnerable to a visitor XSS storing handout to attackers. The developers released a fixing patch shortly…

|
Last updated September 23, 2021
microsoft laptop

A hacker has published a new zero-day vulnerability in Windows 10, along with the associated proof of concept code. The…

|
Last updated September 23, 2021
Microsoft Notepad UI

A Google researcher has discovered a way to exploit Notepad remotely. The researcher claims that his method is perfectly doable…

|
Last updated September 23, 2021
Nvidia Logo

Nvidia urges users to update their 'GeForce Experience' suite to version 3.19. Previous versions are ridden by two highly severe…

|
Last updated September 23, 2021
servers

Streaming service providers that use the Infomir infrastructure are possibly vulnerable to RCE. The flaw does not affect only the…

|
Last updated September 23, 2021
Covering the PIN pad of an ATM

Older Diebold Nixdorf ATMs running outdated software are vulnerable to RCE attacks. The ATMs that carry this flaw are of…

|
Last updated September 23, 2021
VLC cone

VLC releases a final bug-fixing version just before we enter the 4.0 branch age. There are 33 fixes to security…

|
Last updated September 23, 2021
Evernote Logo

Researchers warn of a severe Evernote vulnerability affecting older versions of its Chrome extension. An attacker could abuse the extension’s…

|
Last updated September 23, 2021
For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: