Researchers discovered alarming camera app flaws spread across the Android ecosystem. The PoC can activate the camera silently, steal media…
News
Truecaller could allow an attacker to inject a malicious link as a profile URL, exploiting targets on the platform. The…
Kaspersky, Autodesk, and Trend Micro in the spotlight again for severe privilege escalation vulnerabilities. Researchers from SafeBreach discovered that some…
Two popular “Ultimate Addons” plugins allow hackers to take full control of WordPress websites. The only thing that the attacker…
Researcher discovers a highly critical vulnerability that affects widely-used Citrix software products. The vulnerability takes only a minute to exploit…
A researcher has discovered three flaws that concern Ruckus Networks Unleashed models. The vendor has already fixed the vulnerabilities via…
NVIDIA fixes a severe vulnerability in the GeForce companion app, which leads to privilege escalation and DoS. The actor would…
The Cyberark team has discovered a severe flaw in specific Microsoft OAuth 2.0 applications. An attacker could steal the access…
Cisco discovered four remote code execution vulnerabilities in Foxit PDF Reader’s JavaScript engine. The developer was immediately notified, and a…
NSA has helped Microsoft fix a highly critical Windows bug instead of keeping it for themselves. The problem concerns a…
A flaw in WhatsApp client for macOS and Windows could have resulted in RCE attack scenarios. The exploit was made…
Researchers found 11 critical vulnerabilities that can lead to severe Bluetooth attacks. The attacks could crash the target device, force…
This month’s patches for Windows and Adobe software have landed, so it’s time to apply them. Microsoft has fixed 12…
Many of ZyXEL’s NAS devices are vulnerable to a newly discovered zero-day flaw that is under exploitation. The exploit code…
Netgear urges its customers to update their routers’ and gateways’ firmware in order to plug flaws. The list of the…
A flaw that could automate Slack account takeovers has been already fixed and disclosed now. The attack would involve five…
A wormable flaw on SMBv3 has been published, but not fixed by Microsoft yet. The company offered some workarounds and…
Dashlane, LastPass, Keeper, 1Password, and RoboForm were subjected to multiple security tests. Some succumbed to brute forcing, others to clipboard…
“Pwn2Own 2020” has ended, and researchers made it a huge success once again. Many widely-used software tools and operating systems…






