News

password

Zoom could allow an attacker to capture the hashed Windows login credentials and then dehash them. The attack takes place…

|
Last updated September 23, 2021
microsoft windows

Microsoft April Tuesday Patch is bringing 115 fixes, 19 of which concern critical vulnerabilities. The latest patch covers a wide…

|
Last updated September 23, 2021
mozilla firefox

Firefox fixed two zero-day "use-after-free" flaws that were under exploitation in the wild. The particular flaws may affect other Web…

|
Last updated September 23, 2021
iphone

Researchers warn about a nasty flaw in Apple Mail, which is triggered by large email messages. The attack is pretty…

|
Last updated September 23, 2021
ibm_fix

A researcher has tried to report four severe zero-days to IBM concerning their IDRM product. The company ignored the report,…

|
Last updated September 23, 2021
Patch on a hand

Microsoft has released another fixing update for Windows components, plugging 17 critical flaws.  The vulnerabilities concern remote code execution, elevation…

|
Last updated September 23, 2021
microsoft teams

Researchers have discovered a way to grab the authentication tokens from Microsoft Teams. The exploit chain presupposes the compromise of…

|
Last updated September 23, 2021
vulnerability

The flaws that are being exploited the most concern MS Office and Windows tools. All of them have been addressed…

|
Last updated September 23, 2021
code

Someone working for Huawei has tried to contribute to the Linux kernel. The proposed patch contained a trivially exploitable vulnerability,…

|
Last updated September 23, 2021
Android mascot

An image using an unsupported color space is causing an out-of-bound crash on Android 10 or earlier. Some devices are…

|
Last updated September 23, 2021
photo album

Four QNAP Photo Album vulnerabilities that were discovered and fixed last year are still affecting 450k instances. The researcher who…

|
Last updated September 23, 2021
vlc media player

VLC has published a new bug-fixing version, and people are advised to apply it urgently. The flaw may result in…

|
Last updated September 23, 2021
palo alto networks

A freshly discovered and patched critical vulnerability threatens corporate networks with catastrophic attacks. An actor could potentially access protected information…

|
Last updated September 23, 2021
usb stick

FabulaTech’s “USB for Remote Desktop” allows hackers to create fake virtual USB devices and launch attacks on the software’s users.…

|
Last updated September 23, 2021
Patch on a hand

Microsoft has released the July 2020 patch, and it comes with over a hundred critical and important bug fixes. One…

|
Last updated September 23, 2021
sap

SAP releases a critical patch, plugging severe remote server takeover hole that requires no authentication. The discoverer of the vulnerability…

|
Last updated September 23, 2021
tor project onion

A researcher who got fed-up with Tor Project’s ignorance has decided to publish two-zero days. The man says there are…

|
Last updated September 23, 2021
vulnerability

CVE publication is nowadays clearly running behind exploits, in at least four out of five flaws. That is not taking…

|
Last updated September 23, 2021
slack

An RCE flaw affecting Slack 4.4 and older can potentially lead to a wide range of severe compromises. The researcher…

|
Last updated September 23, 2021
vulnerability

Facebook introduced a vulnerability disclosure policy, and it leaves software vendors very little room for loitering. The social media company…

|
Last updated September 23, 2021
For a better user experience we recommend using a more modern browser. We support the latest version of the following browsers: For a better user experience we recommend using the latest version of the following browsers: