A buffer overflow vulnerability in Apache HTTP Server could allow attackers to perform remote code execution attacks. The vulnerability (CVE-2021-44790) can be exploited via a carefully crafted request body that...
UK NHS reveals ongoing attacks on VMWare Horizon servers. VMWare Horizon is a platform used to deploy virtual desktops in enterprise environments. Attackers are planting web...
JFrog’s senior director of security research said the vulnerability has a root cause similar to Log4Shell. Security researchers from JFrog said on Thursday that they discovered...
Microsoft has warned the security community that the Log4j vulnerabilities still represent a complex and high risk for companies across the globe, as this open-source component...
SecurityWeek has compiled a list of the advisories published by industrial control system (ICS) and other industrial-related vendors in response to the recent Log4j vulnerabilities. Several vulnerabilities...
The FreeRTOS Vulnerability Disaster- New vulnerabilities have been discovered in FreeRTOS, the open-source operating system that runs most of the small microprocessors and microcontrollers used in...
Google this week announced the release of Chrome 97 in the stable channel with a total of 37 security fixes, including 24 for vulnerabilities reported by...
Web skimming attacks are targeting hundreds of real estate websites via a cloud-based video hosting service, researchers have warned. A blog post from Unit 42, the research arm...
Vulnerabilities in the e-commerce domain of Indian bookseller Oswaal Books could have allowed attackers to seize control of the website, a security researcher has claimed. In...
A financially-motivated actor dubbed ‘Elephant Beetle’ is stealing millions of dollars from organizations worldwide using an arsenal of over 80 unique tools and scripts. The group...