A cybersecurity researcher who specializes in industrial control systems (ICS) has identified three types of critical vulnerabilities in products made by human-machine interface (HMI) manufacturer Weintek....
A security researcher has detailed how they were able to exploit GDPR laws to leak sensitive personal information from the systems put in place to protect it. Full-time...
A security researcher has launched a GoFundMe campaign to secure legal representation after a responsible disclosure notice apparently went sour. In a tweet dated March 8, Rob Dyke,...
A security researcher has been awarded a $55,000 bug bounty after they chained a pair of vulnerabilities in an unnamed third-party application to achieve server-side request forgery (SSRF) and...
A security vulnerability that allowed attackers to disclose Actions secrets in GitHub repositories has been patched, and the researcher who discovered the bug was awarded $25,000. On March...
Adobe has released out-of-band security updates to address a critical vulnerability impacting ColdFusion versions 2021, 2016, and 2018. Today’s emergency updates patch an arbitrary code execution security...
Another ransomware operation known as ‘BlackKingdom’ is exploiting the Microsoft Exchange Server ProxyLogon vulnerabilities to encrypt servers. Over the weekend, security researcher Marcus Hutchins, aka MalwareTechBlog, tweeted that a...
A new variant of Mirai has been discovered that is abusing security flaws in D-Link, Netgear, and SonicWall devices, among others. Since February, this variant has...
Google has released a Proof-of-Concept (POC) that utilizes Spectre side-channel vulnerability, which targets the browser’s JavaScript engine to leak information from its memory. Google released this POC for...
Executive Summary Unit 42 researchers have been credited with discovering 15 new vulnerabilities addressed by the Microsoft Security Response Center (MSRC), Adobe Security Bulletin and Apple Security Updates, as part...