Researchers at Qualys discovered a new Remote Code Execution flaw in the OpenSSH. This flaw exists in OpenSSH’s forward ssh-agent....
A security engineer and ex-contributor to an open systems non-profit organization recently reported a data leak to the organization. In return, he first got thanked for his responsible reporting,...
Clop ransomware group has allegedly hacked the grades and social security numbers for students at the University of Colorado and patient data of the University of...
Cyberinsurance firm CNA Financial was reportedly hit by a possible cyberattack. The company is one of the largest insurance providers in the U.S. The company’s website is experiencing...
WhiteHat Security, application security provider, released AppSec Stats Flash Volume 3, the latest installment of the company’s monthly report and podcast reflecting on the current state of...
As work-from-home policies persist for many enterprises amid the global pandemic – and may become permanent in the long run – the cyber threat landscape has...
A long-held belief among enterprise organizations is the more you spend on IT and security technology, the stronger your security posture will be. The tendency has...
The Energy Department has been focused on securing the generation and transmission of power, but distribution processes are also increasingly vulnerable. The Energy Department is collaborating...
Microsoft has launched a bug bounty program for 365 applications, with Microsoft Teams’ desktop client the sole in-scope target for now. Announced yesterday (March 24), the Microsoft Applications Bounty...
Security researchers have harnessed the novel ‘H2C smuggling’ technique to achieve authentication, routing, and WAF bypasses on a number of leading cloud platforms. The attack’s first...
The majority of the web is now protected against information disclosure exploits that leverage the HTTP referrer header after Mozilla announced a privacy-focused Firefox update. Launched yesterday (March...
Recent Comments