L0phtCrack – the venerable Windows system password auditing tool – has been released as an open-source utility. Christien Rioux (DilDog), one of the original authors of L0phtCrack while...
In what could have been considered a cryptographic supply chain security incident in the making, GitLab and other providers have blocked known, weak SSH keys generated through GitKraken....
MyBB is warning users that the latest version of the software has introduced a CAPTCHA-breaking bug that could impact forum functionality. The popular open source software...
A tool used by whisteblowers and the media to securely send information has patched two vulnerabilities that could have impacted the anonymous nature of the file-sharing system. OnionShare...
Multiple security vulnerabilities in open source status page system Cachet could allow an attacker to execute arbitrary code and steal sensitive data, researchers have warned. Cachet is a...
The Electronic Frontier Foundation (EFF) is planning to retire the HTTPS Everywhere browser extension because, 10 years on from the release of the plugin, its security mission has...
Numerous vulnerabilities have been identified and fixed in Apache HTTP Server 2.4, including high-impact server-side request forgery (SSRF) and request smuggling bugs. The Apache HTTP Server Project is...
A new Chrome browser extension has been released to help bug bounty hunters find keys that have made their way into JavaScript online. The open source extension, now...
Beego has patched a severe cross-site scripting (XSS) vulnerability that could lead to the compromise of a victim’s session or account. Beego is an open source framework designed for building...
In today’s cloud-native, app-first and remote-first world, it has become a considerably more complicated task to verify a user or a service’s identity and determine policies...
Recent Comments