John Jackson has been working in cybersecurity for less than five years, but already has several significant wins under his belt. After five years as an engineer...
Malicious proof-of-concepts (PoCs) are potentially exposing GitHub users to malware and other malfeasance, researchers have found. In a paper titled ‘How security professionals are being attacked: A study...
The team behind the Cobalt Strike penetration testing tool has responded to reports of a failed remote code execution (RCE) exploit patch with a new fix....
Windows servers running Microsoft Office Online Server can be exploited to achieve server-side request forgery (SSRF) and thereafter remote code execution (RCE) on the host, according...
WatchGuard has patched several vulnerabilities in two main firewall brands that have been rated between medium and critical severity. In combination, two of the flaws allowed...
A tool that aims to “keep the fun in hacking” by simplifying penetration test reports is being showcased at Black Hat USA’s Arsenal track yesterday (August...
Black Hat USA attendees were given a firsthand look at the new and improved ReNgine, which includes several new features for penetration testers and red teamers. ReNgine is...
An unauthenticated arbitrary object instantiation vulnerability in LDAP Account Manager (LAM) has been discovered during an internal penetration test. LAM is a PHP web application for...
Intigriti has today announced a new program that will combine bug bounty hunting with penetration testing models to offer hackers payment by the hour for their...
Critical bugs have been unearthed in Hitachi Vantara’s Pentaho Business Analytics software, a report has warned. A penetration test report, finalized on April 4 and cleared for public...
Recent Comments