A legal demand has allegedly prevented a security conference speaker from holding a talk on Xerox printers. On February 18, a copy of a notice published...
Synopsys Cybersecurity Research Center (CyRC) researchers have discovered CVE-2020-27223, a denial of service vulnerability in Eclipse Jetty, a widely used open source web server and servlet container. According...
Positive Technologies security researcher Alexander Popov has discovered and fixed five similar issues in the virtual socket implementation of the Linux kernel. These vulnerabilities could be exploited...
A legal demand has allegedly prevented a security conference speaker from holding a talk on Xerox printers. On February 18, a copy of a notice published...
Welcome to the first Bug Bounty Radar of 2021, back with a bang after a short hiatus. As you’ll see, we’ve introduced a smart new design – but...
UPDATED A Go package that relays system information to a Chinese IP address was one of several suspicious repositories uncovered during an investigation into typosquatting in the...
Project Zero, Google’s 0day bug-hunting team, shared technical details and proof-of-concept (PoC) exploit code for a critical remote code execution (RCE) bug affecting a Windows graphics...
Microsoft has won praise from security researchers by making its CodeQL queries public so any organization could use the open source tools to analyze if they...
Security researchers at Detectify have discovered a series of middleware misconfigurations in Nginx that could leave web applications vulnerable to attack. Lightweight, modular, open source, and with...
The maintainers of systeminformation, a popular Node.js package, have patched a bug that left applications vulnerable to command injection attacks. Systeminformation provides dozens of functions for retrieving...
Recent Comments