Security vulnerabilities stories
Team82 and JFrog discover 14 vulnerabilities in the latest version of BusyBox, affecting OT and IoT devices running on Linux.
Microsoft Defender vulnerability poses significant threat, warns Virsec. With 55 vulnerabilities in total, it is deemed the most concerning by experts.
API vulnerabilities pose a significant risk to companies and individuals worldwide, according to new research by Akamai Technologies.
Vulnerabilities in Wincor Cineo ATMs allow attackers to bypass encryption and make cash withdrawals, according to researchers.
Invicti, the cybersecurity firm, has combined web application security expertise from its 2018 merger of Netsparker and Acunetix. .
Apple has urgently released patches for multiple software products due to vulnerabilities that may be linked to the Pegasus spyware.
Privacy Commissioner John Edwards named preferred candidate for UK Information Commissioner, pending UK Parliament's decision.
The average time to remediate the most severe vulnerabilities in an organisation's IT infrastructure has now reached 256 days.
Ivanti has acquired risk-based vulnerability management specialist RiskSense to enhance its patch management capabilities.
Positive Technologies reveals critical vulnerability in SonicWall Network Security Manager, allowing authenticated attackers full control.
The solution, Runecast Analyzer, provides configuration and security compliance analysis for AWS and Azure cloud, Kubernetes clusters and VMware SDDCs.
Every organisationusing Microsoft Exchange must patch their on-premise servers immediately and scan their networks for signs of malicious activity.
Widespread vulnerabilities have been found in Ovarro's TBox remote terminal units, posing a threat to industrial facilities.
Tenable launches risk-based vulnerability management platform Tenable.ep, combining its products into a single solution. .
Critical and low complexity vulnerabilities are on the rise, with over 10,000 logged in 2020, according to a new study by Redscan.
Vulnerability disclosures are returning to normal levels, with 2020 on track to surpass 2019, according to a report by Risk Based Security.
AppDynamics, part of Cisco, has released Cisco Secure Application, a solution designed to simplify vulnerability management.
Datadog and Snyk integrate with GitHub, allowing developers to use Datadog's CI/CD capabilities in their workflows.
AMNESIA:33 is a set of 33 memory-corrupting vulnerabilities affecting four open source TCP/IP stacks: uIP; FNET; picoTCP; and Nut/Net.
The widely-used java logging library, log4j, has been actively exploited, according to an update from CERT NZ and Catalyst.