Juha Saarinen

Juha Saarinen has been covering the technology sector since the mid-1990s for publications around the world. In addition to techpartner.news, he has written for iTnews since 2010 and also contributes to the New Zealand Herald, the Guardian and Wired's Threat Level section.

He is based in Auckland, New Zealand.

Recent articles by Juha Saarinen

Student hacker behind ctx and phpass repo-jacking steps forward

Student hacker behind ctx and phpass repo-jacking steps forward

Captured data deleted and not used, attacker claims.
Juha Saarinen May 26 2022 6:32AM Security
Popular Python and PHP software repo-jacked

Popular Python and PHP software repo-jacked

Hacked PyPI ctx and PHP phpass libraries steal environment variables.
Juha Saarinen May 25 2022 12:30PM Security
China spied on Russian defence research institutes

China spied on Russian defence research institutes

Twisted Panda APT used sophisticated malware.
Juha Saarinen May 20 2022 6:58AM Security
'White hat' hackers no longer risk prosecution by the US

'White hat' hackers no longer risk prosecution by the US

Department of Justice revises policy.
Juha Saarinen May 20 2022 6:54AM Security
Careful you don't unwittingly hire North Korean IT freelancers

Careful you don't unwittingly hire North Korean IT freelancers

American authorities warn of elaborate employment scams.
Juha Saarinen May 19 2022 12:11PM Security
NSW digital driver's licences 'easily forgeable'

NSW digital driver's licences 'easily forgeable'

Underage people allegedly go drinking with fake IDs.
Juha Saarinen May 18 2022 1:15PM Security
Apple patches actively exploited macOS Big Sur bug

Apple patches actively exploited macOS Big Sur bug

A month after macOS Monterey was patched.
Juha Saarinen May 17 2022 12:50PM Security
Zyxel firewalls vulnerable to remote code execution

Zyxel firewalls vulnerable to remote code execution

Vendor jumps the gun on patches.
Juha Saarinen May 13 2022 12:22PM Security
Google adds phishing protection to Workspace apps

Google adds phishing protection to Workspace apps

Zero trust for Slides, Docs and Sheets as well as Gmail.
Juha Saarinen May 12 2022 6:49AM Cloud
Active Directory defaults lead to no-fix PrivEsc vulnerability

Active Directory defaults lead to no-fix PrivEsc vulnerability

Researcher publishes proof-of-concept.
Juha Saarinen May 11 2022 5:20AM Security
Microsoft fixes remote code exec bug in Azure database connector

Microsoft fixes remote code exec bug in Azure database connector

Amazon Redshift ODBC connector found vulnerable.
Juha Saarinen May 10 2022 6:45AM Security
Heroku hackers got account passwords via OAuth token theft

Heroku hackers got account passwords via OAuth token theft

Hashed and salted user passwords exfiltrated.
Juha Saarinen May 6 2022 12:50PM Security
F5 BIG-IP systems vulnerable to remote takeover

F5 BIG-IP systems vulnerable to remote takeover

Update: researchers demonstrate attacks.
Juha Saarinen May 5 2022 1:00PM Security
Heroku forces user password resets

Heroku forces user password resets

API access tokens invalidated.
Juha Saarinen May 5 2022 6:55AM Security
Critical bugs found in Cisco Enterprise NFV software

Critical bugs found in Cisco Enterprise NFV software

Allows guest virtual machine escape and root command injection.
Juha Saarinen May 5 2022 6:31AM Security
Large amount of IoT gear menaced by unpatched DNS vulnerability

Large amount of IoT gear menaced by unpatched DNS vulnerability

Maintainer can't fix bug in uClibc and uClibc-ng libraries.
Juha Saarinen May 4 2022 6:55AM Security
Cisco's late April patch party fixes 11 high-impact bugs

Cisco's late April patch party fixes 11 high-impact bugs

No critical severity bugs this time.
Juha Saarinen Apr 29 2022 11:42AM Security
Microsoft fixes Azure PostgreSQL cross-account database access bug

Microsoft fixes Azure PostgreSQL cross-account database access bug

"ExtraReplica" tenant bypass not exploited.
Juha Saarinen Apr 29 2022 5:51AM Security
Patch now against Linux 'Nimbuspwn' root priv-esc bugs

Patch now against Linux 'Nimbuspwn' root priv-esc bugs

Microsoft code review finds multiple vulnerabilities.
Juha Saarinen Apr 28 2022 11:55AM Security
Microsoft Exchange Server bugs top 2021 most-exploited list

Microsoft Exchange Server bugs top 2021 most-exploited list

Slack patching leaves systems wide open.
Juha Saarinen Apr 28 2022 6:33AM Security

Log In

  |  Forgot your password?