Tavis Ormandy

Meet Zenbleed, a speculative execution bug hitting AMD processors

Meet Zenbleed, a speculative execution bug hitting AMD processors

Microcode fix available.
Richard Chirgwin Jul 25 2023 12:06PM Security
Ancient zlib memory corruption bug sparks security concerns

Ancient zlib memory corruption bug sparks security concerns

Compression library is popular everywhere from open source to Microsoft Office.
Juha Saarinen Mar 30 2022 12:01PM Security
OpenSSL squarely rooted by cert parsing bug

OpenSSL squarely rooted by cert parsing bug

LibreSSL issues patches as well.
Juha Saarinen Mar 16 2022 11:53AM Security
Avast disables vulnerability that left 400 million users open to abuse

Avast disables vulnerability that left 400 million users open to abuse

Unsafe Javascript interpreter begone.
Juha Saarinen Mar 12 2020 5:25PM Security
Google decloaks Win-DoS bug before patch is released

Google decloaks Win-DoS bug before patch is released

Flaw "can take down a Windows fleet pretty quickly".
Juha Saarinen Jun 12 2019 9:41AM Security
Google researcher pokes new holes in Windows Defender

Google researcher pokes new holes in Windows Defender

x86 emulator in anti-malware causes problems again.
Juha Saarinen Jun 26 2017 3:15PM Security
Further remote vulnerabilities found in Windows Defender

Further remote vulnerabilities found in Windows Defender

Microsoft patches first line of defence software.
Juha Saarinen May 31 2017 10:19AM Security
Lastpass patches creds-stealing bugs in browser plugins

Lastpass patches creds-stealing bugs in browser plugins

Google security researcher finds three in a row.
Juha Saarinen Mar 23 2017 6:47AM Security
Cisco rushes to kill WebEx remote code execution hole

Cisco rushes to kill WebEx remote code execution hole

"Magic URL" could run code on users' computers.
Juha Saarinen Jan 24 2017 11:05AM Security
Symantec scrambles to patch severe holes in 26 products

Symantec scrambles to patch severe holes in 26 products

"As bad as it gets" flaws in enterprise, consumer security offerings.
Juha Saarinen Jun 29 2016 12:09PM Security
Comodo 'secure' web browser turns off web security

Comodo 'secure' web browser turns off web security

Digital certs and security vendor lambasted by Google Project X.
Juha Saarinen Feb 3 2016 6:30PM Security
When you can't trust your security vendor

When you can't trust your security vendor

[Blog post] The watchmen also need to be watched.
Juha Saarinen Jan 19 2016 2:57PM Security

Log In

  |  Forgot your password?