Vulnerabilities Vulnerabilities

Continuous news on hardware and software vulnerabilities from proof of concept to zero day, the dangerous to the novel. Follow the patching topic to narrow your news to emerging fixes.

Exploits greeting users at foreign policy, human rights sites

Exploits greeting users at foreign policy, human rights sites

A host of websites, including the US-based Center for Defense Information, have been compromised with malicious code in order to target and infect visitors.
Dan Kaplan May 16 2012 1:03PM Security
AusCERT2012: Governments stockpiling cyber arms

AusCERT2012: Governments stockpiling cyber arms

The cyber arms race is in full swing.
James Hutchinson May 16 2012 10:44AM Security
Adobe pulls pay-for-patch, issues fix

Adobe pulls pay-for-patch, issues fix

Gaffe was a 'PR disaster'.
Darren Pauli May 15 2012 10:51AM Security
Apple shutters FileVault password hole

Apple shutters FileVault password hole

Urges users to mop up logs.
Darren Pauli May 11 2012 7:41AM Security
151,000 domains attacked via dangerous PHP hole

151,000 domains attacked via dangerous PHP hole

PHP Group issues fix for the second time.
Darren Pauli May 10 2012 4:41PM Security
Apple update fixes major flaws in iPhones, iPads

Apple update fixes major flaws in iPhones, iPads

Hole remains in Apple desktop browser.
Dan Kaplan May 8 2012 9:09AM Security
Microsoft to patch three critical flaws in May

Microsoft to patch three critical flaws in May

Patches will send IT admins scrambling.
Dan Raywood May 7 2012 2:23PM Security
Adobe issues emergency patch for Flash

Adobe issues emergency patch for Flash

Critical bug could lead to system hijacking.
Dan Kaplan May 7 2012 2:13PM Security
Flawed Apple update traps passwords in plain text

Flawed Apple update traps passwords in plain text

OS X Lion users affected.
Darren Pauli May 7 2012 2:11PM Security
Mac FileVault passwords stored in clear text

Mac FileVault passwords stored in clear text

Flawed update contained debug logs that trap passwords.
Darren Pauli May 7 2012 1:03PM Security
Chinese firm leaked RDP exploit code

Chinese firm leaked RDP exploit code

Microsoft boots security firm from partner program.
Dan Kaplan May 7 2012 11:21AM Security
Dangerous Flash flaw plugged

Dangerous Flash flaw plugged

'Object confusion' could lead to system hijacking.
Dan Kaplan May 7 2012 9:58AM Security
Microsoft patches three critical flaws

Microsoft patches three critical flaws

Patches will send IT admins scrambling.
Dan Raywood May 7 2012 9:58AM Security
PHP 'zero-day' hole found

PHP 'zero-day' hole found

Bugged patch fails to fix flaw.
Darren Pauli May 4 2012 9:10PM Security
Chinese firm leaked RDP exploit code

Chinese firm leaked RDP exploit code

Vulnerability sharing programs called into question.
Dan Kaplan May 4 2012 8:40AM Security
Oracle issues workarounds for zero-day hole

Oracle issues workarounds for zero-day hole

Company moves after public disclosure.
Dan Kaplan May 3 2012 11:22AM Security
Splunk calls bug bunk

Splunk calls bug bunk

No authentication allows attackers to upload malcode.
Darren Pauli May 1 2012 11:01PM Security
Four-year old critical Oracle bug still alive

Four-year old critical Oracle bug still alive

Patch ignored older installs.
Dan Kaplan Apr 30 2012 11:56AM Security
Microsoft squashes Hotmail hijack bug

Microsoft squashes Hotmail hijack bug

Accounts cracked in 60 seconds.
Darren Pauli Apr 30 2012 8:23AM Security
Public sector orgs flunk OWASP Top 10

Public sector orgs flunk OWASP Top 10

Research finds 84 per cent of web apps deemed unacceptable against security benchmarks.
Dan Raywood Apr 30 2012 7:54AM Security

Log In

  |  Forgot your password?