Microsoft readies patch for IE zero day 

Microsoft readies patch for IE zero day

Patch Tuesday to close 33 vulnerabilities.
Researchers gain root to Google Australia's office system 

Researchers gain root to Google Australia's office system

Management system unpatched.
ColdFusion zero day used in web host hack 

ColdFusion zero day used in web host hack

Hole patched.
Microsoft fixes three critical flaws 

Microsoft fixes three critical flaws

Remote code execution in Internet Explorer.
Sophos' flagship web security product open to attack 

Sophos' flagship web security product open to attack

Upgrade urged.
Blackhat pen test service opens 

Blackhat pen test service opens

PHP bugs zapped.
Chrome; Firefox; IE 10; Java; Win 8 fall at #pwn2own hackfest 

Chrome; Firefox; IE 10; Java; Win 8 fall at #pwn2own hackfest

Vupen develops new ASLR and DEP bypass technique.
Mega security bugs detailed 

Mega security bugs detailed

Serious bugs found.
Adobe patches Flash against targeted exploits 

Adobe patches Flash against targeted exploits

Follows phishing attacks.
Microsoft to patch 57 holes 

Microsoft to patch 57 holes

Internet Explorer bugs affect all platforms.
Oracle says Java security, communications improvements in pipeline 

Oracle says Java security, communications improvements in pipeline

Java in the browser under the scope.
HP software bug makes printers pwned 

HP software bug makes printers pwned

Printing jobs nicked, machines bricked.
60% of exploits target two-year old bugs 

60% of exploits target two-year old bugs

Russia the hub of exploit writing.
Apps steal private Twitter data 

Apps steal private Twitter data

Bug now squashed.
Pen tester launches infosec bootcamp  

Pen tester launches infosec bootcamp

Free application security training.
LinkedIn shuts clickjacking flaw 

LinkedIn shuts clickjacking flaw

Users could be tricked into deleting contacts.
Patient data revealed in medical device hack 

Patient data revealed in medical device hack

DHS steps in, takes ownership of medical vulnerability research.
Another Java zero-day for sale 

Another Java zero-day for sale

Patch incomplete.
Remote zero-day hole found in Linksys routers 

Remote zero-day hole found in Linksys routers

Researchers say all routers likely affected.
Microsoft issues out-of-band Internet Explorer patch 

Microsoft issues out-of-band Internet Explorer patch

Dangerous bug used in ongoing spy attacks.
BugCrowd brings bounties to the masses 

BugCrowd brings bounties to the masses

Aussies pitch startup to Silicon Valley.
Oracle patches Java zero day 

Oracle patches Java zero day

Mozilla and Apple act on security flaw.
Java zero day infections increase 

Java zero day infections increase

Exploit attacks thousands.
$10k-a-month exploit kit trumps BlackHole 

$10k-a-month exploit kit trumps BlackHole

Two hundred new servers found hosting the Cool exploit kit.
Yahoo patches XSS mail flaw  

Yahoo patches XSS mail flaw

Researcher claims fix isn't adequate.
Symantec plays down PGP hole 

Symantec plays down PGP hole

Says exploitation is difficult.
Adobe preps ColdFusion update to deter active exploits 

Adobe preps ColdFusion update to deter active exploits

Patches Reader and Acrobat.
Microsoft skips IE zero-day fix 

Microsoft skips IE zero-day fix

Microsoft to release seven bulletins this week.
Zero day holes found in popular online games 

Zero day holes found in popular online games

Details to be disclosed at BlackHat.
Adobe stalls Shockwave patch for two years 

Adobe stalls Shockwave patch for two years

Remote code execution hole to be patched in February.
Hackers claim exploit cache in raid 

Hackers claim exploit cache in raid

Rival vulnerability service hacked.
Microsoft, Adobe patch a range of vulnerabilities 

Microsoft, Adobe patch a range of vulnerabilities

Exploits could emerge over holiday break.
Attackers can read USB storage attached to Samsung TVs  

Attackers can read USB storage attached to Samsung TVs

Remote attackers get root on smart TVs.
Twenty-three zero day holes found in SCADA systems 

Twenty-three zero day holes found in SCADA systems

Systems open to remote code execution, denial of service attacks.
Java zero-day exploit reportedly for sale  

Java zero-day exploit reportedly for sale

Affects latest platform version.
Kaseya patches platform vulnerability 

Kaseya patches platform vulnerability

Customers receive automatic patch.
Skype account hijack hole patched 

Skype account hijack hole patched

Recovery function leads to account ownage.
Microsoft drops IE, Windows fixes on Patch Tuesday 

Microsoft drops IE, Windows fixes on Patch Tuesday

Two critical patches listed as highest priority.
USB stick-sploit makes anyone a Windows admin 

USB stick-sploit makes anyone a Windows admin

Windows 7 affected.
Adobe Reader zero-day selling on criminal underground 

Adobe Reader zero-day selling on criminal underground

Company launches investigation.
Dodo customers exposed by insecure direct object reference hole 

Dodo customers exposed by insecure direct object reference hole

Timeout script failed.
Multiple critical flaws flagged in Sophos 

Multiple critical flaws flagged in Sophos

Exploit could be "wormed within days".
Vupen offers Windows 8 zero-day for sale 

Vupen offers Windows 8 zero-day for sale

French outfit claims to have defeated Windows 8 security.
PayPal security holes expose customer card data, personal details 

PayPal security holes expose customer card data, personal details

Company denies data was accessible.
Google hardens DKIM after founders served spoofed Gmail 

Google hardens DKIM after founders served spoofed Gmail

Weak crypto ditched.
HP suppresses ToorCon router bug reveal  

HP suppresses ToorCon router bug reveal

Major holes found in Huawei and H3C routers.
Microsoft engineer crafts exploitability index tool  

Microsoft engineer crafts exploitability index tool

Curbs vulnerability hype.
Steam gamers vulnerable to attack 

Steam gamers vulnerable to attack

Researchers describe multiple holes in online gaming platform.
Teenager cracks Chrome again 

Teenager cracks Chrome again

Full exploit earns teen a cool US$60,000.
Flaws allow 3G devices to be tracked  

Flaws allow 3G devices to be tracked

Devices trackable over any 3G network.
1 2 3 4 | Next »
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read