Yahoo patches XSS mail flaw  

Yahoo patches XSS mail flaw

Researcher claims fix isn't adequate.
Microsoft skips IE zero-day fix 

Microsoft skips IE zero-day fix

Microsoft to release seven bulletins this week.
Microsoft, Adobe patch a range of vulnerabilities 

Microsoft, Adobe patch a range of vulnerabilities

Exploits could emerge over holiday break.
Microsoft patches five critical flaws  

Microsoft patches five critical flaws

Makes 83 bulletins in 2012.
Skype account hijack hole patched 

Skype account hijack hole patched

Recovery function leads to account ownage.
Microsoft drops IE, Windows fixes on Patch Tuesday 

Microsoft drops IE, Windows fixes on Patch Tuesday

Two critical patches listed as highest priority.
Safari, iOS 6 flaws patched 

Safari, iOS 6 flaws patched

Apple has fixed two critical vulnerabilities.
Update uninstalls Apple-provided Java plug-in  

Update uninstalls Apple-provided Java plug-in

Follows massive Oracle security update.
Surprise patch party as Adobe, Microsoft issue fixes 

Surprise patch party as Adobe, Microsoft issue fixes

Flash fixes
Wagamama serves up malware from outdated site 

Wagamama serves up malware from outdated site

Hackers exploit Plesk, visitors sucked into BlackHole.
Microsoft critical patch hours away  

Microsoft critical patch hours away

Updates to arrive 3AM Saturday.
Microsoft fixes twin XSS, issues new cert requirement 

Microsoft fixes twin XSS, issues new cert requirement

Vulnerabilities aren't high-risk.
Oracle will fix Java flaw next month 

Oracle will fix Java flaw next month

New hole bypasses Java Virtual Machine sandbox.
Soft sailing in September patch run 

Soft sailing in September patch run

But crypto upgrade may make for a rough October.
Light Patch Tuesday will include new encryption rule 

Light Patch Tuesday will include new encryption rule

Next week's monthly patch batch from Microsoft is not very burdensome, but it includes a new requirement that certificates must contain RSA key lengths of more than 1,024 bits.
After patch, researchers find another Java vulnerability 

After patch, researchers find another Java vulnerability

Polish firm Security Explorations claims credit.
Redkit crimeware gets Java exploit, joins Blackhole 

Redkit crimeware gets Java exploit, joins Blackhole

Oracle issues emergency fix.
Oracle issues emergency Java patch 

Oracle issues emergency Java patch

Out-of-cycle patch fixes gaping holes in Java 7.
Java exploit on the loose, unofficial patch issued 

Java exploit on the loose, unofficial patch issued

Experts say attacks may become more widespread.
Adobe releases second Flash patch in a week 

Adobe releases second Flash patch in a week

Critical fix covers six vulnerabilities.
McAfee update chaos sparks user fury 

McAfee update chaos sparks user fury

Enterprises offered hotfix, consumers asked to reinstall.
Microsoft, Adobe issue security updates for more than 50 bugs 

Microsoft, Adobe issue security updates for more than 50 bugs

Active exploits to boot.
Microsoft to shutter a 'hacker's playground' of bugs 

Microsoft to shutter a 'hacker's playground' of bugs

Patch Tuesday to offer nine patches for 10 vulnerabilities.
Hacked Reuters blog appears still unpatched 

Hacked Reuters blog appears still unpatched

Site still running a vulnerable version of Wordpress.
Anonymous to release 40GB cache from hacked ISP 

Anonymous to release 40GB cache from hacked ISP

Victim said to be among Australia's largest telcos.
Microsoft pushes nine fixes for 16 flaws 

Microsoft pushes nine fixes for 16 flaws

Gaping Core XML Services hole fixed.
XML zero day fix arrives next week 

XML zero day fix arrives next week

Microsoft pushes nine patches.
Payments provider forces Chinese to patch, run firewalls 

Payments provider forces Chinese to patch, run firewalls

Millions of security slack users sent warning notices.
Apple speeds up Java updates 

Apple speeds up Java updates

After taking flak for taking six weeks to patch Java, has Apple changed its tune?
Microsoft patches second RDP hole, IE bugs 

Microsoft patches second RDP hole, IE bugs

Baker's dozen of flaws found in Internet Explorer.
Flame signed with Microsoft certs 

Flame signed with Microsoft certs

Redmond kills cert store, issues patch.
Adobe pulls pay-for-patch, issues fix 

Adobe pulls pay-for-patch, issues fix

Gaffe was a 'PR disaster'.
Apple shutters FileVault password hole 

Apple shutters FileVault password hole

Urges users to mop up logs.
151,000 domains attacked via dangerous PHP hole 

151,000 domains attacked via dangerous PHP hole

PHP Group issues fix for the second time.
Microsoft issues fixes for 'patched' Duqu threat 

Microsoft issues fixes for 'patched' Duqu threat

Patches fix 23 vulnerabilities
Mac FileVault passwords stored in clear text 

Mac FileVault passwords stored in clear text

Flawed update contained debug logs that trap passwords.
Microsoft patches three critical flaws 

Microsoft patches three critical flaws

Patches will send IT admins scrambling.
Dangerous Flash flaw plugged 

Dangerous Flash flaw plugged

'Object confusion' could lead to system hijacking.
Oracle issues workarounds for zero-day hole 

Oracle issues workarounds for zero-day hole

Company moves after public disclosure.
Four-year old critical Oracle bug still alive 

Four-year old critical Oracle bug still alive

Patch ignored older installs.
Firefox and Opera unveil new security, privacy features 

Firefox and Opera unveil new security, privacy features

Firefox gets quicker updates, Opera adds Do Not Track.
Oracle patches 88 vulnerabilities 

Oracle patches 88 vulnerabilities

Fixes for Sun, Solaris and MySQL.
Apple update kills Flashback, Java 

Apple update kills Flashback, Java

Apple patch wipes out trojan.
Microsoft and Adobe release critical patches 

Microsoft and Adobe release critical patches

Holes plugged in Internet Explorer, Microsoft Office and SQL Server.
Updates make Adobe patches a flash 

Updates make Adobe patches a flash

Released for Linux, Windows and OS X.
British, US Govts tackle infosec framework 

British, US Govts tackle infosec framework

Dormant critical control list enjoys three-month adoption rush.
RDP flaw a harbinger of breaches  

RDP flaw a harbinger of breaches

Small businesses most at risk from dangerous vulnerability.
Adobe and Google patch flaws 

Adobe and Google patch flaws

Dirty dozen high risk flaws fixed in Chrome.
Purported Iran nuke document contains trojan 

Purported Iran nuke document contains trojan

Spreads via Flash vulnerability.
Trojan leverages patched Microsoft Office flaw  

Trojan leverages patched Microsoft Office flaw

The exploit arrives as an email.
1 2 | Next »
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read