Adobe pulls pay-for-patch, issues fix 

Adobe pulls pay-for-patch, issues fix

Gaffe was a 'PR disaster'.
Apple shutters FileVault password hole 

Apple shutters FileVault password hole

Urges users to mop up logs.
151,000 domains attacked via dangerous PHP hole 

151,000 domains attacked via dangerous PHP hole

PHP Group issues fix for the second time.
Apple update fixes major flaws in iPhones, iPads 

Apple update fixes major flaws in iPhones, iPads

Hole remains in Apple desktop browser.
Microsoft patches three critical flaws 

Microsoft patches three critical flaws

Patches will send IT admins scrambling.
Dangerous Flash flaw plugged 

Dangerous Flash flaw plugged

'Object confusion' could lead to system hijacking.
PHP 'zero-day' hole found 

PHP 'zero-day' hole found

Bugged patch fails to fix flaw.
Chinese firm leaked RDP exploit code 

Chinese firm leaked RDP exploit code

Vulnerability sharing programs called into question.
Oracle issues workarounds for zero-day hole 

Oracle issues workarounds for zero-day hole

Company moves after public disclosure.
Splunk calls bug bunk 

Splunk calls bug bunk

No authentication allows attackers to upload malcode.
Four-year old critical Oracle bug still alive 

Four-year old critical Oracle bug still alive

Patch ignored older installs.
Holes found in Rackspace, VPS.Net cloud services 

Holes found in Rackspace, VPS.Net cloud services

Weak implementations allow dirty data to be tapped.
Samsung TVs, Blu-ray vulnerable to eternal boot loop 

Samsung TVs, Blu-ray vulnerable to eternal boot loop

Not your typical remote control.
Bug reports fall, bounties exclude amateurs 

Bug reports fall, bounties exclude amateurs

Less critical flaws go unreported.
Oracle patches 88 vulnerabilities 

Oracle patches 88 vulnerabilities

Fixes for Sun, Solaris and MySQL.
Oracle patches 88 vulnerabilities 

Oracle patches 88 vulnerabilities

Fixes for Sun, Solaris and MySQL.
Wicked exploit found in Linux WiFi 

Wicked exploit found in Linux WiFi

Anonymous student hacker finds holes in WICD tool.
Android concept app siphons sensitive data 

Android concept app siphons sensitive data

Application bypasses permissions to steal SD and app data.
Mobile vulnerabilities top IBM report 

Mobile vulnerabilities top IBM report

Thousands of disclosures studied.
Microsoft probes security partners for RDP leak   

Microsoft probes security partners for RDP leak

Trusted partners may have leaked exploit code.
Chrome cracked at Pwn2Own 

Chrome cracked at Pwn2Own

Google's browser first to fall at CanSecWest.
The six most dangerous infosec attacks 

The six most dangerous infosec attacks

And what's coming next.
Adobe patches Flash XXS hole  

Adobe patches Flash XXS hole

Update closes in the wild cross-site scripting vulnerability.
PcAnywhere code stolen, Symantec warns of exploits 

PcAnywhere code stolen, Symantec warns of exploits

Company recommends to stop using its product pending fixes.
McAfee patches spam relay flaw 

McAfee patches spam relay flaw

Customers find their email and IP addresses on blacklists.
Qualys, MetricStream build vulnerability framework 

Qualys, MetricStream build vulnerability framework

Routes vulnerabilities through investigation and remediation processes.
Microsoft preps seven security patches 

Microsoft preps seven security patches

Includes one 'critical' fix.
Analysis: HTML5 security holes detailed 

Analysis: HTML5 security holes detailed

Security shortfalls in burgeoning standard.
99 MS critical bug fixes lowest on record 

99 MS critical bug fixes lowest on record

Redmond says it hardened up.
Yahoo IM zero day patched 

Yahoo IM zero day patched

Status messages hijacked.
Yahoo IM zero day patched 

Yahoo IM zero day patched

Status messages hijacked.
HP printer bug sparks law suit 

HP printer bug sparks law suit

A New York man has started a class action suit over a printer exploit said to be capable of starting fires.
Hollywood flicks hacked  

Hollywood flicks hacked

But holes aren't remote exploitable.
Tool kills hidden Linux bugs, vulnerabilities 

Tool kills hidden Linux bugs, vulnerabilities

Seeks out holes in embedded libraries.
Facebook and the bug hunters 

Facebook and the bug hunters

The sometimes dangerous business of vulnerability disclosure is becoming profitable.
Researcher sends executable over Facebook 

Researcher sends executable over Facebook

Trick the parser.
'Strange' bug spotted in Chrome 

'Strange' bug spotted in Chrome

Leads to remote code execution.
Untraceable iPhone flash SMSes carry hacked data 

Untraceable iPhone flash SMSes carry hacked data

Security vendors, researchers and cops baffled. Apple declares 'new' attack.
Security researcher threatened with vulnerability repair bill 

Security researcher threatened with vulnerability repair bill

Super fund demands access to researchers' computer after receiving a vulnerability tip off.
Apple releases 98 security fixes in software updates 

Apple releases 98 security fixes in software updates

Gevey SIM, DigitNotar certificates killed.
Two critical patches for IE and Silverlight released 

Two critical patches for IE and Silverlight released

MS11-081 a priority.
Holes found in SonicWall god box 

Holes found in SonicWall god box

Pen tests poke holes in NSA 4500.
Joomla! XSS turns users to admins 

Joomla! XSS turns users to admins

Affects versions up to 1.70
Flash zero-day patched 

Flash zero-day patched

Flaw exploited for phishing XXS attacks.
Microsoft fixes borked update 

Microsoft fixes borked update

Windows XP and Server 2003 affected.
Child abuse tip-offs sent unencrypted 

Child abuse tip-offs sent unencrypted

British police website endangered citizen information for "several months".
Millions of student exams, tests and data exposed 

Millions of student exams, tests and data exposed

Exclusive: Zero-day holes found in the Blackboard learning platform.
Kaspersky website vulnerable to XSS 

Kaspersky website vulnerable to XSS

Reddit post outs flaw.
Researchers bypass Google redirect notice 

Researchers bypass Google redirect notice

Burmese hacker group post proof of concept.
Manual vulnerability discovery gets smarter, faster 

Manual vulnerability discovery gets smarter, faster

Automated vulnerability research falls short.
1 2 | Next »
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read