Hiển thị các bài đăng có nhãn Vulnerability. Hiển thị tất cả bài đăng
Hiển thị các bài đăng có nhãn Vulnerability. Hiển thị tất cả bài đăng

Thứ Bảy, 25 tháng 7, 2015

All Smartwatches are vulnerable to Hackers





Do you own a Smartwatch? If yes, then how safe it is? There are almost 100 percent chances that you own a vulnerable Smartwatch.



Computer manufacturer Hewlett-Packard is warning users of smartwatches including Apple Watch and Samsung Gear that their wearable devices are vulnerable to cyber attacks.



In a study, HP's Fortify tested today's top 10 smartwatches for security features, such

Thứ Sáu, 24 tháng 7, 2015

Oh Gosh! Four Zero Day Vulnerabilities Disclosed in Internet Explorer





How many Zero-Days do you think could hit Microsoft today? Neither one nor two; this times its Four.



The Hewlett-Packard's Zero-Day Initiative (ZDI) has disclosed four new zero-day vulnerabilities in Microsoft's Internet Explorer browser that could be exploited to remotely execute malicious code on victim's machine.



All the four zero-days originally were reported to Microsoft, affecting

Thứ Năm, 23 tháng 7, 2015

WordPress 4.2.3 Security Update Released, Patches Critical Vulnerability





WordPress has just released the new version of its content management system (CMS), WordPress version 4.2.3, to fix a critical security vulnerability that could have been exploited by hackers to take over websites, affecting the security of its Millions of sites.



WordPress version 4.2.3 resolves a Cross-Site Scripting (XSS) flaw that could allow any user with the Contributor or Author role

Bug in OpenSSH Opens Linux Machines to Password Cracking Attack





A simple but highly critical vulnerability recently disclosed in the most widely used OpenSSH software allows attackers to try thousands of password login attempts per connection in a short period.



OpenSSH is the most popular software widely used for secure remote access to Linux-based systems. Generally, the software allows 3 to 6 Password login attempts before closing a connection, but a

Apple Mac OS X Vulnerability Allows Attackers to Hack your Computer





A security researcher has discovered a critical vulnerability in the latest version of Apple's OS X Yosemite that could allow anyone to obtain unrestricted root user privileges with the help of code that fits in a tweet.



The privilege-escalation vulnerability initially reported on Tuesday by German researcher Stefan Esser, could be exploited by to circumvent security protections and gain

Thứ Sáu, 17 tháng 7, 2015

Hacker Earns 1.25 Million Free Frequent Flyer Miles On United Airlines





What if you get 1 Million Frequent Flyer Miles for Free? Yes, 1 Million Air Miles…



…I think that would be enough for several first-class trips to Europe or up to 20 round-trips in the United States.



Two Computer Hackers have earned more than 1 Million frequent-flyer miles each from United Airlines for finding multiple security vulnerabilities in the Airline's website.



Back in May

Thứ Ba, 14 tháng 7, 2015

Java Zero-day vulnerability exploited in the Wild





Really a bad weekend for Internet users. Three previously unknown critical zero-day vulnerabilities were revealed in Adobe’s Flash Player over the weekend, thanks to Hacking team data Breach in which 400GB of internal data were leaked over the Internet.



Now, a new zero-day vulnerability has been reported in Oracle’s Java that is reportedly being exploited in the wild by hackers to target

Chủ Nhật, 12 tháng 7, 2015

Second Flash Player Zero-day Exploit found in 'Hacking Team' Dump





Another Flash zero-day exploit has emerged from the hundreds of gigabytes of data recently leaked from Hacking Team, an Italian surveillance software company that is long been accused of selling spying software to governments and intelligence agencies.



The critical zero-day vulnerability in Adobe Flash is a Use-After-Free() programming flaw (CVE-2015-5122) which is similar to the

Thứ Năm, 9 tháng 7, 2015

Critical OpenSSL Flaw Allows Hackers to Impersonate Any Trusted SSL Certificate





The mysterious security vulnerability in the widely used OpenSSL code library is neither HeartBleed nor FREAK, but it’s critical enough to be patched by sysadmins without any delay.



OpenSSL Foundation released the promised patch against a high severity vulnerability in OpenSSL versions 1.0.1n and 1.0.2b, resolving a certificate forgery issue in the implementations of the crypto protocol.

Hacking Team Flash Zero-Day Linked to Cyber Attacks on South Korea and Japan





The corporate data leaked in the recent cyber attack on the infamous surveillance software firm Hacking Team has revealed that the Adobe Flash zero-day (CVE-2015-5119) exploit has already been added to several exploit kits.



Security researchers at Trend Micro have discovered evidences of the Adobe Flash zero-day (CVE-2015-5119) exploit being used in a number of exploit kits before the

Thứ Ba, 7 tháng 7, 2015

Zero-Day Flash Player Exploit Disclosed in 'Hacking Team' Data Dump





The Recent Cyber Attack that exposed 400GB of corporate data belonging to surveillance software firm Hacking Team has revealed that the spyware company have already discovered an exploit for an unpatched zero-day vulnerability in Flash Player.



Security researchers at Trend Micro claim that the leaked data stolen from Hacking Team, an Italian company that sells surveillance software to

OpenSSL to Patch Undisclosed High Severity Vulnerability this Thursday





Attention Please! System Administrator and anyone relying on OpenSSL should be prepared to switch to a new version of the open-source crypto library that will be released this Thursday 9th July.



OpenSSL is a widely used open-source software library that provides encrypted Internet connections using SSL/TLS for majority of websites, as well as other secure services.



The new versions of

Thứ Năm, 2 tháng 7, 2015

Apple Releases dozens of Security Updates to Fix OS X and iOS Flaws





Apple has released updates to patch dozens of security vulnerabilities in iOS and OS X Yosemite operating system.



The updates include iOS 8.4 version of the mobile operating system, OS X Yosemite 10.10.4 and Security Update 2015-005.



iOS 8.4 Update




The iOS 8.4 update includes patches for over 20 security vulnerabilities that could lead to remote code execution (RCE), application

Thứ Ba, 30 tháng 6, 2015

OPM Temporarily Shuts Down Background Check App to Fix Security Hole





The web gateway used to render materials for Federal Background Investigations for employees and contractors has been shut down for several weeks after a vulnerability was detected, the Office of Personnel Management announced.



The agency announced the shut down citing the discovery of a vulnerability in its Electronic Questionnaires for Investigations Processing (E-QIP) system while

Thứ Năm, 25 tháng 6, 2015

Adobe Releases Emergency Patch for Flash Zero-Day Vulnerability





Adobe has rolled out an emergency software patch for its Flash Player to patch a critical zero-day vulnerability that is already exploited by the hackers in the wild.



The company said the flaw could potentially allow hackers to take control of the affected system and that it had evidence of "limited, targeted attacks" exploiting the flaw.



Therefore, Adobe is urging users and

Thứ Sáu, 19 tháng 6, 2015

Samsung Flaw Lets Hacker Easily Take Control of Your Galaxy Mobile Remotely





More than 600 Million users of Samsung Galaxy smartphones, including the newly released Galaxy S6, are potentially vulnerable to a software bug that allows hackers to secretly monitor the phone's camera and microphone, read text messages and install malicious apps.



The vulnerability is due to a problem with the Samsung built-in keyboard app that enables easier predictive text.



One of

Zero-Day Exploits for Stealing OS X and iOS Passwords





I think you'll agree with me when I say: Apple devices are often considered to be more safe and secure than other devices that run on platforms like Windows and Android, but a recent study will make you think twice before making this statement.



A group of security researchers have uncovered potentially deadly zero-day vulnerabilities in both iOS and OS X operating systems that could put

Thứ Sáu, 5 tháng 6, 2015

Hijacking WhatsApp Account in Seconds Using This Simple Trick





The hugely popular smartphone messaging service WhatsApp, acquired by Facebook for over $20 billion last year, has reportedly been found to be prone to hijacking without unlocking or knowing your device password, making its hundreds of Millions of users vulnerable to, not just hackers, but also non-technical people.



This trick lets anyone surrounds you to get effectively control over your