#remote-code-execution

[ follow ]
Information security
Zero Day Initiative
2 months ago
Information security

Zero Day Initiative - CVE-2023-46263: Ivanti Avalanche Arbitrary File Upload Vulnerability

Ivanti Avalanche, an enterprise mobility management program, has recently been patched for a remote code execution vulnerability.
Successful exploitation of the vulnerability could allow an authenticated attacker to execute code in the context of SYSTEM. [ more ]
TechRepublic
3 months ago
Information security

Ivanti Secure VPN Zero-Day Vulnerabilities Allow Chinese Threat Actor to Compromise Systems

Two zero-day vulnerabilities have been discovered in Ivanti Secure VPN, enabling unauthorized remote code execution and system compromise.
The vulnerabilities are being actively exploited by a Chinese nation-state threat actor called UTA0178. [ more ]
Zero Day Initiative
10 months ago
Information security

Zero Day Initiative - Exploiting the Sonos One Speaker Three Different Ways: A Pwn2Own Toronto Highlight

1. The ZDI identified three different attack methods for exploiting the Sonos One speaker, including a cross-site scripting vulnerability, an authentication bypass vulnerability, and a command injection vulnerability.
2. The vulnerabilities were exploited during the Pwn2Own Toronto hacking competition, showcasing the serious security risks posed by
ComputerWeekly.com
11 months ago
Information security

Secure Boot vulnerability causes Patch Tuesday headache for admins | Computer Weekly

On a significantly lighter Patch Tuesday than of late, a publicly disclosed and actively exploited zero-day vulnerability in the Windows Secure Boot security feature looks set to cause an ongoing headache for administrators and security teams.Tracked as CVE-2023-24932 - and one of two exploited zero-days in Microsoft's May Patch Tuesday drop - successful exploitation of this security feature bypass vulnerability, credited to ESET's Martin Smolár and SentinelOne's Tomer Sne-or, is considered particularly dangerous.
Theregister
11 months ago
Information security

Microsoft warns of two bugs under active exploit

Patch Tuesday May's Patch Tuesday brings some good and some bad news, and if you're a glass-half-full type, you'd lead off with Microsoft's relatively low number of security fixes: a mere 38.Your humble vulture, however, is a glass-half-empty-and-who-the-hell-drank-my-whiskey kind of bird, so instead of looking on the bright side, we're looking at the two Microsoft bugs that have already been found and exploited by miscreants.
Theregister
11 months ago
Information security

CISA warns of Mirai botnet exploiting TP-Link routers

The US government's Cybersecurity and Infrastructure Security Agency (CISA) is adding three more flaws to its list of known-exploited vulnerabilities, including one involving TP-Link routers that is being targeted by the operators of the notorious Mirai botnet.The other two placed on the list this week involve versions of Oracle's WebLogic Server software and the Apache Foundation's Log4j Java logging library.
moreInformation security
cybersecurity
Theregister
2 months ago
Information security

Atlassian Confluence Server RCE attacks underway

600 IP addresses are launching thousands of exploit attempts against a critical bug in Atlassian Confluence Data Center and Server.
More than 11,000 instances of Confluence remain exposed on the internet, and criminals are attempting remote code execution attacks. [ more ]
SecurityWeek
11 months ago
Privacy professionals

Critical Siemens RTU Vulnerability Could Allow Hackers to Destabilize Power Grid

A critical vulnerability affecting some of Siemens' industrial control systems (ICS) designed for the energy sector could allow malicious hackers to destabilize a power grid, according to the researchers who found the security hole.The vulnerability, tracked as CVE-2023-28489, impacts the CPCI85 firmware of Sicam A8000 CP-8031 and CP-8050 products, and it can be exploited by an unauthenticated attacker for remote code execution.
SecurityWeek
11 months ago
Information security

CISA Warns of Attacks Exploiting Oracle WebLogic Vulnerability Patched in January

The US Cybersecurity and Infrastructure Security Agency (CISA) has added three vulnerabilities to its known exploited vulnerabilities catalog, including an Oracle WebLogic flaw patched by the vendor in January.There do not appear to be any public reports describing exploitation of the WebLogic vulnerability.
SecurityWeek
1 year ago
Privacy professionals

Unpatched Security Flaws Expose Water Pump Controllers to Remote Hacker Attacks

A water pumping system made by ProPump and Controls is affected by several vulnerabilities that could allow hackers to cause significant problems.The impacted product is the Osprey Pump Controller made by US-based ProPump and Controls, a company that specializes in pumping systems and automated controls for a wide range of applications, including golf courses and turf irrigation, municipal water and sewer, biogas, agricultural, and industrial.
Theregister
1 year ago
Privacy professionals

ESXiArgs ransomware fights back to defeat US recovery script

That didn't take long.A week after the US Cybersecurity and Infrastructure Security Agency (CISA) and FBI released a recovery script to help victims of the widespread ESXiArgs ransomware attacks recover infected systems, an updated variant of the malware aimed at vulnerable VMware ESXi virtual machines can't be remediated with the government agencies' code, according to Malwarebytes.
SecurityWeek
1 year ago
Information security

Critical Vulnerabilities Patched in ThingWorx, Kepware IIoT Products

Several industrial IoT (IIoT) software products made by PTC are affected by two critical vulnerabilities that can be exploited for denial-of-service (DoS) attacks and remote code execution.The security holes were discovered by Chris Anastasio and Steven Seeley of Incite Team and reported to PTC in late March 2022.
morecybersecurity
Zero Day Initiative
10 months ago
Information security

Zero Day Initiative - CVE-2023-24941: Microsoft Network File System Remote Code Execution

In this excerpt of a Trend Micro Vulnerability Research Service vulnerability report, Quinton Crist, Guy Lederfein, and Lucas Miller of the Trend Micro Research Team detail a recently patched remote code execution vulnerability in the Microsoft Network File Service (NFS).This bug was originally discovered by Wei in Kunlun Lab with Cyber KunLun.
Theregister
1 year ago
Privacy professionals

US govt web server attacked by 'multiple' criminal gangs

Multiple criminals, including at least one nation-state group, broke into a US federal government agency's Microsoft Internet Information Services web server by exploiting a critical three-year-old Telerik bug to achieve remote code execution.The snafu happened between November 2022 and early January, according to a joint alert from the FBI, CISA, and America's Multi-State Information Sharing and Analysis Center (MS-ISAC) this week.
Theregister
1 year ago
Information security

Microsoft isn't the only one fixing bugs on Patch Tuesday

For its final Patch Tuesday of the year, Microsoft fixed one bug that's already been exploited and another that's publicly known, bringing its total patched to 49 vulnerabilities, six of which are rated critical.The bug that's listed as exploited is tracked as CVE-2022-44698.It's a Windows SmartScreen security feature bypass vulnerability, and it received a 5.4 CVSS rating.
ComputerWeekly.com
1 year ago
Information security

Apache vulnerability a risk, but not as widespread as Log4Shell

Security teams should be alert to the possibility of compromise arising from a vulnerability in Apache Commons Text that may put many organisations at risk, but is unlikely to be as impactful as 2021's Log4Shell vulnerability.
Theregister
1 year ago
Information security

VMware patches critical admin authentication bypass bug

VMware has fixed a critical authentication bypass vulnerability that hits 9.8 out of 10 on the CVSS severity scale and is present in multiple products.
Theregister
1 year ago
Information security

Microsoft closes Windows LSA hole under active attack

Microsoft patched 74 security flaws in its May Patch Tuesday batch of updates.That's seven critical bugs, 66 deemed important, and one ranked low severity.
SecurityWeek
11 months ago
Information security

Details Disclosed for Exploit Chain That Allows Hacking of Netgear Routers

Industrial and IoT cybersecurity firm Claroty on Thursday disclosed the details of five vulnerabilities that can be chained in an exploit potentially allowing threat actors to hack certain Netgear routers.The vulnerabilities were first presented at the 2022 Pwn2Own Toronto hacking competition, where white hat hackers earned a total of nearly $1 million for exploits targeting smartphones, printers, NAS devices, smart speakers and routers.
Theregister
11 months ago
Privacy professionals

Google adds account sync for Authenticator, without E2EE

in brief You may have heard news this week that Google is finally updating its authenticator app to add Google account synchronization.Before you rush to ensure your two-factor secrets are safe in the event you lose your device, take heed: The sync process isn't end-to-end encrypted.The lack of synchronization encryption was pointed out in a tweet by two-man developer and security research team Mysk, which said it found the problem by analyzing network traffic during the secret-syncing process.
SecurityWeek
1 year ago
Privacy professionals

Unpatched Akuvox Smart Intercom Vulnerabilities Can Be Exploited for Spying

A smart intercom product made by Chinese company Akuvox is affected by more than a dozen vulnerabilities, including potentially serious flaws that can be exploited for spying.The vulnerabilities were discovered by researchers at industrial and IoT cybersecurity firm Claroty.The company - along with CISA and CERT/CC - has attempted to report the findings to the vendor over the past year, but without success, and the security holes remain unpatched.
Zero Day Initiative
1 year ago
Information security

Zero Day Initiative - CVE-2022-3236: Sophos Firewall User Portal and Web Admin Code Injection

Sophos recently patched a code injection vulnerability in Sophos Firewall v19.0 MR1 (19.0.1) and previous.
Theregister
1 year ago
Information security

Microsoft's Patch Tuesday fixes one bug under active exploit

Patch Tuesday Despite worries that Patch Tuesday may not be as exciting now that Microsoft's Windows Autopatch is live - with a slew of caveats - the second Tuesday of this month arrived with 84 security fixes, including 4 critical bugs and one that's under active exploit.
Medium
1 year ago
DevOps

Vulnerability scanning for containers, Kubernetes, and IaC

How Trivy helps us scan Docker images, Kubernetes, and Terraform code to detect potential configuration issues and minimise the risk of attack.
Vulnerabilities are everywhere!
Theregister
11 months ago
Privacy professionals

T-Mobile suffers second data theft in less than six months

in brief We'd say you'll never guess which telco admitted to a security breakdown last week, but you totally will: T-Mobile US, and for the second time (so far) this year.For those counting, this also makes the seventh incident in five years at the cellular provider - though this one is small compared to the 37 million subscribers whose data leaked in January.
Ars Technica
1 year ago
Privacy professionals

High-severity Microsoft Exchange 0-day under attack threatens 220,000 servers

Microsoft late Thursday confirmed the existence of two critical vulnerabilities in its Exchange application that have already compromised multiple servers and pose a serious risk to an estimated 220,000 more around the world.
Theregister
1 year ago
Privacy professionals

Vice Society ramping up ransomware in US education sector

The Vice Society threat group is ramping up ransomware attacks on US school districts just as students around the country return to the classroom, the FBI and other federal agencies are warning.
Theregister
1 year ago
Privacy professionals

Google warns Kremlin-backed goons pose as pro-Ukraine app

Kremlin-backed criminals are trying to trick people into downloading Android malware by spoofing a Ukrainian military group, according to Google security researchers.
https://www.gizbot.com/
1 year ago
Privacy professionals

Google June 2022 Update For Android Fixes Critical Vulnerability: How To Update Your Phone?

Google has released the June 2022 update with a couple of security patches for Android phones running versions 10, 11, and 12.
SecurityWeek
11 months ago
Information security

Chinese APT Uses New 'Stack Rumbling' Technique to Disable Security Software

A subgroup of the Chinese state-sponsored threat actor known as APT41 has been observed using a new denial-of-service (DoS) technique to disable security software, cybersecurity firm Trend Micro reports.Tracked as Earth Longzhi, the APT41 subgroup is known for the targeting of organizations in the Philippines, Taiwan, and Thailand.
SecurityWeek
11 months ago
Information security

Microsoft: Cl0p Ransomware Exploited PaperCut Vulnerabilities Since April 13

A Cl0p ransomware operator affiliated with the FIN11 and TA505 threat actors has been exploiting recently patched PaperCut vulnerabilities since April 13, Microsoft says.Impacting the PaperCut MF/NG print management system and tracked as CVE-2023-27350 (CVSS score of 9.8), the issue can be exploited to bypass authentication and achieve remote code execution (RCE) with System privileges.
SecurityWeek
1 year ago
Information security

ICS Vulnerabilities Chained for Deep Lateral Movement and Physical Damage

Researchers at cybersecurity firm Forescout have shown how various vulnerabilities discovered in recent years in industrial control systems (ICS) can be chained for deep lateral movement in operational technology (OT) networks, and even to cause significant physical damage.Two vulnerabilities found last year in Schneider Electric's Modicon programmable logic controllers (PLCs) are at the center of this research.
SecurityWeek
1 year ago
Information security

Mirai Variant V3G4 Targets 13 Vulnerabilities to Infect IoT Devices

During the second half of 2022, a variant of the Mirai malware called V3G4 was seen targeting 13 vulnerabilities to ensnare Internet of Things (IoT) devices into a botnet, Palo Alto Networks reports.Following the successful exploitation of the targeted security flaws, the malware takes full control of the vulnerable devices and then abuses them to conduct various types of malicious activities, including distributed denial-of-service (DDoS) attacks.
SecurityWeek
1 year ago
Information security

Fortinet Patches Critical Code Execution Vulnerabilities in FortiNAC, FortiWeb

Fortinet released 40 security advisories last week to inform customers about the availability of patches for dozens of vulnerabilities, including critical flaws affecting the FortiNAC and FortiWeb products.Two of the advisories have a 'critical' severity rating and 15 of them have been classified as having 'high' severity.
Theregister
1 year ago
Privacy professionals

HelloXD ransomware bulked up with improved encryption

Windows and Linux systems are coming under attack by new variants of the HelloXD ransomware that includes stronger encryption, improved obfuscation and an additional payload that enables threat groups to modify compromised systems, exfiltrate files and execute commands.
ITPro
11 months ago
Information security

Microsoft links PaperCut server attacks to Cl0p, LockBit ransomware

Researchers have linked leading ransomware groups Cl0p and LockBit to the ongoing exploitation of critical-rated vulnerabilities in print management software from PaperCut.The vulnerabilities, CVE-2023-27350 and CVE-2023-27351, have a near maximum 9.8 severity score and have enabled remote code execution on vulnerable PaperCut servers since at least January 2023.
SecurityWeek
1 year ago
Information security

Most Weaponized Vulnerabilities of 2022 and 5 Key Risks: Report

The Qualys 2023 TruRisk Research Report discusses the five most exploited vulnerabilities of calendar year 2022, and the five key 'Risk Facts' that security teams need to consider.To compile the report, the Qualys Threat Research Unit analyzed more than 13 billion events to gain insight into the vulnerabilities found on devices, the security of web apps, and the misconfiguration of on-premise devices.
SecurityWeek
1 year ago
Information security

Cybercriminals, APT Exploited Telerik Vulnerability in Attacks on US Government Agency

Advanced persistent threat (APT) actors and financially motivated cybercriminals have been spotted exploiting an old Telerik vulnerability as part of an attack that impacted a US government agency, according to a joint alert released on Wednesday by CISA, the FBI, and MS-ISAC.An investigation revealed that a Microsoft Internet Information Services (IIS) web server belonging to a federal civilian executive branch (FCEB) agency hosted a vulnerable instance of the Telerik UI for ASP.NET AJAX application development library.
ComputerWeekly.com
1 year ago
Information security

Microsoft fixes three zero-days in February update | Computer Weekly

freshidea - stock.adobe.comBy
Microsoft has issued fixes for a total of 75 newly discovered common vulnerabilities and exposures (CVEs) in its February 2023 Patch Tuesday update, including three zero-day vulnerabilities that, while they have not previously been made public, should be prioritised for patching.
RAPPLER
1 year ago
Information security

Cyber attackers focused on remote code execution vulnerabilities in 2022 - report - RAPPLER

Fortinet says it saw an average of 500 million total malware detections per month in 2022, with Microsoft Windows executables as the primary vehicle
MANILA, Philippines - Cybersecurity firm Fortinet, the world's third largest cybersecurity vendor in terms of market share in Q3 2022, revealed in an annual report published in January that attackers focused the most on vulnerabilities related to remote code execution.
SecurityWeek
1 year ago
Information security

Critical Vulnerability Patched in Cisco Security Products

Cisco on Wednesday announced updates for endpoint, cloud, and web security products to address a critical vulnerability in third-party scanning library ClamAV.An open-source cross-platform antimalware toolkit, ClamAV can detect trojans, viruses, and other types of malware.On February 15, ClamAV's maintainers announced critical patches that address two vulnerabilities in the library, the most severe of which could lead to remote code execution.
SecurityWeek
1 year ago
Information security

Fortinet Patches Critical Unauthenticated RCE Vulnerability in FortiOS

Cybersecurity company Fortinet this week announced patches for multiple severe vulnerabilities across its product portfolio, including a critical flaw in FortiOS and FortiProxy that could lead to remote code execution (RCE).Tracked as CVE-2023-25610 (CVSS score of 9.3), the issue impacts the administrative interface of the affected products and can be exploited without authentication, either for code execution or to cause a denial-of-service (DoS) condition, via crafted requests.
SecurityWeek
1 year ago
Information security

Exploitation of Critical Vulnerability in End-of-Life VMware Product Ongoing

Application vulnerability detection firm Wallarm Detect warns of ongoing exploitation of a critical flaw in VMware Cloud Foundation and NSX Data Center for vSphere (NSX-V).Tracked as CVE-2021-39144 (CVSS score of 9.8), the issue was disclosed in October 2022, when VMware announced patches for it, although the affected product had reached end-of-life (EOL) status in January 2022.
SecurityWeek
1 year ago
Information security

Android's March 2023 Updates Patch Over 50 Vulnerabilities

Google this week announced patches for more than 50 vulnerabilities as part of the March 2023 security updates for the Android platform.The most severe of these are two remote code execution (RCE) flaws in the System component, both of which were addressed as part of the 2023-03-01 security patch level.
SecurityWeek
1 year ago
Information security

Critical Vulnerabilities Patched in OpenText Enterprise Content Management System

Several vulnerabilities described as having critical and high impact, including ones allowing unauthenticated remote code execution, have been found and patched in OpenText's enterprise content management (ECM) product.The vulnerabilities were discovered by a researcher at cybersecurity consultancy Sec Consult in OpenText's Extended ECM, which is designed for managing the distribution and use of information across an organization.
SecurityWeek
1 year ago
Information security

Attacks Targeting Realtek SDK Vulnerability Ramping Up

Palo Alto Networks warns of an increase in cyberattacks targeting CVE-2021-35394, a remote code execution (RCE) vulnerability in the Realtek Jungle SDK.Disclosed in August 2021, the vulnerability impacts hundreds of device types that rely on Realtek's RTL8xxx chips, including routers, residential gateways, IP cameras, and Wi-Fi repeaters from 66 different manufacturers, including Asus, Belkin, D-Link, Huawei, LG, Logitech, Netgear, ZTE and Zyxel.
Theregister
1 year ago
Information security

Logfile nightmare deepens thanks to critical VMware flaws

VMware has issued fixes for four vulnerabilities, including two critical 9.8-rated remote code execution bugs, in its vRealize Log Insight software.There are no reports (yet) of nation-state thugs or cybercriminals finding and exploiting these bugs, according to VMware.However, it's a good idea to patch sooner than later to avoid being patient zero.
SecurityWeek
1 year ago
Information security

Security Update for Chrome 109 Patches 6 Vulnerabilities

Google has awarded a total of more than $25,000 to the researchers who reported the vulnerabilities patched with the release of a Chrome 109 update.The company informed users on Tuesday that six security holes have been patched in Chrome, including four reported by external researchers.Two of them are high-severity use-after-free issues affecting the WebTransport and WebRTC components.
ComputerWeekly.com
1 year ago
Information security

Microsoft fixes EoP zero-day on January Patch Tuesday | Computer Weekly

Security teams face a busy few days after Microsoft's first monthly Patch Tuesday drop of 2023, which contains fixes for 98 distinct vulnerabilities, 11 of them rated as critical, and one zero-day under active exploitation in the wild, which was uncovered by researchers at Avast.Tracked as CVE-2023-21674, the zero-day is an elevation of privilege (EoP) flaw in Windows Advanced Local Procedure Call (ALPC), which, if successfully exploited, would allow an attacker to gain system privileges.
Theregister
1 year ago
Information security

Sophos fixes critical code injection bug under exploit

A critical code-injection vulnerability in Sophos Firewall has been fixed - but not before miscreants found and exploited the bug.
ComputerWeekly.com
1 year ago
Information security

Microsoft patches 64 vulnerabilities on September Patch Tuesday

Microsoft's September Patch Tuesday update arrived on schedule late on 13 September, and this month contained five critical common vulnerabilities and exposures (CVEs) and one actively exploited zero-day, among a total of 64 bug fixes.
ComputerWeekly.com
2 years ago
Information security

Spring4Shell zero-day sprung on security teams

Security researchers and analysts have been poring over a newly uncovered remote code execution (RCE) zero-day vulnerability in the Spring Framework that is being compared by some to Log4Shell in its severity.
threatpost.com
2 years ago
Information security

Critical RCE Bug in Spring Could Be the Next Log4Shell, Researchers Warn

The so-called Spring4Shell' bug has cropped up, so to speak, and could be lurking in literally millions of Java applications.
Ars Technica
1 year ago
Information security

Critical Windows code-execution vulnerability went undetected until now

Researchers recently discovered a Windows code-execution vulnerability that has the potential to rival EternalBlue, the name of a different Windows security flaw used to detonate WannaCry, the ransomware that shut down computer networks across the world in 2017.Just like EternalBlue, CVE-2022-37598, as the latest vulnerability is tracked, allows attackers to execute malicious code with no authentication required.
ComputerWeekly.com
1 year ago
Information security

Microsoft fixes two zero-days in final Patch Tuesday of 2022 | TechTarget

Microsoft has rounded off 2022 with a typically light Patch Tuesday for December, with a total of 52 patches addressing six critical vulnerabilities and two zero-days of lesser severity.The two zero-day bugs are tracked as CVE-2022-44698, a security feature bypass vulnerability in Windows SmartScreen, which carries a CVSS score of 5.4 and is rated of moderate severity; and CVE-2022-44710, an elevation of privilege (EoP) vulnerability in the DirectX Graphics Kernel, which carries a CVSS score of 7.8 and is rated of important severity.
ComputerWeekly.com
1 year ago
Information security

Microsoft serves smorgasbord of six zero-days

Microsoft has released fixes for six actively exploited zero-day vulnerabilities in its November Patch Tuesday drop, one of them publicly disclosed and three of them carrying critical Common Vulnerability Scoring System (CVSS) ratings.These zero-days are among a total of 69 different vulnerabilities - 11 critical - that were patched in a slightly lighter than usual update, but one that may prove highly impactful for security teams due to the time of year.
Theregister
1 year ago
Information security

Microsoft patches security flaws under active exploit

Patch Tuesday November's Patch Tuesday also falls on election day in the US, so let's hope that democracy fares better than Microsoft, which reported six of today's bugs are already being exploited in the wild by miscreants.Another 22 vulnerabilities in the Windows giant's products have been labeled "more likely to be exploited" than not.
Acm
1 year ago
Digital life

OpenSSL Patches High Vulnerabilities

OpenSSL encryption library developer Open SSL Project has issued a patch to correct two high-severity vulnerabilities that could enable remote code execution or website crashes.One flaw originally categorized as critical and now designated as "high" with the patch is an arbitrary 4-byte stacker overflow.
Acm
2 years ago
Digital life

Hundreds of HP Printer Models Vulnerable to Remote Code Execution

HP issued security advisories for three critical-severity vulnerabilities impacting its LaserJet Pro, Pagewide Pro, OfficeJet, Enterprise, Large Format, and DeskJet printer models.
Ars Technica
1 year ago
Information security

Ransomware, crypto miner, and botnet malware installed using patched VMware bug

Hackers have been exploiting a now-patched vulnerability in VMware Workspace ONE Access in campaigns to install various ransomware and cryptocurrency miners, a researcher at security firm Fortinet said on Thursday.
Theregister
1 year ago
Information security

CISA warns of holes in industrial Advantech, Hitachi kit

This week, the US government's Cybersecurity and Infrastructure Security Agency (CISA) expanded its ever-growing list of vulnerability in industrial control systems (ICS) and critical infrastructure technology.
Ars Technica
1 year ago
Information security

Unpatched Zimbra flaw under attack is letting hackers backdoor servers

An unpatched code-execution vulnerability in the Zimbra Collaboration software is under active exploitation by attackers using the attacks to backdoor servers.
ComputerWeekly.com
1 year ago
Information security

August '22 a bumper month for high-impact vulnerabilities

The disclosure of multiple impactful and, critically, widespread vulnerabilities and proof-of-concept (POC) exploits made August a busy month for patching, with urgent updates needed for users of Apple and Google products, while corporate security teams were kept on their toes with fixes for vulns targeting Microsoft, Palo Alto and VMware, among others.
TechRepublic
1 year ago
Information security

Follina abuses Microsoft Office to execute remote code

A vulnerability dubbed "Follina" could allow attackers to gain full system control of affected systems.Learn more about it and how to protect yourself from it,
Ars Technica
1 year ago
Information security

Critical Atlassian 0-day is under active exploit. You're patched, right?

About this time last week, threat actors began quietly tapping a previously unknown vulnerability in Atlassian software that gave them almost complete control over a small number of servers.
Theregister
1 year ago
Information security

Microsoft vulnerabilities down for 2021

Despite a record number of publicly disclosed security flaws in 2021, Microsoft managed to improve its stats, according to research from BeyondTrust.
Theregister
2 years ago
Information security

Apache says 2-year-old Struts bug wasn't fully fixed

Apache has taken another shot at fixing a critical remote code execution vulnerability in its Struts 2 framework for Java applications - because the first patch, issued in 2020, didn't fully do the trick.
Theregister
2 years ago
Information security

Microsoft's Patch Tuesday includes fix for bug under attack

Microsoft's massive April Patch Tuesday includes one bug that has already been exploited in the wild and a second that has been publicly disclosed.
Theregister
2 years ago
Graphic design

Adobe Creative Cloud Experience makes malware easier to hide

Adobe Creative Cloud Experience, a service installed via the Creative Cloud installer for Windows, includes a Node.js executable that's useable as part of an attack chain.
Ars Technica
2 years ago
Information security

Zyxel patches critical vulnerability that can allow Firewall and VPN hijacks

Hardware manufacturer Zyxel has issued patches for a highly critical security flaw that gives malicious hackers the ability to take control of a wide range of firewalls and VPN products the company sells to businesses.
[ Load more ]