Security vulnerabilities stories
IBM X-Force Red and Qualys are declaring a war on unpatched systems, and they believe automation is the answer.
Switzerland's postal service Swiss Post is inviting keen-eyed security experts and white hats to hack its e-voting system.
Xiaomi's M365 electric scooters pose severe risks due to Bluetooth security flaws, potentially allowing attackers to control and endanger riders.
This means any application handling PNG files that have been carefully crafted by an attacker can end up running the attacker's code.
Radiflow discovered that a serious vulnerability in the devices put the safety and availability of ICS networks in jeopardy.
A newly discovered flaw in Intel chips, dubbed Foreshadow, can lead attackers to access sensitive data from personal computers and cloud services.
A critical flaw in Microsoft's ADFS allows bypassing MFA, posing a severe risk, warns Okta's REX team. Urgent patching is recommended for users.
According to a survey of 500 decision makers across several industries, 80% believe that cloud collaboration tools are vulnerable to cyber attacks.
Google Chrome's latest update brings 'site isolation' to prevent Spectre attacks, offering advanced protection by isolating each tab's process.
GitHub adds security alerts for Python, allowing users to be notified when their code depends on packages with known vulnerabilities.
Check Point's latest Global Threat Index reveals that Trojan malware families enter Top 10 Most Wanted Ranking; Cryptomining remains top of the list.
When Chinese security researchers found vulnerabilities in BMW's connected vehicles, BMW didn't just fix the vulnerabilities, it awarded the team.
Singapore's IMDA launches the GoSecure programme, collaborating with SIT to enhance the cybersecurity of 200 ICT firms from July 2018 to July 2020.
78% of 1100 examined codebases contained at least one open source vulnerability, with an average of 64 vulnerabilities per codebase.
Across two million applications analysed by Pradeo's security engine, almost one third of applications contained an OWASP vulnerability.
The Australian Prudential Regulation Authority's standard, CPS 234, is aimed at minimising the threat of cyber attacks for APRA-regulated entities.
CERT NZ's latest report shows cyber threats and incident reports increased in Q2, yet monetary losses dropped by 24%, with most under NZD $500.
2018 saw a surge in cyber threats with over 30 zero-day vulnerabilities and nearly 24,000 unique malware variants, Fortinet's report reveals.
New Zealand's MikroTik routers may be at risk of cryptomining attacks due to a global campaign targeting 157,000 devices, warns Symantec. Install patches.
Singapore organizations say they don't have the resources to keep up with the volume of patches required to remediate software flaws.