CVEs
-
Cybersecurity
22,600+ emails = 599 vulnerabilities. Security disclosure triage is HARD
Security researchers regularly chafe at the deafening silence when they report a critical vulnerability in software: White Hats simply wanting…
Read More » -
Cybersecurity
Critical controller bug could trigger traffic chaos: Software vendor ignores CISA outreach
One of 14 new advisories on vulnerable ICS software...
Read More » -
Cybersecurity
Gird your loins: Patch Tuesday’s back
It’s that time of the month again: Microsoft has pushed out 98 security patches for January’s Patch Tuesday: 11 are…
Read More » -
Featured
We analysed 90,000+ software vulnerabilities: Here’s what we learned
Can you guess the product with the most CVEs in 2022?
Read More » -
Cybersecurity
Will this CVSS 10 Linux Kernel vuln ruin your holiday?
We're hopeful that Betteridge's law applies...
Read More » -
Featured
Hey hackers! Grab some hardcoded Siemens crypto keys and go wild*
Per RATM: "Action must be taken. We don't need the key we'll break in"
Read More » -
Cybersecurity
Critical pre-auth RCE Fortinet vulnerability is a breeze to exploit
A vulnerability in multiple Fortinet products gives an unauthenticated remote attackers root access to its core product’s administrative interface –…
Read More » -
Cybersecurity
Two unpatched Microsoft Exchange Server zero days are under attack.
Exploited for a month. No detection in Sentinel, no patch yet. Mitigate urgently.
Read More » -
Cybersecurity
Second critical Sophos Firewall bug exploited in wild
CVSS 9.8 vulnerability added to CISA "known exploited" catalogue
Read More » -
Featured
Microsoft Exchange alternative Zimbra is getting widely exploited, 1000s hit
Assume compromise...
Read More »