Zgarnij kurs BUSINESS ENGLISH za połowę ceny+ Odbierz PREZENT kurs Customer CareSPRAWDŹ >>

Security Now!

SN 871: The New EU Surveillance State - Eventful Patch Tuesday, Open Source Maintenance Crew, BIG-IP Boxes

Dodany: 18 maja 2022

Picture of the Week.
An "eventful" Patch Tuesday.
Patch Tuesday.
Apple patched a 0-day.
Google's "Open Source Maintenance Crew".
Conti suggests overthrowing the new Costa Rican government....

SN 870: That "Passkeys" Thing - White House and Quantum Computers, Android 0-day, Ransomware snapshot

Dodany: 11 maja 2022

Picture of the Week. 
Google updates Android to patch an actively exploited vulnerability. 
Connecticut's recently passed data privacy bill became law last Wednesday. 
Ransomware victim...

SN 869: Global Privacy Control - DoD DIB-VDP, OpenSSF's Package Analysis Project, Connecticut Privacy

Dodany: 4 maja 2022

Picture of the Week.
DoD DIB-VDP Pilot Overview.
The OpenSSF and the Package Analysis project.
Connecticut moves toward state privacy protections.
Closing The Loop.
Global Privacy Control.
We...

SN 868: The 0-Day Explosion - Lenovo EUFI Firmware, Everscale Blockchain Wallet, Major Java Update

Dodany: 27 kwietnia 2022

Picture of the Week.
CISA's Known Exploited Vulnerabilities Catalog.
Lenovo UEFI Firmware Troubles.
Everscale Blockchain Wallet.
Java 15, 16, 17, and 18 received MUST UPDATES last week....

SN 867: A Critical Windows RPC RCE - Another Chrome 0-day, MS Patch-Fest, US Nuclear Systems Unhackable?

Dodany: 20 kwietnia 2022

Picture of the Week.
Chrome's 3rd 0-day of 2022.
Patch Tuesday Redux.
WordPress once again...
Apache Struts Framework needs a critical update.
Are America's nuclear systems so old they're...

SN 866: Spring4Shell - Patch Tuesday, Microsoft's Autopatch System, NGINX 0-Day

Dodany: 13 kwietnia 2022

Picture of the Week.
Could NGINX have a 0-day?
Microsoft's new Autopatch system.
Another instance of Russian Protest in JavaScript's repository.
End-of-service life for some popular Windows...

SN 865: Port Knocking - Wyze Gets Spanked, FinFisher Bites the Dust, Spring4Shell, LAPSUS$ Update

Dodany: 6 kwietnia 2022

Picture of the Week.
0-Day Watch.
Spring Forward (Java: Spring4Shell)
QNAP and the OpenSSL DoS vulnerability.
Sophos has a 9.8.
CISA orders federal civilian agencies to patch the Sophos...

SN 864: Targeted Exploitation - Ukrainian ISP Challenges, Kaspersky Labs Banned in the US, Chrome 0-Day

Dodany: 30 marca 2022

Picture of the Week.
A high severity 0-day vulnerability update for Chrome.
An interview with the CTO of a large Ukraine ISP, Ukrtelecom.
NPM under attack, again.
Honda says, nothing to worry...

SN 863: Use After Free - OpenSSL Bug, Cybercrime Reporting Law, Node.js Supply Chain Compromise

Dodany: 23 marca 2022

Picture of the Week.
Report Cybercrime: It's the Law.
A software supply chain compromise.
Browser in the Browser.
TrickBot, MicroTik & Microsoft.
The Infinite Loop OpenSSL Bug.
CISA Alert...

SN 862: QWACs on? or QWACs off? - Patch Tuesday Recap, NVIDIA Hacked, EUFI Firmware Flaw, ProtonMail

Dodany: 16 marca 2022

Picture of the Week.
Patch Tuesday for the Industry.
Android, too.
Firefox emergency update.
HP's major UEFI firmware patch-fest.
The NVIDIA breach.
ProtonMail gets it right.
Linux Blues....

SN 861: Rogue Nation Cyber Consequences - Russia vs. Ukraine, Crypto, StarLink, Namecheap, Telegram

Dodany: 9 marca 2022

Picture of the Week.
The Russians are coming.
Ukrainian "Cyber Unit Technologies" is paying for attacks on Russia.
StarLink in Ukraine.
Russia blocks access to Facebook, Twitter, foreign news...

SN 860: Trust Dies in Darkness - Samsung's TrustZone Keymaster Design, Daxin, Windows 11 compatibility

Dodany: 2 marca 2022

Picture of the Week. 
Honor among thieves? 
Daxin. 
Whither or Wither: Log4j / Log4Shell. 
"418 I'm a teapot" 
Will the US attack? 
Windows 11 Compatibility. 
Closing the Loop. 
SpinRite...

SN 859: A BGP Routing Attack - UpdraftPlus, Xenomorph, Ukranian DDoS, The Bobiverse Trilogy

Dodany: 23 lutego 2022

Picture of the Week.
The "UpdraftPlus" WordPress Plug-In.
"Xenomorph"
Decrypting "The Hive"
Un-Pixelating redacted text.
No Internet For You!!
If at first you don't succeed...
Ukrainian DDoS...

SN 858: InControl - PHP Everywhere, Magento Emergency, Project Zero Stats, Goodbye WMIC, SeriousSAM

Dodany: 16 lutego 2022

Picture of the Week.
A high-severity 0-day in Chrome.
Apple updates against another 0-day.
CISA thinks this Apple vulnerability is quite serious.
Which brings us back to "SeriousSAM" as it's being...

SN 857: The Inept Panda - China Olympics, SAMBA CVS 9.9 Vulnerability, Microsoft Office 3rd Party Macros

Dodany: 9 lutego 2022 - Średnia ocen: 5

Picture of the Week.
China's Olympics: Leave your tech at home.
We have a serious CVS 9.9 remote code execution vulnerability in SAMBA.
Living off the Land.
The suspension of the ms-appinstaller://...

SN 856: The “Topics” API - PwnKit Tech Details, DrawnApart, Zerodium Bug Bounties, Log4Shell Hits Ubiquiti

Dodany: 2 lutego 2022 - Średnia ocen: 5

Picture of the Week.
Apple eliminates 0-days from iOS and macOS.
Qualys published technical details for PwnKit.
Log4Shell hits Ubiquiti.
New bug bounties posted by Zerodium.
"DrawnApart": A device...

SN 855: Inside the NetUSB Hack - Log4J Update, Cyber-Insurance and Ransomware, EU Bug Bounty Programs

Dodany: 26 stycznia 2022 - Średnia ocen: 5

Picture of the Week.
Log4J News.
Who pays for RansomWare attack recovery?
The rising cost of cyber-insurance.
Another very dangerous WordPress add-on.
And a supply-chain attack on a popular...

SN 854: Anatomy of a Log4j Exploit - Buggy KCode, WordPress Security

Dodany: 19 stycznia 2022

Picture of the Week
"Hack the Pentagon" with Log4j
Open Source Software Security Summit
Microsoft's January Patch Tuesday Review: The GOOD News
Microsoft's January Patch Tuesday Review: The Not So...

SN 853: URL Parsing Vulnerabilities - US CISA on Log4J, WordPress Security Update, What Is a Pluton

Dodany: 12 stycznia 2022

Picture of the Week.
The US CISA Log4J status update.
The H2 Database Console vulnerability.
The Federal Trade Commission gets into the act!
Chrome fixed 37 known problems last week.
The...

SN 852: December 33rd - Log4j Update, RSA Postponed, Hack the DHS Expanded, Cyber Insurance Cost Rising

Dodany: 5 stycznia 2022

Picture of the Week.
Log4j's 5th update.
Microsoft's Log4j scanner triggers false positives.
Chinese government is annoyed with Alibaba.
"Hack the DHS" Bug Bounty Expanded.
COVID postpones the RSA...