
Apple Releases Patches Fixing 39 Vulnerabilities
Apple releases patches fixing 39 vulnerabilities several of which could allow an attacker to execute arbitrary code on an affected device.
80 articles

Apple releases patches fixing 39 vulnerabilities several of which could allow an attacker to execute arbitrary code on an affected device.

Google has released an update for its Chrome browser that includes eleven security fixes, one of which has been reportedly exploited in the wild.

Independent ICS security researcher Gao Jian recently discovered new vulnerabilities which can allow hackers to remotely crash Siemens PLCs.

Cisco published an advisory for 15 vulnerabilities in its Small Business RV Series Routers.

Developers of the Symfony PHP framework have reversed a recent change that inadvertently turned off protection against CSRF attacks.

CISA has added 13 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities.

Critical device risks in hospital environments leave hospitals and patients vulnerable to cyber attacks and data security issues.

Cisco has patched a pair of vulnerabilities in its telco-focused Cisco Redundancy Configuration Manager (RCM) for Cisco StarOS software, including a critical flaw that presented a remote code execution risk.

Security researchers discovered that the list of locations excluded from Microsoft Defender scan is unprotected and accessible to any local user.

A new Safari vulnerability disclosed by FingerprintJS, can leak recent browsing history and some information of your logged-in Google account.

This vulnerability enables any standard unprivileged user connected to a remote machine via remote desktop to gain file system access to the client machines

Microsoft recommends that you install the latest security updates which will patch the critical flaw now.

A high impact privacy bug was found in Facebook's Android application by a young bug bounty hunter. The 19 year old hacker received a $4,500 bug bounty

A security researcher has published a public exploit on Github that allows a low privileged user on all client and server windows operating systems, to gain administrative rights.

An unpatched security weakness in Azure Active Directory might be leveraged by attackers to conduct undetected brute-force attacks, according to security researchers.

PetitPotam takes advantage of servers where the Active Directory Certificate Services (AD CS) is not configured with protections for NTLM

Security firm Wordfence released a report identifying the top security vulnerabilities and threats and common attacks against wordpress websites.

Microsoft has confirmed the risk that "an attacker with physical access to a system can use Thunderspy to read and copy data even from systems