SecurityBrief UK - Technology news for CISOs & cybersecurity decision-makers

Security vulnerabilities stories - Page 21

Gettyimages 891422960

IBM X-Force Red & Qualys introduce automated patching

Tue, 19th Feb 2019
#
ibm
#
security vulnerabilities
#
patching
IBM X-Force Red and Qualys are declaring a war on unpatched systems, and they believe automation is the answer.
Gettyimages 1127122070

Swiss Post asks public to hack its e-voting system

Mon, 18th Feb 2019
#
online voting
#
security vulnerabilities
#
bug bounty
Switzerland's postal service Swiss Post is inviting keen-eyed security experts and white hats to hack its e-voting system.
Malware5

Bug makes Android phones hackable via PNG image files

Fri, 8th Feb 2019
#
google
#
opinion
#
security vulnerabilities
This means any application handling PNG files that have been carefully crafted by an attacker can end up running the attacker's code.
Img hog1vzd5owi3vpiehyp7urqi

Quick thinking remedies vulnerability in Schneider Electric ICS controller

Fri, 7th Sep 2018
#
datacentre infrastructure
#
power / energy
#
schneider electric
Radiflow discovered that a serious vulnerability in the devices put the safety and availability of ICS networks in jeopardy.
Intel core s series chip

Flaw discovered in Intel chips, allows attackers to steal cloud data

Thu, 16th Aug 2018
#
semiconductors
#
intel
#
cpu
A newly discovered flaw in Intel chips, dubbed Foreshadow, can lead attackers to access sensitive data from personal computers and cloud services.
Screen shot 2018 08 15 at 11

Exclusive interview: Major MFA vulnerability discovered in Microsoft's ADFS

Wed, 15th Aug 2018
#
mfa
#
iam
#
cybersecurity
A critical flaw in Microsoft's ADFS allows bypassing MFA, posing a severe risk, warns Okta's REX team. Urgent patching is recommended for users.
Thinkstockphotos 856672504 8rwqcmm

At-work collaboration apps most vulnerable to cyber attacks

Fri, 27th Jul 2018
#
cloud services
#
security vulnerabilities
#
cloud communications
According to a survey of 500 decision makers across several industries, 80% believe that cloud collaboration tools are vulnerable to cyber attacks.
Thinkstockphotos 826175066

Google Chrome launches new feature to block Spectre attacks

Tue, 17th Jul 2018
#
google
#
chrome
#
spectre
Google Chrome's latest update brings 'site isolation' to prevent Spectre attacks, offering advanced protection by isolating each tab's process.
Thinkstockphotos 547244256

GitHub rolls out security alerts feature for Python

Mon, 16th Jul 2018
#
martech
#
apm
#
software development
GitHub adds security alerts for Python, allowing users to be notified when their code depends on packages with known vulnerabilities.
Secure banking

Use of banking trojans up 50%, cryptomining still dominant malware – report

Tue, 10th Jul 2018
#
malware
#
cybersecurity
#
trojan
Check Point's latest Global Threat Index reveals that Trojan malware families enter Top 10 Most Wanted Ranking; Cryptomining remains top of the list.
P90305602 highres

BMW awards Chinese security team's work in exposing connected vehicle vulnerabilities

Thu, 24th May 2018
#
cartech
#
bmw
#
tencent
When Chinese security researchers found vulnerabilities in BMW's connected vehicles, BMW didn't just fix the vulnerabilities, it awarded the team.
Thinkstockphotos 830636952

Singapore IMDA launches GoSecure cybersecurity programme for Singapore ICT firms

Wed, 23rd May 2018
#
devops
#
apm
#
cybersecurity
Singapore's IMDA launches the GoSecure programme, collaborating with SIT to enhance the cybersecurity of 200 ICT firms from July 2018 to July 2020.
Thinkstockphotos 493694506

OWASP vulnerabilities plague mobile apps: Data leakage a major concern

Wed, 9th May 2018
#
mobile apps
#
security vulnerabilities
#
pradeo
Across two million applications analysed by Pradeo's security engine, almost one third of applications contained an OWASP vulnerability.
Bedroom door entrance 271639

Electronic lock vulnerabilities can lead attackers directly to your hotel room

Mon, 30th Apr 2018
#
physical security
#
cybersecurity
#
f-secure
Next time you stay at a hotel as part of a business or personal trip, you may want to ask if the hotel's locking systems are up-to-date.
Thinkstockphotos 469904612

GitHub boosts bug bounty program & payouts in 2017 with more to come this year

Mon, 19th Mar 2018
#
martech
#
apm
#
software development
GitHub's Security Bug Bounty program paid out more than US$166,000 in 2017 after a significant payout revamp that doubled amounts across the board.
Thinkstockphotos 818785962

Connected medical devices pose serious security risks for healthcare firms

Mon, 5th Mar 2018
#
iot
#
healthtech
#
security vulnerabilities
Healthcare organisations around the world may be using medical devices that come with serious cybersecurity risks.
Thinkstockphotos 612399406

Intel amplifies Bug Bounty rewards to attract more security researchers

Mon, 19th Feb 2018
#
intel
#
spectre
#
security vulnerabilities
Intel has boosted its Bug Bounty rewards to attract more researchers, with up to USD $250,000 available for side channel vulnerabilities in its products.
Screen shot 2018 02 14 at 12

67% of organisations say they're understaffed to handle cybersecurity

Thu, 15th Feb 2018
#
semiconductors
#
partner programmes
#
cybersecurity
RiskIQ's survey paints a grim picture that forecasts a 'perfect storm' where the problem of staff shortages collides with escalating cybercrime.
Thinkstockphotos 600060014

Full list of NETGEAR router vulnerabilities revealed - is your device on the list?

Fri, 9th Feb 2018
#
ndr
#
netgear
#
router
Many NETGEAR routers were subject to vulnerabilities that allowed attackers to take control of the devices through a password recovery feature.
Thinkstockphotos 641868078

'No evidence' to suggest user info was compromised by Grammarly flaw

Wed, 7th Feb 2018
#
google
#
security vulnerabilities
#
grammarly
A Grammarly vulnerability potentially exposed millions of user accounts and documents, though the company reports no evidence of any data leaks.