Several important vulnerabilities affecting a firewall product from Kerio Technologies can be exploited by remote attackers to completely compromise an organization’s internal network, SEC Consult warned on Thursday.
read more
Privileged Credentials Remain Security Weak Point
read more
Continue readingGoogle to Revoke OAuth 2.0 Tokens Upon Password Reset
A new OAuth 2.0 token revocation rule will soon cause third-party mail apps to stop syncing data upon user password change, Google revealed on Wednesday.
read more
Is it Finally Time for Open Security?
One of the distinct advantages of working in the IT industry for over 35 years is all of the direct and indirect experience that brings, as well as the hindsight that comes with that.
read more
Over a Dozen Vulnerabilities Patched in OpenSSL
The OpenSSL Project announced on Thursday that more than a dozen vulnerabilities have been patched in OpenSSL with the release of versions 1.1.0a, 1.0.2i and 1.0.1u.
read more
The Latest Must-Have Car Accessory: Security
Fall is a great time of year. The kids go back to school. The weather begins to cool and the leaves change. Lord Football returns to his autumnal throne. Television shows return for a new season.
read more
Flaws in Cisco Cloud Services Platform Allow Command Execution
Cisco’s Cloud Services Platform (CSP), a product that is part of the company’s virtual networking offering, is plagued by two serious vulnerabilities that can be exploited by remote attackers to execute arbitrary code and commands.
read more
Restriction Bypass, XSS Flaws Patched in Drupal 8
The developers of the Drupal content management system (CMS) announced on Wednesday the availability of versions 8.1.10 and 8.2.0-rc2, which address three potentially serious vulnerabilities.
read more
Twitter Sees Jump in Official Requests to Remove Posts
Twitter saw a jump in official requests to remove posts in the first half of this year, the company said Wednesday.
read more
Firefox 49 Patches Critical, High Severity Vulnerabilities
Mozilla has patched many critical and high severity vulnerabilities this week with the release of Firefox 49, including a recently disclosed certificate pinning issue that exposes users to man-in-the-middle (MitM) attacks.
read more


