Security vulnerabilities stories - Page 21

MikroTik routers in NZ may be at risk of cryptomining - Symantec
Mon, 20th Aug 2018
#
symantec
#
router
#
security vulnerabilities
New Zealand's MikroTik routers may be at risk of cryptomining attacks due to a global campaign targeting 157,000 devices, warns Symantec. Install patches.

Flaw discovered in Intel chips, allows attackers to steal cloud data
Thu, 16th Aug 2018
#
intel
#
cpu
#
spectre
A newly discovered flaw in Intel chips, dubbed Foreshadow, can lead attackers to access sensitive data from personal computers and cloud services.

Exclusive interview: Major MFA vulnerability discovered in Microsoft’s ADFS
Wed, 15th Aug 2018
#
mfa
#
microsoft
#
okta
A critical flaw in Microsoft's ADFS allows bypassing MFA, posing a severe risk, warns Okta’s REX team. Urgent patching is recommended for users.

At-work collaboration apps most vulnerable to cyber attacks
Fri, 27th Jul 2018
#
cloud services
#
security vulnerabilities
#
cloud communications
According to a survey of 500 decision makers across several industries, 80% believe that cloud collaboration tools are vulnerable to cyber attacks.

Google Chrome launches new feature to block Spectre attacks
Tue, 17th Jul 2018
#
google
#
chrome
#
spectre
Google Chrome's latest update brings 'site isolation' to prevent Spectre attacks, offering advanced protection by isolating each tab's process.

GitHub rolls out security alerts feature for Python
Mon, 16th Jul 2018
#
martech
#
apm
#
software development
GitHub adds security alerts for Python, allowing users to be notified when their code depends on packages with known vulnerabilities.

Use of banking trojans up 50%, cryptomining still dominant malware – report
Tue, 10th Jul 2018
#
malware
#
cybersecurity
#
trojan
Check Point’s latest Global Threat Index reveals that Trojan malware families enter Top 10 Most Wanted Ranking; Cryptomining remains top of the list.

BMW awards Chinese security team's work in exposing connected vehicle vulnerabilities
Thu, 24th May 2018
#
cartech
#
bmw
#
tencent
When Chinese security researchers found vulnerabilities in BMW’s connected vehicles, BMW didn’t just fix the vulnerabilities, it awarded the team.

Singapore IMDA launches GoSecure cybersecurity programme for Singapore ICT firms
Wed, 23rd May 2018
#
devops
#
apm
#
cybersecurity
Singapore's IMDA launches the GoSecure programme, collaborating with SIT to enhance the cybersecurity of 200 ICT firms from July 2018 to July 2020.

Report: Open source software plagued with vulnerabilities
Mon, 21st May 2018
#
open source
#
healthtech
#
security vulnerabilities
78% of 1100 examined codebases contained at least one open source vulnerability, with an average of 64 vulnerabilities per codebase.

OWASP vulnerabilities plague mobile apps: Data leakage a major concern
Wed, 9th May 2018
#
mobile apps
#
security vulnerabilities
#
pradeo
Across two million applications analysed by Pradeo’s security engine, almost one third of applications contained an OWASP vulnerability.

Singapore organizations caught in 'patching paradox'
Tue, 8th May 2018
#
breach prevention
#
cybersecurity
#
data breach
Singapore organizations say they don’t have the resources to keep up with the volume of patches required to remediate software flaws.

Electronic lock vulnerabilities can lead attackers directly to your hotel room
Mon, 30th Apr 2018
#
physical security
#
cybersecurity
#
f-secure
Next time you stay at a hotel as part of a business or personal trip, you may want to ask if the hotel’s locking systems are up-to-date.

CERT NZ issues security alert about Smart Install-enabled Cisco devices
Thu, 19th Apr 2018
#
cisco
#
security vulnerabilities
#
cert
CERT NZ has issued a bulletin about a cyber attack campaign that is targeting Cisco devices that have enabled Smart Install (SMI).

Illumio & Qualys combine forces to offer vulnerability threat mapping
Tue, 17th Apr 2018
#
threat intelligence
#
security vulnerabilities
#
illumio
Illumio and Qualys are joining forces to combine threat data and application dependency mapping to show potential cyber attack paths in real time.

CERT NZ issues MikroTik RouterOS vulnerability alert
Wed, 4th Apr 2018
#
malware
#
cybersecurity
#
router
MikroTik RouterOS devices are at risk of malware attacks that can spread to other devices, according to an alert published by CERT NZ last week.

GitHub boosts bug bounty program & payouts in 2017 with more to come this year
Mon, 19th Mar 2018
#
martech
#
apm
#
software development
GitHub’s Security Bug Bounty program paid out more than US$166,000 in 2017 after a significant payout revamp that doubled amounts across the board.

Connected medical devices pose serious security risks for healthcare firms
Mon, 5th Mar 2018
#
iot
#
healthtech
#
security vulnerabilities
Healthcare organisations around the world may be using medical devices that come with serious cybersecurity risks.

CERT Australia reveals this year's cybersecurity challenges
Tue, 27th Feb 2018
#
phishing
#
iot
#
email security
Criminals will exploit known vulnerabilities; social engineering will craft sophisticated networks; supply chain targeting will target third parties..

Singapore MINDEF's Bug Bounty Challenge nets 32 vulnerabilities in three weeks
Thu, 22nd Feb 2018
#
crowdsourcing
#
security vulnerabilities
#
mindef
The Singapore Ministry of Defence (MINDEF) handed out more than S$14,000 in bounties to 17 hackers as part of the Bug Bounty Challenge.