PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

When Time is of the Essence – Testing Controls Against the Latest Threats Faster

mercredi 12 juin 2019 à 16:28
A new threat has hit head the headlines (Robinhood anyone?), and you need to know if you're protected right now. What do you do? Traditionally, you would have to go with one of the options below. Option 1 – Manually check that IoCs have been updated across your security controls. This would require checking that security controls such as your email gateway, web gateway, and endpoint

RAMBleed Attack – Flip Bits to Steal Sensitive Data from Computer Memory

mercredi 12 juin 2019 à 12:16
A team of cybersecurity researchers yesterday revealed details of a new side-channel attack on dynamic random-access memory (DRAM) that could allow malicious programs installed on a modern system to read sensitive memory data from other processes running on the same hardware. Dubbed RAMBleed and identified as CVE-2019-0174, the new attack is based on a well-known class of DRAM side channel

Microsoft Releases June 2019 Security Updates to Patch 88 Vulnerabilities

mardi 11 juin 2019 à 20:08
After Adobe, the technology giant Microsoft today—on June 2019 Patch Tuesday—also released its monthly batch of software security updates for various supported versions of Windows operating systems and other Microsoft products. This month's security updates include patches for a total of 88 vulnerabilities, 21 are rated Critical, 66 are Important, and one is rated Moderate in severity. The

Adobe Issues Critical Patches for ColdFusion, Flash Player, Campaign Software

mardi 11 juin 2019 à 16:33
It's Patch Tuesday week! Adobe has just released the latest June 2019 software updates to address a total 11 security vulnerabilities in its three widely-used products Adobe ColdFusion, Flash Player, and Adobe Campaign. Out of these, three vulnerabilities affect Adobe ColdFusion, a commercial rapid web application development platform—all critical in severity—that could lead to arbitrary

New Flaw in WordPress Live Chat Plugin Lets Hackers Steal and Hijack Sessions

mardi 11 juin 2019 à 12:21
Security researchers have been warning about a critical vulnerability they discovered in one of a popular WordPress Live Chat plugin, which, if exploited, could allow unauthorized remote attackers to steal chat logs or manipulate chat sessions. The vulnerability, identified as CVE-2019-12498, resides in the "WP Live Chat Support" that is currently being used by over 50,000 businesses to