Skip to content
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap
GeekWire
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

Patching

Automox Adds Automation to Patching, Vuln Management

9 June 2022

Automox’s Paul Zimski joins Dark Reading’s Terry Sweeney at Dark Reading News Desk during RSA Conference to talk about automated patch …

Tags Automation, Automox, Management, New, Patching

Partial Patching Still Provides Strong Protection Against APTs

20 May 2022

Organizations that deploy updates only after a vulnerability is disclosed apply far fewer updates and do so at a lower cost than those that …

Tags APTs, Cloud, IT, Patching, Protection

The Great Security Debate: Is Patching Useless?

14 May 2022

“I’ve been in this game for a long time,” security expert Dave Aitel said, prefacing a counter-intuitive argument that patching …

Tags Culture, Debates, Features, Is, Patching

Microsoft Simplifies Security Patching Process for Exchange Server

11 May 2022

Delivering hotfixes and system updates separately will allow manual patching without requiring elevated permissions, Microsoft …

Tags Cloud, Exchange Server, Microsoft, Patching, Process

Which Hole to Plug First? Solving Chronic Vulnerability Patching Overload

2 May 2022

According to folklore, witches were able to sail in a sieve, a strainer with holes in the bottom. Unfortunately, witches don’t work in …

Tags Hole, MITRE, Overload, Patching, Plug

CVSS 9.9-Rated Samba Bug Requires Immediate Patching

2 February 2022

A critical vulnerability in a popular open-source networking protocol could allow attackers to execute code with root privileges unless …

Tags Bug, CVSS, File Systems, Patching, Samba

Patching the CentOS 8 Encryption Bug is Urgent – What Are Your Plans?

27 January 2022

There are three things you can be sure of in life: death, taxes – and new …

Tags Bug, Encryption, Malware, Patching, Plans

When Patching Security Flaws, Smarter Trumps Faster

19 January 2022

Just turning the patch dial to “high” is not enough, and if your company is using the Common Vulnerability Scoring System (CVSS) to …

Tags Cloud, Faster, IT, Patching, Security Flaws

Serious Security: OpenSSL fixes “error conflation” bugs – how mixing up mistakes can lead to trouble

17 December 2021

Amidst the ongoing brouhaha created by the apparently omnipresent Log4Shell insecurity featuresecurity vulnerability, it’s easy to lose …

Tags Cryptography, Open Source, Open Source Software, OpenSSL, Patching

Lack of Patching Leaves 300,000 Routers at Risk for Attack

9 December 2021

A significant percentage of the 2 million consumer and small-business routers produced by a Latvian firm are vulnerable and being used by …

Tags Attacks, Leaves, Patching, Risks, Routers

Patching takes 2.5 times longer when endpoints are remote

30 November 2021

Action1 released a report based on the feedback from 491 IT professionals worldwide. The study explores how organizations patch and manage …

Tags IT, News, Patching

Why Database Patching Best Practice Just Doesn’t Work and How to Fix It

18 October 2021

Patching really, really matters – patching is what keeps technology solutions from becoming like big blocks of Swiss cheese, with endless …

Tags Fix, How, Just, Patching, Why

71% of Security Pros Find Patching to be Complex and Time Consuming, Ivanti Study Confirms

8 October 2021

Challenges with lack of time and vulnerability and patching prioritization are putting organizations at increased risk of …

Tags Complex, Find, Ivanti, Patching, Pros

Patching Too Tortuous for IT Pros

7 October 2021

Patching vulnerabilities is too labor intensive and convoluted a process for most IT security professionals, according to new research by …

Tags IT, IT Pros, News, Patching
Post navigation
Older posts
Page1 Page2 … Page15 Next →
Cookie-Free

NVD

  • CVE-2022-34132 – Benjamin BALET Jorani v1.0 was discovered to contain a SQL injection vulnerability via the …28 June 2022
  • CVE-2022-34133 – Benjamin BALET Jorani v1.0 was discovered to contain a cross-site scripting (XSS) vulnerab …28 June 2022
  • CVE-2022-34134 – Benjamin BALET Jorani v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) v …28 June 2022
  • CVE-2022-31104 – Wasmtime is a standalone runtime for WebAssembly. In affected versions wasmtime’s implemen …28 June 2022
  • CVE-2022-33146 – Open redirect vulnerability in web2py versions prior to 2.22.5 allows a remote attacker to …27 June 2022
  • CVE-2022-1593 – The Site Offline or Coming Soon WordPress plugin through 1.6.6 does not have CSRF check in …27 June 2022

EXPLOITS

  • Mailhog 1.0.1 – Stored Cross-Site Scripting (XSS)28 June 2022
  • WSO2 Management Console (Multiple Products) – Unauthenticated Reflected Cross-Site Scripting (XSS)28 June 2022
  • WordPress Plugin Weblizar 8.9 – Backdoor28 June 2022
  • Sourcegraph Gitserver 3.36.3 – Remote Code Execution (RCE)14 June 2022
  • phpIPAM 1.4.5 – Remote Code Execution (RCE) (Authenticated)14 June 2022
  • TP-Link Router AX50 firmware 210730 – Remote Code Execution (RCE) (Authenticated)14 June 2022

SECURELIST

  • The hateful eight: Kaspersky’s guide to modern ransomware groups’ TTPs23 June 2022
  • APT ToddyCat21 June 2022
  • ‘Unpacking’ technical attribution and challenges for ensuring stability in cyb20 June 2022
  • How much does access to corporate infrastructure cost?15 June 2022
  • Router security in 20218 June 2022
  • CVE-2022-30190 (Follina) vulnerability in MSDT: description and counteraction6 June 2022

Information Cyber Network Enterprise Security News

Copyright © 2022 GeekWire | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.

GeekWire Information Cyber Network Enterprise Security News

Next Page »