Skip to content
GeekWire
  • Home
  • News
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • Security
    • Books
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • Archive
  • About
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap
GeekWire
  • Home
  • News
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • Security
    • Books
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • Archive
  • About
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

Issues

Supermicro and PulseSecure Issue Advisories on Trickboot

6 March 2021

Supermicro and PulseSecure Issue Advisories on Trickboot Companies Report Several of Their Products Are Vulnerable Doug Olenick …

Tags Advisories, Issues, IT, News, Supermicro

CISA issues emergency directive to agencies: deal with Microsoft Exchange zero-days now

4 March 2021

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive following the release of fixes for …

Tags Directives, Emergency, Issues, Security Pro, Vulnerability

CISA Issues Emergency Directive on In-the-Wild Microsoft Exchange Flaws

4 March 2021

Following Microsoft’s release of out-of-band patches to address multiple zero-day flaws in on-premises versions of Microsoft Exchange …

Tags CISA, Directives, Emergency, Issues, Vulnerability

API Security Weekly: Issue #123

4 March 2021

This week, we learn about the recent serious API vulnerability in VMware vCenter (if you have one, update ASAP!), why query and path …

Tags Issues, IT, News, Weekly

NSA Issues Guidance on Zero Trust Implementation

27 February 2021

The US National Security Agency has issued its zero trust guidance aimed at securing critical networks and sensitive data within key …

Tags Guidance, Implementation, Issues, NSA, Zero Trust

API Security Weekly: Issue #122

25 February 2021

This week, we take a look at the recent data spill incident at Clubhouse, the (poor) state of API security in major healthcare mobile …

Tags Issues, IT, News, Weekly

API Security Weekly: Issue #121

18 February 2021

This week, we take a look at the recent API vulnerability at chess.com, resources for GraphQL API security, and some API security advice …

Tags Issues, IT, News, Weekly

NZ Reserve Bank Issues Update on Accellion Breach

16 February 2021

Reserve Bank of New Zealand Gov. Adrian Orr The Reserve Bank of New Zealand issued an update Monday on the data breach it sustained in …

Tags Accellion, Breach, Issues, IT, Reserve

Biden Assesses U.S. Policies on China Cybersecurity Issues

16 February 2021

The Biden administration is reviewing former President Donald Trump’s policies addressing potential national security and cybersecurity …

Tags Biden, China, Issues, IT, Policies

Mercedes Issues eCall Recall

15 February 2021

Luxury car manufacturer Mercedes-Benz AktienGesellschaft has recalled over a million vehicles following the discovery of an emergency call …

Tags Issues, IT, Mercedes, News, Recalls

API Security Weekly: Issue #120

11 February 2021

This week, we take a look at the security issues in cheap video doorbells and security cameras, as well as tutorials and webinars on …

Tags Containers, Google, Issues, IT, kubernetes

Microsoft Issues Second Patch for Netlogon Vulnerability

10 February 2021

Microsoft has finally pushed out the second half of the software patch for the “Zerologon” privilege escalation vulnerability in the …

Tags Issues, Microsoft, Netlogon, Patch, Security Pro
Post navigation
Older posts
Page1 Page2 … Page33 Next →
Cookie-Free

NVD

CVE-2021-21360 – Products.GenericSetup is a mini-framework for expressing the configured state of a Zope Si …

9 March 2021

CVE-2021-21361 – The `com.bmuschko:gradle-vagrant-plugin` Gradle plugin contains an information disclosure …

9 March 2021

CVE-2021-24033 – react-dev-utils prior to v11.0.4 exposes a function, getProcessForPort, where an input arg …

9 March 2021

CVE-2021-21354 – Pollbot is open source software which "frees its human masters from the toilsome task …

8 March 2021

CVE-2021-21362 – MinIO is an open-source high performance object storage service and it is API compatible w …

8 March 2021

CVE-2020-27574 – Maxum Rumpus 8.2.13 and 8.2.14 is affected by cross-site request forgery (CSRF). If an aut …

8 March 2021

EXPLOITS

GLPI 9.5.3 – ‘fromtype’ Unsafe Reflection

8 March 2021

Joomla JCK Editor 6.4.4 – ‘parent’ SQL Injection (2)

8 March 2021

Pingzapper 2.3.1 – ‘PingzapperSvc’ Unquoted Service Path

8 March 2021

Hotel and Lodge Management System 1.0 – Remote Code Execution (Unauthenticated)

8 March 2021

Configuration Tool 1.6.53 – ‘OpLclSrv’ Unquoted Service Path

8 March 2021

Print Job Accounting 4.4.10 – ‘OkiJaSvc’ Unquoted Service Path

8 March 2021

SECURELIST

Zero-day vulnerabilities in Microsoft Exchange Server

4 March 2021

Mobile malware evolution 2020

1 March 2021

The state of stalkerware in 2020

26 February 2021

Lazarus targets defense industry with ThreatNeedle

25 February 2021

DDoS attacks in Q4 2020

16 February 2021

Spam and phishing in 2020

15 February 2021

Information Cyber Network Enterprise Security News

© 2021 GeekWire | Privacy Policy | Cookie-Free | We are not responsible for the content of external sites.