Cockpit CMS flaws exposed web servers to NoSQL injection exploits
Vulnerabilities could be leveraged for full RCE on Cockpit instances using MongoLite [...]
Vulnerabilities could be leveraged for full RCE on Cockpit instances using MongoLite [...]
Crash of production server leads to FBI case, despite modest losses [...]
Public timeline of incidents aims to further conversation surrounding security research and vulnerability disclosure [...]
Beijing adopting supply chain tactics and greater sharing of resources between spying groups, experts warn [...]
Complexity to exploit authentication bypass bug ‘very low’ [...]
Trouble comes in twos [...]
Academics warn that user privacy may fall at the hands of little-known attack vector [...]
Two-year-old RCE flaws still unpatched, bounty hunters claim [...]
Japanese gaming company fell victim to cyber-attack in November 2020 [...]
Cybercrime incidents are still ‘significantly under-reported’ by victims [...]
Company calls in experts and tightens security amid reports of data warehouse leak [...]
Crowdsourced security was a key tool in securing some countries’ efforts, while others missed the mark [...]
$1m payout barrier broken by attacks also targeting Microsoft Exchange, Windows 10 [...]
Vulnerability in content management system opened the door to unauthenticated exploitation [...]
Social media giant says ‘scraping’ was cause of issue that affected 500 million users [...]
Researcher says his findings ultimately led to a safer, more stable kernel [...]
We caught up with Matrix co-founders to find out how the project is developing and why the future of internet freedom may depend on decentralization [...]
Vendor has confirmed the security fracas following what may have been a supply chain attack [...]
Coronavirus travel pass plans must prioritize data privacy, says European Data Protection Board [...]
Users urged to update their systems after disclosure of serious vulnerabilities [...]
More details released about the incident, though the attacker remains unidentified [...]
Netherlands-based company failed to act quickly enough, says regulator [...]
Security researcher earns $6,000 bug bounty for thinking outside of the box [...]
Flaw allowed attacker to leak victim’s IP address and gain access to local files [...]
Prompt disclosure shake-up follows SolarWinds calamity [...]