Severe Parse Server bug impacts Apple Game Center
Fake certificates could be used to bypass authentication controls [...]
Fake certificates could be used to bypass authentication controls [...]
Scores of security issues in industrial control systems unveiled [...]
Iconic hot tub manufacturer addresses flaws that also apparently exposed numerous backend services [...]
Improper access control flaw poses DoS-to-RCE hijack risk [...]
Probe surfaces ‘alarmingly huge’ number of unredacted tokens and keys [...]
In some scenarios, CSS style specifications can be manipulated to cause browsers to send data to an attacker-controlled server [...]
Sock it to ‘em [...]
Mischievous hackers exploiting flaw could subvert ‘not safe for work’ restrictions [...]
Move intended to help prevent Ruby packages from being used in supply chain attacks [...]
Some lab results will be delayed, company warns [...]
Attackers could also potentially gain access to various internal services, researcher warns [...]
Many consumers still relying on easy-to-crack passwords, warns Digital Shadows [...]
Vendor threatened legal action following disclosure and fixes being issued, bug hunter claims [...]
Medical payments company admits network intrusion [...]
Manufacturer addresses threat to integrity and availability of physical access systems sold by LenelS2 [...]
ODoH is said to enhance user privacy without compromising performance [...]
New research shows how electromagnetic interference can be used to trigger arbitrary behavior on mobile touchscreens, although caveats apply [...]
Health plan provider plays down ID theft fears after breach at Washington state division [...]
New hacking technique allows threat actors to evade some of the most effective phishing countermeasures [...]
Cryptographic skillset favored during hacker selection process [...]
‘Zero trust’ architecture and secure supply chains to the fore in new strategy [...]
Sysadmins should update their installations immediately [...]
APTs hammering unpatched vulnerabilities [...]
‘This false accusation messed up the release of one of our services,’ maintainer laments [...]
‘This false accusation messed up the release of one of our services,’ security pro laments [...]