• Skip to content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Cyber Threat Defense

Cyber Security News

Vulnerabilities

Drupal Release Patches for Drupalgeddon2 Vulnerability

April 30, 2018 By News Team Leave a Comment

Drupal has just issued its third flaw fix in a month, supplementing its previous patch for Drupalgeddon 2 with an unscheduled security update. After releasing a patch for a critical vulnerability in late March, Drupal is now having to do it all over … [Read more...] about Drupal Release Patches for Drupalgeddon2 Vulnerability

Filed Under: Hacking, Vulnerabilities Tagged With: Dries Buytert, Drupal, Drupal Media module, Drupalgeddon 2, SA-CORE-2018-002, SA-CORE-2018-003, SA-CORE-2018-004, vulnerability, XSS

Drupal Vulnerable to Back Doors

April 20, 2018 By News Team Leave a Comment

On March 28th, a patch for a vulnerability on Drupal was released to protect the Drupal content management system (Drupal 6, 7 and 8) against the bug that facilitates remote code execution. The Drupal vulnerability was tracked as CVE-2018-7600 and … [Read more...] about Drupal Vulnerable to Back Doors

Filed Under: Vulnerabilities Tagged With: automated attacks, backdoors, CVE-2018-7600, Druid, Drupal, Drupal 6, Drupal 7, Drupal 8, Drupal websites, Drupalgeddon 2, Imperva, patches, proof-of-concept exploit, SANS Internet Storm Center, Volexity

Cisco Bug Leaves 8.5M Switches Vulnerable

April 7, 2018 By News Team Leave a Comment

A critical vulnerability in many Cisco networking devices has left 8.5M switches vulnerable to exploitation by attackers. The vulnerability could be leveraged by remote, unauthenticated attackers, allowing them to take over vulnerable devices and … [Read more...] about Cisco Bug Leaves 8.5M Switches Vulnerable

Filed Under: Routing, Vulnerabilities Tagged With: attackers, Cisco, Cisco IOS Software, Cisco IOS XE Software, Embedi, patches, Smart Install feature, vulnerabiliy

Drupal Sites Vulnerable to Attack

March 30, 2018 By News Team Leave a Comment

Drupal sites have been found to be highly vulnerable to attack. All recent versions of its content management system are affected by the same critical flaw, which has exposed millions of Drupal websites to potential attacks. The vulnerability can … [Read more...] about Drupal Sites Vulnerable to Attack

Filed Under: Vulnerabilities Tagged With: Drupal, Drupal websites, Paranoia module, patches, SQL injection vulnerability, updates, vulnerability

Telegram Zero-Day Spreads Malware

February 16, 2018 By News Team Leave a Comment

Russian security researchers at the Kaspersky Lab have identified a new malware campaign exploiting a zero-day vulnerability in Telegram Messenger, primarily used to spread malware, which mines cryptocurrencies including Monero and ZCash, without the … [Read more...] about Telegram Zero-Day Spreads Malware

Filed Under: Malware, Vulnerabilities Tagged With: Alexey Firsh, cryptocurrencies, Kaspersky Labs, Malware, mining, RLO attack, Russia, Telegram, Telegram messenger, zero day vulnerability

Skype Zero Day Won’t Be Fixed Anytime Soon

February 16, 2018 By News Team Leave a Comment

A zero day security flaw in the Skype updater process can be exploited to give an attacker system-level privileges on a vulnerable computer, effectively allowing them access to every part of the targeted operating system. Security researcher Stefan … [Read more...] about Skype Zero Day Won’t Be Fixed Anytime Soon

Filed Under: Application Security, Vulnerabilities Tagged With: DLL hijacking technique, malvertising, Microsoft, Skype, Stefan Kanthak, system-level privileges, zero day, zero day vulnerability

Grammarly Flaw Exposes Personal Documents

February 9, 2018 By News Team Leave a Comment

Around 22 million people have installed the Grammarly extension for Chrome, which goes beyond a traditional spell checker to offer automated copyediting: analyzing your sentence structure and word usage, and correcting grammatical errors as well as … [Read more...] about Grammarly Flaw Exposes Personal Documents

Filed Under: Browser Security, Vulnerabilities Tagged With: Chrome browser extension, Gizmodo, Grammarly, Mozilla browser extension, security hole, Slate, Tavis Ormandy, vulnerability

Apple iBoot Firmware Leaks into GitHub

February 9, 2018 By News Team Leave a Comment

The source code to Apple’s iBoot firmware used in iPhones, iPads and iOS devices in general has leaked onto the public GitHub site. No one (for now) appears to know how the confidential closed-source code got there, but according to The Register, it … [Read more...] about Apple iBoot Firmware Leaks into GitHub

Filed Under: Leaks, Vulnerabilities Tagged With: Apple, Apple iBoot firmware, bootloader, closed-source code, iOS, iOS11, iOS9, iPad, iPhone, jailbreaker, leak

Oracle Micros POS Vulnerable to Attack

February 7, 2018 By News Team Leave a Comment

Oracle’s Micros point-of-sale (POS) systems have found to have a critical vulnerability, which could be exploited to compromise and download a company’s complete business data. Micros customers are said to include a range of major retail chains, in … [Read more...] about Oracle Micros POS Vulnerable to Attack

Filed Under: Point of Sale Devices, Vulnerabilities Tagged With: ERPscan, FOREVER 21, Malware, Micros POS, Oracle, POS devices

Microsoft and AMD Stop Spectre Patches Updates

January 13, 2018 By News Team Leave a Comment

Since Microsoft issued the patches for the chipset vulnerabilities known as Meltdown and Spectre that came to light via Google’s Project Zero last week, people who have AMD computers have issued complaints about their computers crashing to a Blue … [Read more...] about Microsoft and AMD Stop Spectre Patches Updates

Filed Under: Mining, Vulnerabilities Tagged With: AMD chips, Intel, Meltdown, Microsoft, patches, Spectre

  • Page 1
  • Page 2
  • Next Page »

Primary Sidebar

Recent Articles

  • How Profits Inspires Virus Developers
  • What’s Propelling A10 Networks Inc (NYSE: ATEN) After Higher Shorts Reported?
  • FacexWorm Targets Facebook Messenger
  • Cisco Systems Webex Flaws Allows Remote Users To Execute Code
  • Europe sees Radical Drop in DDoS Attacks Since Seizure of Webstresser Site

Categories

  • Application Security
  • Bitcoin
  • Bot Defense
  • Browser Security
  • Business Models
  • Critical infrastructure
  • Cryptocurrencies
  • Cryptojacking
  • Cryptomining
  • Cybercrime
  • cybersecurity
  • Data Breach
  • Data Theft
  • DDoS
  • Endpoint Security
  • Espionage
  • Feature
  • Firewall
  • Fraud
  • Government
  • Hacking
  • Hacking Tools
  • IoT
  • Layer7
  • Leaks
  • Malware
  • Mining
  • Mobile security
  • Point of Sale Devices
  • Quantum Encryption
  • Quantum Security
  • Ransomware
  • Routing
  • Uncategorized
  • Vault7
  • Vault8
  • Vulnerabilities
  • Wikileaks

Secondary Sidebar

Cyber Threat Defense.net | Copyright © 2019 All product names, logos, and brands are property of their respective owners. All company, product and service names used on site are for identification purposes only. Use of these names, logos, and brands does not imply endorsement.