Even read-only files can be written to, leading to a dangerously general purpose elevation-of-privilege attack.
Read moreS3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day [Podcast + Transcript]
February 17 2022Latest episode - listen and learn!
Read moreVendors are Fixing Security Flaws Faster
February 16 2022Google’s Project Zero is reporting that software vendors are patching their code faster.
tl;dr
- In 2021, vendors took an average of 52 days to fix security vulnerabilities reported from Project... Read more
Google announces zero-day in Chrome browser – update now!
February 15 2022Zero-day buses: none for a while, then three at once. Here's Google joining Apple and Adobe in "zero-day week"
Read moreFinding Vulnerabilities in Open Source Projects
February 2 2022The Open Source Security Foundation announced $10 million in funding from a pool of tech and financial companies, including $5 million from Microsoft and Google, to find...
Read morePeople Are Increasingly Choosing Private Web Search
January 6 2022DuckDuckGo has had a banner year:
And yet, DuckDuckGo. The privacy-oriented search engine netted more than 35 billion search queries in 2021, a 46.4% jump over 2020 (23.6...
Read more
Microsoft Patch Tuesday, December 2021 Edition
December 14 2021Microsoft, Adobe, and Google all issued security updates to their products today. The Microsoft patches include six previously disclosed security flaws, and one that that is already being actively...
Read moreGoogle Shuts Down Glupteba Botnet, Sues Operators
December 9 2021Google took steps to shut down the Glupteba botnet, at least for now. (The botnet uses the bitcoin blockchain as a backup command-and-control mechanism, making it hard to get...
Read moreMacOS Zero-Day Used against Hong Kong Activists
November 12 2021Google researchers discovered a MacOS zero-day exploit being used against Hong Kong activists. It was a “watering hole” attack, which means the malware was hidden in a legitimate...
Read moreMicrosoft Patch Tuesday, September 2021 Edition
September 14 2021Microsoft today pushed software updates to plug dozens of security holes in Windows and related products, including a vulnerability that is already being exploited in active attacks. Also, Apple...
Read more
Recent Comments