Microsoft Corp. today released software updates to plug four critical security holes that attackers have been using to plunder email communications at companies that use its Exchange Server products....
Read moreOn Vulnerability-Adjacent Vulnerabilities
February 15 2021
At the virtual Enigma Conference, Google’s Project Zero’s Maggie Stone gave a talk about zero-day exploits in the wild. In it, she talked about how often vendors...
Read moreSonicWall Zero-Day
February 8 2021
Hackers are exploiting a zero-day in SonicWall:
In an email, an NCC Group spokeswoman wrote: “Our team has observed signs of an attempted exploitation of a vulnerabilitythat affects the...
Read more
Chrome zero-day browser bug found – patch now!
February 5 2021This zero-day bug affects Chrome, as well as Edge and other Chromium-based browsers.
Read moreSophisticated Watering Hole Attack
January 20 2021
Google’s Project Zero has exposed a sophisticated watering-hole attack targeting both Windows and Android:
Some of the exploits were zero-days, meaning they targeted vulnerabilities that at the time were...
Read more
Impressive iPhone Exploit
December 2 2020
This is a scarily impressive vulnerability:
Earlier this year, Apple patched one of the most breathtaking iPhone vulnerabilities ever: a memory corruption bug in the iOS kernel that gave...
Read more
S3 Ep5: Chrome, Flash and malware for sale [Podcast]
November 5 2020Here's the latest podcast - listen now!
Read moreAnother week, another Chrome zero-day, this time on your phone.
Read moreNew Windows Zero-Day
November 2 2020
Google’s Project Zero has discovered and published a buffer overflow vulnerability in the Windows Kernel Cryptography Driver. The exploit doesn’t affect the cryptography, but allows attackers to escalate...
Read moreS3 Ep3: Cryptography, hacking and pwning Chrome [Podcast]
October 23 2020Listen to the latest Naked Security podcast!
Read more
Recent Comments