SolarWinds and Market Incentives
In early 2021, IEEE Security and Privacy asked a number of board members for brief perspectives on the SolarWinds incident while it was still breaking...
BEC Attacks Surge 81% in 2022
Open rates for emails hit 28% Read More
#SOOCon23: Global Cooperation Needed to Enhance Open Source Software Security
A panel of policy experts discuss how to improve global cooperation around open source software security Read More
CISA Releases Recovery Tool for VMware Ransomware Victims
Legacy bug in ESXi servers is being targeted by threat actors Read More
Regulator Halts AI Chatbot Over GDPR Concerns
Replika accused of posing risk to children Read More
Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Google Chrome is a web browser...
phpMyAdmin-5.2.1-1.el9
FEDORA-EPEL-2023-5445ead5e2 Packages in this update: phpMyAdmin-5.2.1-1.el9 Update description: phpMyAdmin 5.2.1 This is a bugfix release that also contains a security fix for an XSS vulnerability...
phpMyAdmin-5.2.1-1.fc36
FEDORA-2023-c713d12577 Packages in this update: phpMyAdmin-5.2.1-1.fc36 Update description: phpMyAdmin 5.2.1 This is a bugfix release that also contains a security fix for an XSS vulnerability...
phpMyAdmin-5.2.1-1.fc37
FEDORA-2023-179053442b Packages in this update: phpMyAdmin-5.2.1-1.fc37 Update description: phpMyAdmin 5.2.1 This is a bugfix release that also contains a security fix for an XSS vulnerability...
ZDI-23-098: X.Org Server DeepCopyPointerClasses Use-After-Free Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code...