[email protected] +603-2181 3666
Extol Threat Intelligent Notification
Flash 0-day in the wild – patch now!
October 24, 2017

This past Patch Tuesday, Adobe released, well, nothing. Given that the past few months of Adobe Patch Tuesdays have been gradually diminishing, perhaps some of us thought these Flash-related patches were going the way of the dodo. Alas, it was wishful thinking. Six days after Patch-Tuesday-that-wasn’t, Adobe has released an out-of-band patch for Flash in […]

A cyber espionage group previously linked to China has been using a recently patched .NET vulnerability in attacks aimed at organizations in the United States, including a shipbuilding company and a university research center with ties to the military. The threat actor, known for its use of a remote access trojan (RAT) named NanHaiShu, has […]

A Flash Player security update released on Monday by Adobe patches a zero-day vulnerability that has been exploited in targeted attacks. The security hole, tracked as CVE-2017-11292, has been described as a critical type confusion issue that could lead to remote code execution.The vulnerability affects the Windows, Mac, Linux and Chrome OS versions of Flash […]

News of the week – and it’s still only Monday – is a Bug With An Impressive name (and its own logo!) called the KRACK Attack.Actually, there are several attacks of a similar sort discussed in the paper that introduced KRACK, so they’re more properly known as the KRACK Attacks.These KRACK attacks mean that most […]

Security experts are urging network administrators to patch a Microsoft Office vulnerability that has been exploited in the wild. The vulnerability (CVE-2017-11826) could allow remote code execution if a user opens a specially crafted Office file. It was one of 62 vulnerabilities patched by Microsoft as part of its monthly Patch Tuesday updates released today. […]

The Olympic Games offer a tempting target for hackers and other malicious actors, with potentially devastating consequences for one of the world’s premier sporting events, researchers said Tuesday. A report by University of California researchers said the efforts to disrupt the 2016 US election should serve as warning about the impact of a cyber-attack on […]

A popular ecommerce platform sold in 60 countries suffers from a SQL injection vulnerability privately disclosed in April that has yet to be patched by the vendor. BPC Banking Technologies of Switzerland has not acknowledged the vulnerability in its SmartVista suite of ecommerce and financial software product, despite numerous reports from Rapid7, CERT/CC in the […]

Apple’s policy to repeatedly ask users for their iTunes password needlessly exposes iOS device owners to possible phishing attacks, according a mobile app developer Felix Krause.Krause’s beef with Apple is that too often and seemingly at random times, popups deliver a dialogue box for users to enter their Apple ID. The prompts have become so […]

Bitcoin has skyrocketed over the last several years and has become the most coveted currency of today. Not belonging to any state or country, able to be used all over the world equally and immediately, and able to provide complete anonymity when doing business — these are some of its biggest draws. But like any […]

Java developers can now use Azure Functions, Microsoft’s serverless computing platform, to build and deploy applications on the Redmond, Wash. software marker’s cloud. Serverless computing is gaining ground among businesses and the world’s major cloud providers, but contrary to the image the term conjures up, servers are still very much involved in serverless applications. What’s […]

1 18 19 20 21 22 157