Trellix automates tackling open source vulnerabilities at scale
Charlie Osborne 26 January 2023 at 13:52 UTC Updated: 26 January 2023 at 13:55 UTC More than 61,000 vulnerabilities patched and counting Trellix has patched…
Charlie Osborne 26 January 2023 at 13:52 UTC Updated: 26 January 2023 at 13:55 UTC More than 61,000 vulnerabilities patched and counting Trellix has patched…
Pre- and post-auth path to pwnage A trio of authentication bypass bugs stemming from the use of hardcoded keys have been patched in popular enterprise…
Password vault vendor accused of making a hash of encryption Password vault vendor Bitwarden has responded to renewed criticism of the encryption scheme it uses…
John Leyden 24 January 2023 at 13:22 UTC Updated: 24 January 2023 at 13:30 UTC Manufacturer complacency ‘translates into an unacceptable risk for consumers’, warns…
Threat actors poking around AWS environments and API calls could stay under the radar Amazon Web Services (AWS) has patched a bypass bug that attackers…
Have your say to be in with the chance to win Burp Suite swag… UPDATED The Daily Swig, the brainchild of PortSwigger, the makers of Burp…
Uncovered vulnerabilities include several high, medium, and low-security issues A security audit of the source code for Git has revealed several vulnerabilities, including two critical…
John Leyden 20 January 2023 at 12:09 UTC Updated: 20 January 2023 at 12:12 UTC Dashlane, Bitwarden, and Safari all cited by Google researchers Security…
Six payouts issued for bugs uncovered in Theia, Vertex AI, Compute Engine, and Cloud Workstations Vulnerabilities in four Google Cloud Platform (GCP) projects have earned…
Charlie Osborne 18 January 2023 at 15:34 UTC Updated: 18 January 2023 at 15:52 UTC Severity somewhat blunted by reboot-related caveat Security researchers have disclosed…
Ethical hackers and bug bounty hunters invited to test Department of Defense assets The US Department of Defense (DoD) is holding its third annual Hack…
How the build pipeline was compromised Popular DevOps platform CircleCI has blamed an attack that successfully planted malware on an internal engineer’s laptop for a…