Critical XSS vulnerability found at TinyMCE
A couple of days ago, a digital forensics researcher reported the discovery of a cross-site scripting (XSS) vulnerability that affects three plugins from the TinyMCE open source text editor. TheRead More →
A couple of days ago, a digital forensics researcher reported the discovery of a cross-site scripting (XSS) vulnerability that affects three plugins from the TinyMCE open source text editor. TheRead More →
The developers of Telerik UI for ASP.NET, the open source application framework for dynamic sites web development, received the report of a vulnerability that, if exploited, would allow an attackerRead More →
A serious discovery threatens the network security environment of thousands of organizations around the world. A series of vulnerabilities were recently found in various Cisco enterprise products (IP phones, switches,Read More →
Vulnerability testing and research are vital tasks in the cybersecurity community to keep software developments protected against the latest security threats. Recently, some updates were released for Node.js, which focusRead More →
An information security firm reported the finding of a new vulnerability in Philips Hue devices that, if exploited, would allow a hacker to take control of a light bulb toRead More →
Although rarely exploited, vulnerability testing reports on WhatsApp have become prevalent in the cybersecurity community. The most recent of these reports refers to multiple failures that could alter some aspectsRead More →
Reports on the detection of new vulnerabilities are constantly appearing, affecting multiple commonly used and specialized technology developments and products. One of the most recent vulnerability testing reports refers toRead More →
Most people still ignore it, but information from peripheral devices (mainly scanners and printers) can be accessed over the Internet. It sounds very bad, and can get even worse, asRead More →
For most cryptocurrency enthusiasts and digital forensics specialists, storing virtual assets without an Internet connection (a practice usually known as cold storage) is the most secure way to hold theseRead More →
This has been a busy week for Cisco’s vulnerability testing team. A few hours ago, the company announced to its users that some of its Small Business Switch devices, widelyRead More →
A firm of network security specialists has reported the emergence of a security vulnerability in the Apache Solr platform, whose developers have been placed under continuous review due to theRead More →
A few months ago, an information security firm reported the hacking of the United Nations (UN) headquarters, an incident that jeopardized the integrity of thousands of personal records of itsRead More →
Although exploiting vulnerabilities in Apple developments is unusual, new security flaws are frequently reported, the scope of which, according to vulnerability testing specialists, varies depending on the affected product. ThisRead More →
When a new security flaw is reported in a software development, it starts a race between vulnerability testing experts in charge of correcting it and cybercriminals who want to exploitRead More →
Technology firm Oracle recently released a report to publicly disclose multiple security vulnerabilities present in Oracle Application Testing Suite. These flaws vary in severity, although the web application security reportRead More →
IBM network security specialists have disclosed the detection and correction of multiple vulnerabilities in various products. According to these security reports, exploiting these flaws would allow threat actors to takeRead More →
A couple of years ago, the emergence of the dangerous speculative execution vulnerability known as Spectre affected millions of Intel processor users; now, vulnerability testing experts report the finding ofRead More →
Sometimes fixing a security issue can lead to new problems. Microsoft is experiencing failures with the temporary fix of a recently found zero-day Internet Explorer vulnerability, as users and informationRead More →
The Cisco technology company has released a new cybersecurity report to disclose the remediation of a critical vulnerability the Cisco AsyncOS product zip decompression engine, for Cisco Email Security ApplianceRead More →
Just like every single week, a new security flaw report has appeared on Webex, Cisco’s video conferencing platform. The technology company has released a report, crafted by its vulnerability testingRead More →