Login
FreshRSS
Login
About FreshRSS
Main stream
Favourites (0)
Security
/r/netsec - Information Security News & Discussion
Dark Reading:
http://blog.trendmicro.com/feed
ICS-CERT Alert Feed
Infosec Island Latest Articles
InfoSec Resources
Krebs on Security
McAfee Blogs
Naked Security
News β Packet Storm
Paul's Security Weekly
SANS Internet Storm Center, InfoCON: green
Security β Cisco Blog
SecurityFocus News
The first stop for security news | Threatpost
The Hacker News
The Register - Security
Threatpost | The first stop for security news
Troy Hunt
Verisign Blog
WeLiveSecurity
WIRED
ZDNet | security RSS
Tools
Security Tool Files β Packet Storm
ToolsWatch.org β The Hackers Arsenal Tools Portal
Vulnerabilities
Advisory Files β Packet Storm
Exploit-DB Updates
Full Disclosure
SecurityFocus Vulnerabilities
There are new available articles, click to refresh the page.
Before yesterday
Naked Security
Naked Security
Apple ships that recent βRapid Responseβ spyware patch to everyone, fixes a second zero-day
July 24
th
2023 at 23:18Β
Apple ships that recent βRapid Responseβ spyware patch to everyone, fixes a second zero-day
By
Paul Ducklin
Another month, another patch for in-the-wild iPhone malware (and a whole lot more).
Related tags
β
Apple
Vulnerability
Exploit
triangulation
vulnerability
Zero
Day
July 24
th
2023 at 23:18
Naked Security
S3 Ep144: When threat hunting goes down a rabbit hole
July 20
th
2023 at 14:58Β
S3 Ep144: When threat hunting goes down a rabbit hole
By
Paul Ducklin
Latest episode - check it out now!
Related tags
β
Uncategorized
Exploit
Microsoft
Naked
Security
Podcast
Storm
Virus
Total
Zero
Day
Zimbra
July 20
th
2023 at 14:58
Naked Security
Appleβs secret is out: 3 zero-days fixed, so be sure to patch now!
May 19
th
2023 at 01:02Β
Appleβs secret is out: 3 zero-days fixed, so be sure to patch now!
By
Paul Ducklin
All Apple users have zero-days that need patching, though some have more zero-days than others.
Related tags
β
Apple
Vulnerability
Exploit
iPhone
mac
vulnerability
May 19
th
2023 at 01:02
Naked Security
PaperCut security vulnerabilities under active attack β vendor urges customers to patch
April 25
th
2023 at 17:53Β
PaperCut security vulnerabilities under active attack β vendor urges customers to patch
By
Paul Ducklin
If you have the product, but you haven't patched - well, the crooks have now landed, so please don't delay. Do it today...
Related tags
β
Vulnerability
CVE-2023-27350
CVE-2023-27351
Exploit
PaperCut
rce
vulnerability
April 25
th
2023 at 17:53
Naked Security
Patch Tuesday: Microsoft fixes a zero-day, and two curious bugs that take the Secure out of Secure Boot
April 12
th
2023 at 18:57Β
Patch Tuesday: Microsoft fixes a zero-day, and two curious bugs that take the Secure out of Secure Boot
By
Paul Ducklin
Is Secure Boot without the Secure just "Boot"?
Related tags
β
Microsoft
Vulnerability
bootkit
Exploit
Patch
Tuesday
Secure
Boot
Zero
Day
April 12
th
2023 at 18:57
Naked Security
Apple zero-day spyware patches extended to cover older Macs, iPhones and iPads
April 10
th
2023 at 20:20Β
Apple zero-day spyware patches extended to cover older Macs, iPhones and iPads
By
Paul Ducklin
That double-whammy Apple browser-to-kernel spyware bug combo we wrote up last week? Turns out it applies to all supported Macs and iDevices - patch now!
Related tags
β
Apple
iOS
OS
X
Vulnerability
Exploit
kernel
bug
rce
spyware
April 10
th
2023 at 20:20
Naked Security
Popular server-side JavaScript security sandbox βvm2β patches remote execution hole
April 9
th
2023 at 00:28Β
Popular server-side JavaScript security sandbox βvm2β patches remote execution hole
By
Paul Ducklin
The security error was in the error handling system that was supposed to catch potential security errors...
vm2-1200
Related tags
β
Vulnerability
Exploit
RC
E
Sandbox
vm2
April 9
th
2023 at 00:28
Naked Security
Apple issues emergency patches for spyware-style 0-day exploits β update now!
April 8
th
2023 at 01:20Β
Apple issues emergency patches for spyware-style 0-day exploits β update now!
By
Paul Ducklin
A bug to hack your browser, then a bug to pwn the kernel... reported from the wild by Amnesty International.
Related tags
β
Apple
Apple
Safari
Vulnerability
day
Amnesty
International
Exploit
ios
iPhone
mac
Zero
Day
April 8
th
2023 at 01:20
Naked Security
Apple patches everything, including a zero-day fix for iOS 15 users
March 28
th
2023 at 00:23Β
Apple patches everything, including a zero-day fix for iOS 15 users
By
Paul Ducklin
Got an older iPhone that can't run iOS 16? You've got a zero-day to deal with! That super-cool Studio Display monitor needs patching, too.
Related tags
β
Apple
Vulnerability
day
Exploit
ios
iPad
iPadOS
iPhone
macOS
vulnerability
Zero
Day
March 28
th
2023 at 00:23
Naked Security
Microsoft fixes two 0-days on Patch Tuesday β update now!
March 15
th
2023 at 00:06Β
Microsoft fixes two 0-days on Patch Tuesday β update now!
By
Paul Ducklin
An email you haven't even looked at yet could be used to trick Outlook into helping crooks to logon as you.
Related tags
β
Microsoft
Vulnerability
Windows
day
Exploit
MOTW
NTLM
v2
Outlook
Patch
Tuesday
SmartScreen
vulnerability
Zero
Day
March 15
th
2023 at 00:06
Naked Security
S3 Ep122: Stop calling every breach βsophisticatedβ! [Audio + Text]
February 16
th
2023 at 17:46Β
S3 Ep122: Stop calling every breach βsophisticatedβ! [Audio + Text]
By
Paul Ducklin
Latest episode - listen now! (Full transcript inside.)
Related tags
β
Podcast
Apple
Cybercrime
Exploit
hacking
Microsoft
Naked
Security
Podcast
Patch
Tuesday
reddit
vulnerability
Zero
Day
February 16
th
2023 at 17:46
Naked Security
Apple patches are out β old iPhones get an old zero-day fix at last!
January 24
th
2023 at 01:24Β
Apple patches are out β old iPhones get an old zero-day fix at last!
By
Paul Ducklin
Don't delay, especially if you're still running an iOS 12 device... please do it today!
Related tags
β
Apple
Vulnerability
CVE-2022-42856
Exploit
ios
ios
12
iPadOS
macOS
Ventura
Zero
Day
January 24
th
2023 at 01:24
Naked Security
Microsoft Patch Tuesday: One 0-day; Win 7 and 8.1 get last-ever patches
January 11
th
2023 at 00:22Β
Microsoft Patch Tuesday: One 0-day; Win 7 and 8.1 get last-ever patches
By
Paul Ducklin
Get 'em while they're hot. And get 'em for the very last time, if you still have Windows 7 or 8.1...
Related tags
β
Microsoft
Vulnerability
Exploit
malware.
spam.
vulnerability
Patch
Tuesday
January 11
th
2023 at 00:22
Naked Security
Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
December 14
th
2022 at 01:13Β
Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
By
Paul Ducklin
Tales of derring-do in the cyberunderground! (And some zero-days.)
Related tags
β
Microsoft
Vulnerability
driver
signing
Exploit
Patch
Tuesday
vulnerability
December 14
th
2022 at 01:13
Naked Security
Pwn2Own Toronto: 54 hacks, 63 new bugs, $1 million in bounties
December 12
th
2022 at 19:58Β
Pwn2Own Toronto: 54 hacks, 63 new bugs, $1 million in bounties
By
Paul Ducklin
That's a mean average of $15,710 per bug... and 63 fewer bugs out there for crooks and rogues to find.
Related tags
β
Security
events
Vulnerability
Exploit
hacking
Pwn2Own
vulnerability
December 12
th
2022 at 19:58
Naked Security
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
December 9
th
2022 at 16:46Β
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
By
Paul Ducklin
Breaches, exploits, busts, buffer overflows and bug hunting - entertaining and educational in equal measure.
Related tags
β
Apple
Google
Law
&
order
Malware
Microsoft
Podcast
Privacy
Vulnerability
"Edge"
chrome
Cybercrime
Exploit
hacking
ios
Naked
Security
Podcast
December 9
th
2022 at 16:46
Naked Security
S3 Ep108: You hid THREE BILLION dollars in a popcorn tin?
November 10
th
2022 at 17:26Β
S3 Ep108: You hid THREE BILLION dollars in a popcorn tin?
By
Paul Ducklin
Patches, busts, leaks and why even low-likelihood exploits can be high-severity risks - listen now!
Related tags
β
Cryptocurrency
Law
&
order
Microsoft
Podcast
Privacy
Vulnerability
bust
cryptocurrency
Exploit
Naked
Security
Podcast
Patch
Tuesday
Windows
November 10
th
2022 at 17:26
Naked Security
Exchange 0-days fixed (at last) β plus 4 brand new Patch Tuesday 0-days!
November 9
th
2022 at 19:58Β
Exchange 0-days fixed (at last) β plus 4 brand new Patch Tuesday 0-days!
By
Paul Ducklin
In all the excitement, we kind of lost track ourselves. Were there six 0-days, or only four?
Related tags
β
Microsoft
Privacy
Vulnerability
day
exchange
Exploit
Patch
Tuesday
vulnerability
Zero
Day
November 9
th
2022 at 19:58
Naked Security
Chrome issues urgent zero-day fix β update now!
October 29
th
2022 at 15:08Β
Chrome issues urgent zero-day fix β update now!
By
Paul Ducklin
We've said it before/And we'll say it again/It's not *if* you should patch/It's a matter of *when*. (Hint: now!)
Related tags
β
Google
Google
Chrome
Vulnerability
"Edge"
day
chrome
Chromium
CVE-2022-3723
Exploit
Zero
Day
October 29
th
2022 at 15:08
Naked Security
Apple megaupdate: Ventura out, iOS and iPad kernel zero-day β act now!
October 25
th
2022 at 18:03Β
Apple megaupdate: Ventura out, iOS and iPad kernel zero-day β act now!
By
Paul Ducklin
Ventura hits the market with 112 patches, Catalina's gone missing, and iPhones and iPads get a critical kernel-level zero-day patch...
Related tags
β
Apple
iOS
OS
X
Vulnerability
day
CVE-2022-42827
Exploit
ios
iPad
iPhone
mac
vulnerability
zer-day
October 25
th
2022 at 18:03
Naked Security
Patch Tuesday in brief β one 0-day fixed, but no patches for Exchange!
October 12
th
2022 at 16:58Β
Patch Tuesday in brief β one 0-day fixed, but no patches for Exchange!
By
Paul Ducklin
There's a zero-day patch, but it's not for the zero-day you thought.
Related tags
β
Microsoft
Vulnerability
Windows
day
Exploit
Patch
Tuesday
vulnerability
October 12
th
2022 at 16:58
Naked Security
S3 Ep103: Scammers in the Slammer (and other stories) [Audio + Text]
October 6
th
2022 at 14:43Β
S3 Ep103: Scammers in the Slammer (and other stories) [Audio + Text]
By
Paul Ducklin
Latest episode - listen and learn now (or read and revise, if the written word is your thing)...
Related tags
β
Law
&
order
Microsoft
Podcast
:ProxyNotShell
BEC
bust
exchange
Exploit
Naked
Security
Podcast
robocalls
romance
scam
vulnerability
October 6
th
2022 at 14:43
Naked Security
WhatsApp βzero-day exploitβ news scare β what you need to know
September 27
th
2022 at 18:51Β
WhatsApp βzero-day exploitβ news scare β what you need to know
By
Paul Ducklin
Is WhatsApp currently under active attack by cybercriminals? Is this a clear and current danger? How worried should WhatsApp users be?
Related tags
β
Vulnerability
Exploit
vulnerability
WhatsApp
September 27
th
2022 at 18:51
Naked Security
Chrome and Edge fix zero-day security hole β update now!
September 5
th
2022 at 15:12Β
Chrome and Edge fix zero-day security hole β update now!
By
Paul Ducklin
This time, the crooks got there first - only 1 security hole patched, but it's a zero-day.
Related tags
β
Google
Google
Chrome
Vulnerability
chrome
CVE-2022-3075
Exploit
Patch
Zero
Day
September 5
th
2022 at 15:12
Naked Security
S3 Ep87: Follina, AirTags, ID theft and the Law of Big Numbers [Podcast]
June 16
th
2022 at 16:52Β
S3 Ep87: Follina, AirTags, ID theft and the Law of Big Numbers [Podcast]
By
Paul Ducklin
Lastest epsiode - listen now!
Related tags
β
Apple
Microsoft
Phishing
Podcast
Vulnerability
CVE-2022-30190
Exploit
Follina
phishing
SMS
vishing
vulnerability
June 16
th
2022 at 16:52
Naked Security
Google Chrome patches mysterious new zero-day bug β update now
March 28
th
2022 at 14:18Β
Google Chrome patches mysterious new zero-day bug β update now
By
Paul Ducklin
CVE-2022-1096 - another mystery in-the-wild 0-day in Chrome... check your version now!
Related tags
β
Google
Google
Chrome
chrome
Chromium
CVE-2022-1096
Exploit
Zero
Day
March 28
th
2022 at 14:18
Naked Security
Serious Security: DEADBOLT β the ransomware that goes straight for your backups
March 23
rd
2022 at 19:58Β
Serious Security: DEADBOLT β the ransomware that goes straight for your backups
By
Paul Ducklin
Some tips on how to keep your network safe - even (or perhaps especially!) if you think you're safe already.
Related tags
β
Ransomware
Vulnerability
backup
Deadbolt
Exploit
NAS
QNAP
ransomware
vulnerability
March 23
rd
2022 at 19:58
Naked Security
Apple patches 87 security holes β from iPhones and Macs to Windows
March 15
th
2022 at 16:36Β
Apple patches 87 security holes β from iPhones and Macs to Windows
By
Paul Ducklin
Lots of fixes, with data leakage flaws and code execution bugs patched on iPhones, Macs and even Windows.
apple-1200
Related tags
β
Apple
iOS
OS
X
Privacy
Vulnerability
Windows
cve
Exploit
Patch
rce
March 15
th
2022 at 16:36
Naked Security
Firefox patches two actively exploited 0-day holes: update now!
March 5
th
2022 at 19:06Β
Firefox patches two actively exploited 0-day holes: update now!
By
Paul Ducklin
Firefox just published a double-zero-day patch - "remote code execution" combined with "sandbox escape". Update now!
Related tags
β
Mozilla
Vulnerability
Exploit
Firefox
o-day
Zero
Day
March 5
th
2022 at 19:06
Naked Security
S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams [Podcast + Transcript]
February 24
th
2022 at 16:51Β
S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams [Podcast + Transcript]
By
Paul Ducklin
Latest episode - listen now!
Related tags
β
Phishing
Podcast
Vulnerability
backup
Exploit
hacking
Naked
Security
Podcast
Scam
sextortion
VMware
vulnerability
Wordpress
February 24
th
2022 at 16:51
Naked Security
Adobe fixes zero-day exploit in e-commerce code: update now!
February 14
th
2022 at 22:38Β
Adobe fixes zero-day exploit in e-commerce code: update now!
By
Paul Ducklin
There's a remote code execution hole in Adobe e-commerce products - and cybercrooks are already exploiting it.
Related tags
β
Adobe
Vulnerability
CVE-2022-24086
Exploit
vulnerability
Zero
Day
February 14
th
2022 at 22:38
Naked Security
Apple fixes Safari data leak (and patches a zero-day!) β update now
January 27
th
2022 at 21:09Β
Apple fixes Safari data leak (and patches a zero-day!) β update now
By
Paul Ducklin
That infamous "supercookie" bug in Safari has now been fixed. Oh, and there was a zero-day kernel hole as well.
apple-1200
Related tags
β
Apple
iOS
OS
X
Privacy
Vulnerability
Exploit
ios
iPhone
macOS
Patch
rce
January 27
th
2022 at 21:09
Naked Security
S3 Ep63: Log4Shell (what else?) and Apple kernel bugs [Podcast+Transcript]
December 16
th
2021 at 17:41Β
S3 Ep63: Log4Shell (what else?) and Apple kernel bugs [Podcast+Transcript]
By
Paul Ducklin
Latest episode - listen now! (Yes, there are plenty of critical things to go along with Log4Shell.)
Related tags
β
Apple
Podcast
CVE-2021-44228
Exploit
iPhone
jailbreak
Log4Shell
macOS
Naked
Security
Podcast
December 16
th
2021 at 17:41
Naked Security
βLog4Shellβ Java vulnerability β how to safeguard your servers
December 10
th
2021 at 19:22Β
βLog4Shellβ Java vulnerability β how to safeguard your servers
By
Paul Ducklin
Just when you thought it was safe to relax for the weekend... a critical bug showed up in Apache's Log4j product
Related tags
β
Vulnerability
Apache
CVE-2021-44228
Exploit
Java
Log4Shell
LOGJAM
rce
December 10
th
2021 at 19:22
Naked Security
S3 Ep60: Exchange exploit, GoDaddy breach and cookies made public [Podcast]
November 25
th
2021 at 12:38Β
S3 Ep60: Exchange exploit, GoDaddy breach and cookies made public [Podcast]
By
Paul Ducklin
Latest episode - listen now! Solid cybersecurity advice in plain English.
Related tags
β
Podcast
cookies
data
breach
exchange
Exploit
GoDaddy
Naked
Security
Podcast
passwords
vulnerability
November 25
th
2021 at 12:38
There are no more articles
β
Mark all as read