| Date | Title | Description |
| 12.08.2026 | Lazarus Group Hacked Defense Workers With Windows Kernel Zero-Day for Five Weeks | By Earl Bensen
Published: Aug 12 2026, 2:34 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 05.08.2026 | Anthropic’s New AI Model Can Identify More Software Bugs Than Ever. Microsoft Is Struggling To Fix Them Fast Enough. | This story was originally published by ProPublica. Republished under a CC BY-NC-ND 3.0 license.
On an afternoon in mid-May, dozens of Microsoft engineers and their managers gathered online and in a conference room at the company’s Redmond, ... |
| 21.07.2026 | В 7-Zip 26.02 исправлена RCE‑уязвимость в декодере XZ | В архиваторе 7-Zip версии 26.02 устранена уязвимость CVE-2026-14266 удалённого выполнения произвольного кода в декодере XZ. Проблема получила оценку 7,0 балла по шкале CVSS. Уязвимость обнаружил ИБ‑исследователь компании Lunbun LLC Лэндон П... |
| 06.07.2026 | Евгений Рошал: WinRAR работает бесконечно, лишь изредка напоминая о том, что лицензию хорошо бы оплатить | Создатель архиватора WinRAR (Roshal ARchive) Евгений Рошал в интервью изданию РБК рассказал историю дизайна иконки проекта и открыл, почему архиватор WinRAR более 30 лет работает по модели добровольной оплаты.
Рошал создал архиватор WinRAR ... |
| 01.07.2026 | Вышел WinRAR 7.23 и RAR 7.23 | В конце июня 2026 года состоялся официальный релиз архиватора WinRAR 7.23 и RAR 7.23 от Евгения Рошаля и команды RARLAB. Сборки новой минорной версии популярной программы для сжатия файлов опубликованы для Linux, macOS, Windows, Android и F... |
| 20.05.2026 | Why AI Still Needs the Hacker's Mind: DEVCORE Pwns Four Microsoft Products to Win Pwn2Own Berlin 2026 | TAIPEI, May 20, 2026 /PRNewswire/ -- Pwn2Own Berlin 2026, the world's premier vulnerability research competition, concluded on May 16 after three days of intense competition. Amid a new wave of AI-driven vulnerability discovery and fierce c... |
| 02.05.2026 | Вышел WinRAR 7.21 и RAR 7.21 и почти сразу WinRAR 7.22 и RAR 7.22 | В конце апреля 2026 года состоялся официальный релиз культового архиватора WinRAR 7.21 и RAR 7.21 от Евгения Рошаля и команды RARLAB и почти сразу вышли сборки WinRAR 7.22 и RAR 7.22. Сборки новой минорной версии популярной программы для сж... |
| 15.04.2026 | Microsoft Issues Massive Windows Patch for 160+ Bugs, Including Two Zero-Days | Image generated by Google Gemini
Microsoft on Tuesday pushed out what security researchers are calling the second-largest monthly security update in the company’s history, patching 165 vulnerabilities, including two zero-days.
The sheer siz... |
| 12.02.2026 | Вышел 7-Zip 26.0 | 12 февраля 2026 года разработчик Игорь Павлов представил версию открытого архиватора 7-Zip 26.0. Исходный код проекта написан на языке программирования C++ и опубликован на GitHub под лицензией LGPL. Разработка архиватора ведётся с января 1... |
| 11.02.2026 | Февральский «В тренде VM»: уязвимости в продуктах Microsoft | Хабр, привет!
На связи Александр Леонов, ведущий эксперт PT Expert Security Center и дежурный по самым опасным уязвимостям месяца. Мы с командой аналитиков Positive Technologies регулярно исследуем информацию об уязвимостях из баз и бюллете... |
| 04.02.2026 | Вышел WinRAR 7.20 и RAR 7.20 | В начале февраля 2026 года состоялся официальный релиз культового архиватора WinRAR 7.20 и RAR 7.20 от Евгения Рошаля и команды RARLAB. Сборки новой мажорной версии популярной программы для сжатия файлов доступны для Linux, macOS, Windows, ... |
| 26.01.2026 | Релиз GIMP 3.0.8 с исправлениями ошибок в GIMP 3.0, 3.0.4 и GIMP 3.0.6 | В конце января 2026 года состоялся релиз открытого графического редактора GIMP 3.0.8 с исправлениями ошибок, которые были обнаружены в версии GIMP 3.0, вышедшей 17 марта, обновления GIMP 3.0.4, представленного в мае 2025 года и выпуска GIMP... |
| 22.01.2026 | Исследователи по ИБ взломали систему Tesla и ряд зарядных станций для электромобилей на Pwn2Own Automotive 2026 | Исследователи по ИБ взломали мультимедийную систему Tesla и ряд зарядных станций для электромобилей на Pwn2Own Automotive 2026. На первом дне соревнований участники использовали 37 уязвимостей нулевого дня и заработали в сумме $516 500 долл... |
| 04.12.2025 | Microsoft Silently Fixes 8-Year Windows Security Flaw | We waited long enough. Image: Unsplash
Microsoft quietly patched a critical Windows vulnerability that hackers have been exploiting for nearly eight years.
The flaw, tracked as CVE-2025-9491, allowed cybercriminals to hide malicious command... |
| 04.12.2025 | Топ самых интересных CVE за ноябрь 2025 года | ⚠ Внимание ⚠
Вся информация, представленная ниже, предназначена только для ознакомительных целей. Автор не несет ответственности за вред, который может быть причинен с помощью предоставленной им информации.
В этой подборке представлены самы... |
| 04.08.2025 | Concurso vai pagar US$ 1 milhão para quem encontrar falha grave no WhatsApp | Foco do concurso está em falhas que possibilitem que o invasor controle o aparelho da vítima (ilustração: Vitor Pádua/Tecnoblog)
O melhor da tecnologia está no nosso canal no WhatsApp
Entre Agora Resumo
Hacker poderá ganhar US$ 1 milhão se ... |
| 31.07.2025 | Вышел WinRAR 7.13 и RAR 7.13 | В конце июля 2025 года состоялся официальный релиз культового архиватора WinRAR 7.13 и RAR 7.13 от Евгения Рошаля и команды RARLAB. Сборки новой мажорной версии популярной программы для сжатия файлов доступны для Linux, macOS, Windows, Andr... |
| 16.07.2025 | Вышла система виртуализации VirtualBox 7.1.12 | 15 июля 2025 года состоялся релиз системы виртуализации Oracle VirtualBox 7.1.12. Выпуск версии VirtualBox 7.1 произошёл в сентябре 2024 года. Предыдущая стабильная сборка проекта вышла в июне 2025 года.
Готовые установочные пакеты VirtualB... |
| 25.06.2025 | Вышел WinRAR 7.12 и RAR 7.12 | 24 июня 2025 года состоялся официальный релиз культового архиватора WinRAR 7.12 и RAR 7.12 от Евгения Рошаля и команды RARLAB. Сборки новой мажорной версии популярной программы для сжатия файлов доступны для Linux, macOS, Windows, Android и... |
| 16.05.2025 | Windows 11 Under Siege: A Glimpse into the Future of Cybersecurity | In the heart of Berlin, a digital battleground unfolds. The Pwn2Own event, hosted by Trend Micro's Zero Day Initiative, has become a stage for security researchers to showcase their skills. Windows 11, the latest operating system from Micro... |
| 16.05.2025 | Windows 11 hacked multiple times by security researchers at Pwn2Own Berlin 2025 | As part of its Zero Day Initiative (ZDI), Trend Micro is holding its first Pwn2Own event in Berlin. The three day event sees security researchers testing and breaching the security of various systems, including Windows 11 and Linux.
With bi... |
| 12.02.2025 | В тренде VM: под угрозой продукты Microsoft и Fortinet, а также архиватор 7-Zip | Хабр, привет! И вновь на связи я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center и дежурный по самым опасным уязвимостям месяца. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уяз... |
| 23.01.2025 | 7-Zip users need to take action right now to address a serious security flaw | If you are a 7-Zip user, you need to be aware of a serious Mark-of-the-Web bypass vulnerability. The security hole is not new, having been reported way back in October 2024, but details have only just been released about it, and a fix has o... |
| 22.01.2025 | 7-Zip исправила ошибку обхода предупреждений безопасности Windows MoTW | В архиваторе файлов 7-Zip исправили критическую уязвимость, которая позволяла злоумышленникам обходить функцию безопасности Windows Mark of the Web (MotW) и выполнять код на компьютерах пользователей при извлечении вредоносных файлов из вло... |
| 10.12.2024 | Cybersecurity in November 2024: A Deep Dive into Critical Vulnerabilities | November 2024 has been a month of revelations in the cybersecurity landscape. As the leaves fell, so did the curtain on numerous vulnerabilities that threaten the digital realm. From critical exploits in firewalls to alarming flaws in popul... |
| 06.12.2024 | Топ самых интересных CVE за ноябрь 2024 года | ⚠ Внимание ⚠
Вся информация, представленная ниже, предназначена только для ознакомительных целей. Автор не несет ответственности за вред, который может быть причинен с помощью предоставленной им информации.
В этой подборке представлены самы... |
| 30.11.2024 | The Cybersecurity Battle: Metrics and Vulnerabilities in the Digital Age | In the realm of cybersecurity, the stakes are high. Every day, organizations face threats that can cripple their operations. Understanding these threats is like navigating a treacherous sea. To stay afloat, businesses must harness the power... |
| 30.11.2024 | В WinRAR сообщили, что в месяц пользователи покупают около 10 тыс. лицензий на архиватор | В конце ноября 2024 года представитель команды WinRAR сообщил, что в месяц пользователи покупают около 10 тыс. лицензий на популярный архиватор.
Примечательно, что SMM-специалист WinRAR старается писать слова благодарности под каждый твит в... |
| 28.11.2024 | Пентест для самых маленьких на примере WinRAR | Эта статья предназначена для ИТ-специалистов, специалистов по информационной безопасности и всех, кто интересуется тематикой. Прочитав её, вы узнаете, как атакующий может использовать уязвимости популярного ПО для компрометации инфраструкту... |
| 11.11.2024 | Security Week 2446: исследование троянской программы SteelFox | Метод распространения вредоносного ПО вместе с утилитами для взлома легитимных программ уверенно можно назвать таким же старым, как и сеть Интернет. Это не значит, что данный прием не работает. В свежем исследовании специалисты «Лаборатории... |
| 17.10.2024 | Анализ уязвимости CVE-2024-38227 в Microsoft SharePoint | 10 сентября компания Microsoft выпустила очередную подборку обновлений, устранив 79 уязвимостей в различных продуктах. Наше внимание привлекли патчи для Microsoft SharePoint — обширной системы с функциями управления сайтами (content managem... |
| 11.09.2024 | Топ опасных уязвимости августа: под угрозой Microsoft Windows и сайты на WordPress | Хабр, привет! Я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уязвимостях из баз и бюллетеней безопасности вендоров, социальных с... |
| 08.07.2024 | Cамые опасные уязвимости июня: от Windows, Linux и PHP до сетевых устройств, виртуализации и бэкапов | Хабр, привет! Я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уязвимостях из баз и бюллетеней безопасности вендоров, социальных... |
| 17.06.2024 | Как выбрать сертифицированную ОС на российском рынке. Часть 2 | Цикл статей в 3-х частях
Если все сертифицированные системы обеспечивают одни и те же функции по защите информации, то нет разницы, какую покупать? На этом вопросе закончилась первая часть цикла статей по данной теме.
Отвечая на него, скажу... |
| 28.05.2024 | Настоящий хоррор: кибербезопасность в автомобильной индустрии
Миллионы строк и тысячи ошибок
Проблема есть, масштаб неясен
Атаки с физическим доступом
Атаки через телематику
Атаки на приложения и плат... | Автопром сделал первый шаг в цифровую эпоху еще в 1967 году, когда в Германии выпустили Volkswagen Typ 3 с электронной системой впрыска D-Jetronic от Bosch. Сегодня же компьютерные системы управляют почти всеми функциями большинства авто — ... |
| 08.05.2024 | Трендовые уязвимости апреля: до пяти лет скрытой эксплуатации | Хабр, привет! Я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц анализируем информацию об уязвимостях из баз и бюллетеней безопасности вендоров, социальных... |
| 21.03.2024 | Tesla Rewards $200K, Brand-New Model 3 to Hackers Who Find Exploit on EVs | Joseph Henry, Tech Times 21 March 2024, 01:03 pm
Tesla, the renowned electric vehicle (EV) manufacturer, continues to prioritize cybersecurity through incentivizing white hat hackers.
Recently, the automaker rewarded the hackers $200,000 ca... |
| 28.02.2024 | Вышел WinRAR 7.0 и RAR 7.0 | 28 февраля 2024 года состоялся официальный релиз культового архиватора WinRAR 7.0 и RAR 7.0 от Евгения Рошаля и команды RARLAB. Сборки новой мажорной версии популярной программы для сжатия файлов доступны для Linux, macOS, Windows, Android ... |
| 09.10.2023 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — исправления для трех уязвимостей «нулевого дня» от Exim, уязвимость в графических драйверах Mali, критическая уязвимость «Looney Tunables», экстренное обновление для устранения двух уязвимостей от Microsoft и новая угроза ... |
| 06.10.2023 | Обновись сейчас! ТОП-5 самых опасных уязвимостей сентября | Обновись сейчас! ТОП-5 самых опасных уязвимостей сентября
В этой заметке расскажем о самых опасных уязвимостях сетевого периметра, которые мы в CyberOK отслеживали в сентябре 2023 года. Сегодня в ТОП-5:
Гонки на Битриксе (BDU:2023-05857);
Э... |
| 29.09.2023 | Critical vulnerabilities in Exim threaten over 250k email servers worldwide | Enlarge
Getty Images reader comments 98 with
Thousands of servers running the Exim mail transfer agent are vulnerable to potential attacks that exploit critical vulnerabilities, allowing remote execution of malicious code with little or no ... |
| 19.08.2023 | В WinRAR версии 6.23 устранена критическая уязвимость CVE-2023-40477, позволяющая запускать в системе вредоносный код | Разработчики из RARLAB выпустили WinRAR версии 6.23. В обновлении популярного архиватора устранена критическая уязвимость CVE-2023-40477, позволяющая злоумышленникам удалённо и незаметно для пользователя запускать в рабочей системе вредонос... |
| 19.08.2023 | Update WinRAR right now to patch high-severity security flaw | Users of the archiving utility WinRAR are being advised to update their software as soon as possible following the discovery of a serious Remote Code Execution vulnerability.
Tracked as CVE-2023-40477, the security flaw was discovered back ... |
| 18.08.2023 | Trend Micro ZDI Surpasses 1000 Published Advisories in 1H 2023 In Continued Commitment to Coordinated Disclosure | Security leader to announce critical Microsoft zero-days at Black Hat USA 2023
HONG KONG SAR – Media OutReach – 18 August 2023 – Trend Micro (TYO: 4704; TSE: 4704), a global cybersecurity leader, announced at Black Hat USA 2023 that its Zer... |
| 16.08.2023 | Взлом доступа к ядру Windows при помощи драйвера принтера | В этой статье приводятся подробности CVE-2023-21822 — уязвимости Use-After-Free (UAF) в win32kfull, которая может привести к повышению привилегий. Отчёт о баге отправлен в рамках программы ZDI, а позже она была пропатчена компанией Microsof... |
| 27.07.2023 | Уязвимость CVE-2023-22018 позволяет выполнить произвольный код в Oracle VirtualBox, устранено в версиях 7.0.10 и 6.1.46 | Профильный ресурс Zero Day Initiative сообщил об уязвимости CVE-2023-22018, которая позволяет удалённо выполнить произвольный код на виртуальных машинах на базе Oracle VirtualBox через сеанс на базе протокола RDP.
В некоторых конфигурациях ... |
| 22.06.2023 | Exploit emerges for Cisco VPN client vulnerability | A security researcher has published an exploit for a Cisco vulnerability that was patched earlier this month.
The vulnerability, CVE-2023-20178, is a privilege escalation bug.
In its advisory, Cisco explained that “a vulnerability in the cl... |
| 15.05.2023 | Trend Micro discloses vulnerabilities in enterprise products | Trend Micro has disclosed details of eight CVEs in its Mobile Security for Enterprise 9.8 product suite, three of which are rated critical severity.
Some of the bugs were discovered through the Zero Day Initiative (ZDI), while others were r... |
| 25.04.2023 | PaperCut says hackers are exploiting ‘critical’ security flaws in unpatched servers | Print management software maker PaperCut says attackers are exploiting a critical-rated security vulnerability to gain access to unpatched servers on customer networks.
PaperCut offers two print management products, PaperCut NG and PaperCut... |
| 28.03.2023 | Hackers could remotely turn off lights, honk, mess with Tesla’s infotainment system | Thanks to three vulnerabilities chained together, malicious hackers could remotely hack into a Tesla, turn off the lights, honk the horn, open the trunk, activate the windshield wipers and mess with the infotainment system, according to sec... |
| 27.03.2023 | Пентест корпоративной сети: о пользе своевременных патчей Microsoft AD | Сегодня поделюсь с вами историей из практики, которая наглядно покажет, к каким быстрым и катастрофическим последствиям может привести задержка с установкой патчей для серверного ПО.
В работе я нередко сталкиваюсь с уязвимостями, связанными... |
| 02.03.2023 | Обзор уязвимостей DACL | Автор статьи: Александр Колесников
Вирусный аналитик
В этой статье рассмотрим последние уявзимости, которые были найдены за последние несколько лет. Основной критерий отбора уязвимостей — работа с DACL, что можно делать с системой, если под... |
| 14.02.2023 | Эксплойтинг браузера Chrome, часть 2: знакомство с Ignition, Sparkplug и компиляцией JIT в TurboFan
Модель безопасности Chrome
Интерпретатор Ignition
Sparkplug
TurboFan
Стандартные оптимизации
Р... | В моём предыдущем посте мы впервые погрузились в мир эксплойтинга браузеров, рассмотрев несколько сложных тем, которые были необходимы для освоения фундаментальных знаний. В основном мы изучили внутреннюю работу JavaScript и V8, разобравшис... |
| 18.01.2023 | More than 4,400 Sophos firewall servers remain vulnerable to critical exploits | Enlarge
Getty Images reader comments 26 with 0 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
More than 4,400 Internet-exposed servers are running versions of the Sophos Firewall that’s vulnerable ... |
| 18.01.2023 | About 6% of Internet-Facing Sophos Firewalls Are Exposed to Critical Exploit, Expert Warns | Joseph Henry, Tech Times 18 January 2023, 03:01 am
Hackers might have deployed a critical exploit to hit more than 4,400 servers which have Sophos Firewall, according to a cybersecurity expert.
The report says that cybercriminals might have... |
| 18.01.2023 | Over 4,000 Sophos firewall servers still vulnerable to code injection vulnerability | Over 4,000 Sophos firewall devices exposed to internet are vulnerable to a critical vulnerability that enables hackers to run malicious code on the target device.
This code injection vulnerability, tracked as CVE-2022-3236, was disclosed an... |
| 14.12.2022 | Microsoft's last Patch Tuesday of 2022 addresses two zero-days | Two of the 49 security vulnerabilities patched this month are zero-days, one being actively exploited in attacks.
The second was publicly disclosed, but not actively used.
Six security holes Microsoft has plugged are classified as 'Critical... |
| 14.09.2022 | PSA: Update Windows Immediately | Microsoft has released updates to fix a zero-day vulnerability impacting all versions of Windows, from Windows 7 to Windows 11.
According to Microsoft, the bug allows a bad actor to escalate privileges related to the Windows Common Log File... |
| 14.09.2022 | Microsoft patches a new zero-day affecting all versions of Windows | Microsoft has released security fixes for a zero-day vulnerability affecting all supported versions of Windows that has been exploited in real-world attacks.
The zero-day bug, tracked as CVE-2022-37969, is described as an elevation of privi... |
| 14.09.2022 | New Microsoft Windows Zero-Day Attack Confirmed: Update Now | |
| 06.06.2022 | Аппаратный взлом | Эта статья предназначается для всех, кто имеет опыт в разработке *nix/ПО/эксплойтов, но не обладает или почти не обладает знаниями оборудования/электроники! Хоть мы и не будем рассматривать все подробности простых схем (для этого есть множе... |
| 22.05.2022 | Firefox Browser Hacked In 8 Seconds Using 2 Critical Security Flaws | |
| 20.05.2022 | В рамках Pwn2Own хакеры нашли уязвимости в Microsoft Teams и Windows 11 на 800 тыс. долларов | Команды хакеров за первый день соревнования Pwn2Own Vancouver 2022 заработали 800 тыс. долларов на уязвимостях, найденных в продуктах компании Microsoft. Отмечается, что ошибки были найдены в Microsoft Teams и Windows 11.
По данным журналис... |
| 01.03.2022 | Топ 10 самых интересных CVE за февраль 2022 года | ДИСКЛЕЙМЕР!
Внимание! Вся представленная информация предназначена для ознакомительного изучения. Автор не несет никакой ответственности за причиненной вред с использованием изложенной информации.
Заканчивается второй месяц 2022 года, пора п... |
| 27.01.2022 | Defending the Supply Chain: Why the DDS Protocol is Critical in Industrial and Software Systems | By measuring the exposure of DDS services, in one month we found 643 distinct public-facing DDS services in 34 countries affecting 100 organizations via 89 internet service providers (ISPs). Of the DDS implementations by seven distinct vend... |
| 15.12.2021 | Microsoft Releases Patches For Zero-Day Exploits, Remote Code Execution Vulnerabilities, and More | Joen Coronel, Tech Times 15 December 2021, 01:12 am
(Photo : John Schnobrich from Unsplash) Microsoft Security Patch For December 2021
Microsoft has addressed several fixes for zero-day flaws and other vulnerabilities on Tuesday, Dec. 14 fo... |
| 15.09.2021 | Trend Micro Incorporated : Analyzing The ForcedEntry Zero-Click iPhone Exploit Used By Pegasus | Citizen Lab has released a report on a new iPhone threat dubbed ForcedEntry. This zero-click exploit seems to be able to circumvent Apple's BlastDoor security, and allow attackers access to a device without user interaction.
By: Mickey Jin ... |
| 31.08.2021 | 'ProxyToken' bug allowed attackers to reconfigure Exchange mailboxes | Researchers have published technical details on a low-complexity attack against Microsoft's Exchange Server, which exploits a vulnerability that allows unauthenticated threat actors to - for example - copy all emails sent to a particular us... |
| 31.08.2021 | Новая уязвимость 'ProxyToken' в Microsoft Exchange позволяет атакующим изменять настройки почтовых ящиков | Стали известны подробности о теперь уже заделанной дыре в безопасности сервера Microsoft Exchange Server, которой могли воспользоваться атакующие для изменения настройки сервера, что вело к раскрытию персональных данных пользователей (PII).... |
| 16.07.2021 | New Windows 10 ‘Patch Tuesday’ Update Fixes 117 Security Flaws | 07/16 Update below. This post was originally published on July 15 |
| 09.06.2021 | Update your Windows 10 PC right now to protect yourself from six new zero-day exploits | Microsoft rolled out a new round of 50 security fixes for critical bugs affecting the Windows 10 OS and supported software this Tuesday, June 8th, including six zero-day vulnerabilities that are being actively exploited by hackers. Microsof... |
| 23.04.2021 | The Biden Administration’s Impending Executive Order on Software Security | Last year’s revelation of the infiltration of federal agency digital supply chains—via the information technology (IT) contractor SolarWinds—revealed gaping holes in America’s cyber defenses. The White House recently attributed this intrusi... |
| 13.04.2021 | TENABLE HOLDINGS, INC.
Tenable : Microsoft's April 2021 Patch Tuesday Addresses 108 CVEs (CVE-2021-28310) | Microsoft addresses 108 CVEs, including CVE-2021-28310 - which has reportedly been exploited in the wild - as well as four new remote code execution vulnerabilities in Microsoft Exchange.
19Critical
88Important
1Moderate
0Low
Microsoft patc... |
| 09.11.2020 | Hacked In 300 Seconds: iOS 14, Samsung Galaxy S20, Windows 10 | Chinese ethical hackers demonstrate just how quickly they can hack the biggest of targets. |
| 12.08.2020 | 0-days, a failed patch, and a backdoor threat. Update Tuesday highlights | Enlarge reader comments 80 with 47 posters participating, including story author
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Microsoft on Tuesday patched 120 vulnerabilities, two that are notable because they’re unde... |
| 25.05.2020 | 2020 tech conferences: Dates, locations, and which events are changing due to COVID-19 | Image: Getty Images/iStockphoto
2020 is here, and with it are all the usual tech conferences and events. If you’re a tech professional who travels for business, check out this list of events–you’re sure to find something that suits your spe... |
| 23.05.2020 | Windows Security Alert: Core System File Zero-Days Confirmed Unpatched | Four unpatched Windows zero-day vulnerabilities have been disclosed just days after monthly ... [+] Microsoft security updatesGetty |
| 03.04.2020 | Apple Paid former Amazon Web Services Security Engineer big bucks to Successfully Hack the iPhone 11 Camera
Categories
Search | Ethical hackers, those security researchers who put their hacking talents to use in helping secure the products and services they break, can make big bucks. Work from home elite hackers participating in the recent virtual PWN2OWN event earn... |
| 23.03.2020 | MALWARE ALERT! Do Not Open Email From World Health Oragnization! | Christine Roger, Tech Times 23 March 2020, 05:03 am
It is not a surprise or a coincidence that every time there is a major news event happening in the world, scammers are targeting and preying on the public to spread malware. This time thes... |
| 12.01.2020 | Contest offers up a free Tesla and nearly $1 million to anyone who can hack a Tesla Model 3 | A few years ago, a Korean researcher named Jung Hoon Lee carried out a Google Chrome exploit at the annual Pwn2Own hacking competition and walked away with $110,000 for just a few minutes worth of work. At the time, the prize was the bigges... |
| 09.11.2019 | Two security researchers earned $60,000 for hacking an Amazon Echo | Two security researchers have been crowned the top hackers in this year’s Pwn2Own hacking contest after developing and testing several high profile exploits, including an attack against an Amazon Echo.
Amat Cama and Richard Zhu, who make up... |
| 05.09.2019 | Zero-day privilege escalation disclosed for Android | Enlarge
portal gda / Flickr reader comments 84 with 47 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Researchers have disclosed a zero-day vulnerability in the Android operating system that gives ... |
| 24.07.2019 | How to Better Defend Against Cyber Threats | 2019 is half over, and cybercriminals are on the prowl. As internet, mobile, and IoT technologies become more pervasive, the vulnerable points that hackers can target have increased. Companies can’t simply patch these vulnerabilities and re... |
| 24.05.2019 | How microsegmentation can deliver zero trust security [Q&A] | With a never-ending supply of new security threats presenting themselves every day, it can be tough for IT departments to keep up.
While perimeter security continues to be important, the sheer volume of novel attacks means that, eventually,... |
| 23.03.2019 | Hackers conquer Tesla’s in-car web browser and win a Model 3 | A pair of security researchers dominated Pwn2Own, the annual high-profile hacking contest, taking home $375,000 in prizes including a Tesla Model 3 — their reward for successfully exposing a vulnerability in the electric vehicle’s infotainm... |
| 15.01.2019 | Tesla wants people to hack its Model 3 | By Sara Barker
Copywriter and Senior News Editor
Tue, 15th Jan 2019
#
Cartech
#
IT Automation
#
Microsoft
#
Virtualisation
#
Hacking
#
Tesla
FYI, this story is more than a year old
Tesla is offering white hat hackers what could be the chanc... |
| 15.01.2019 | Pwn2Own contest will pay $900,000 for hacks that exploit this Tesla | Enlarge
Tesla reader comments 93 with 59 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Pwn2Own has been the foremost hacking contest for more than a decade, with cash prizes paid for exploits that... |
| 18.07.2018 | Some vote-counting computers came with a critical flaw that could have let hackers access them | Photo by Ethan Miller/Getty Images
Advertisement
Some of the computers used for tabulating votes and programming voting machines that were sold between 2000 and 2006 included a serious vulnerability.
The computers, offered by the nation's t... |
| 19.03.2018 | Microsoft Launches Bounty Offer in Wake of Meltdown and Spectre | News Microsoft Launches Bounty Offer in Wake of Meltdown and Spectre By Kurt MackieMarch 19, 2018
Microsoft is offering security researchers cash rewards in exchange for their help in rooting out flaws like "Meltdown" and "Sp... |
| 19.03.2018 | Microsoft Launches Bounty Offer in Wake of Meltdown and Spectre | News Microsoft Launches Bounty Offer in Wake of Meltdown and Spectre By Kurt MackieMarch 19, 2018
Microsoft is offering security researchers cash rewards in exchange for their help in rooting out flaws like "Meltdown" and "Sp... |
| 02.11.2017 | The latest version of iOS 11 has already been hacked | iOS 11 is certainly a solid upgrade as it pertains to new features, but many folks who were quick to update to Apple’s next-gen OS soon began experiencing a wide array of frustrating performance issues. In fact, many are of the mind that iO... |
| 12.07.2017 | Microsoft kills 19 critical bugs | Microsoft has patched 19 critical security issues in its regular round of security updates for July 2017.
The patch bundle addresses 54 issues in total, several of which allow for remote code execution.
This includes a flaw in Windows searc... |
| 16.03.2017 | MacBook Pro Touch Bar: cool effects, worryingly easy to hack | Every year, skilled coders at the annual Pwn2Own hacking conference get to work and remind us that no piece of software is impervious from targeted attacks. Last year, for example, hackers at the conference managed to exploit all four major... |
| 13.02.2017 | Trend Micro TippingPoint, powered by XGen Security, first to infuse machine learning capabilities into its next-generation intrusion prevention system | Trend Micro (TYO: 4704; TSE: 4704), a global leader in cyber security solutions, yesterday announced the latest enhancements to its network defence solutions, leveraging the company's powerful XGen security.
Continuing its smart, optimised ... |
| 15.04.2016 | If you have QuickTime for Windows you need to uninstall it NOW | Apple’s QuickTime was popular years ago, particularly for anyone wanting to watch movie trailers on the web, but its time has long since passed. There’s really very little need to have it installed on your system these days.
Advertisement
B... |
| 15.04.2016 | Users urged to uninstall QuickTime for Windows after Apple ends support | Windows users are being urged to uninstall Apple's QuickTime media player immediately after the technology giant said it would no longer support the platform, despite two active vulnerabilities.
Security vendor Trend Micro today said it had... |
| 11.04.2016 | The 'Darth Vader' of Cyberwar Sold Services to Canada | Documents show the Canadian military paid thousands of dollars to one of the world's most infamous cyber security firms at least twice.
Although the military says the money is merely a subscription fee for emailed reports, online security s... |
| 23.07.2015 | Fully patched Internet Explorer for smartphones menaced by whopping 4 code-execution bugs (Updated) | CTRLF5 reader comments 92 with 53 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Researchers at an HP security division have publicly detailed four code-execution vulnerabilities that can be used t... |
| 28.04.2015 | No patch for remote code-execution bug in D-Link and Trendnet routers | reader comments 74 with 56 posters participating, including story author
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Home and small-office routers from manufacturers including Trendnet and D-Link are vulnerable to at... |
| 20.03.2015 | Your Favorite Browser Just Got Hacked, But Don’t Panic | How can I know what your “favorite browser” is? It doesn’t matter, really; if it’s any one of the four most popular browsers — Chrome, Internet Explorer, Firefox, or Safari — it’s just been successfully exploited.
This past week marked the ... |