Critical Flaw Patched in Progress File Transfer Server
Progress Software has fixed a critical pre-authentication remote code execution bug in its WS_FTP Server product.
He is one of the co-founders of Threatpost and previously wrote for TechTarget and eWeek, when magazines were still a thing that existed. Dennis enjoys finding the stories behind the headlines and digging into the motivations and thinking of both defenders and attackers. His work has appeared in The Boston Globe, The Improper Bostonian, Harvard Business School’s Working Knowledge, and most of his kids’ English papers.
Progress Software has fixed a critical pre-authentication remote code execution bug in its WS_FTP Server product.
U.S. authorities warn that cooperative efforts between state-sponsored actors and cybercrime groups make life more difficult...
A new attack group named ShroudedSnooper is targeting telecom providers in Middle Eastern countries with custom tools called...
Three separate campaigns are targeting the critical flaw (CVE-2023-3519) in Citris NetScaler ADC and Gateway devices.
Chris Kirsch, CEO of runZero, joins Dennis Fisher to talk about the problem of trying to secure what you don't know you have, asset management, and his history in the original crypto war.
An analysis by CISA of commonly exploited vulnerabilities in 2022 shows that most of the targeted flaws are at least a year old and many are much older than that.
Rapid7 researchers have found a new flaw (CVE-2023-35082) in Ivanti MobileIron Core 11.2 and earlier.
The number of zero days detected in the wild in 2022 dropped 40 percent from the previous year, but researchers say that doesn't mean we're getting better at security.