Security news that informs and inspires

2376 articles by

Microsoft Teams Flaw Allowed Easy Remote Code Execution

A flaw in Microsoft Teams allowed remote code execution by sending one message to a victim.

Microsoft

NSA Warns Russian Attackers Are Exploiting VMware Flaw

The NSA warned that Russian state attackers are targeting a recent VMware vulnerability, which NSA discovered and disclosed.

Vmware, Vulnerability

Decipher Podcast: Ryan Noon and Abhishek Agrawal

Ryan Noon and Abhishek Agrawal, founders of Material Security, join Dennis Fisher to talk about fixing the email security problem and approaching security challenges with diverse mindsets.

Podcast

New TrickBot Module Targets UEFI Firmware

The TrickBot trojan now includes a capability to scan for vulnerable UEFI firmware implementations and could soon exploit them.

Trickbot

Software Supply Chain Woes Afflict DockerHub, Too

Threat analysis firm Prevasio scanned the entire DockerHub and found that 51 percent of all container images had at least one critical vulnerability and 13 percent had at least one high-severity vulnerability. Researchers also identified 6,433 images that were malicious or potentially harmful.

Containers, Docker