Security news that informs and inspires

Archive

94 results for tag Vulnerability:

GitHub Expands Scanning to Find Security Flaws in Code

The goal for secure software isn’t to never have vulnerabilities, but to be able to find vulnerabilities as soon as possible so that they can be fixed. GitHub has expanded its code scanning capabilities to make it easier for developers to identify flaws in projects that are managed on its platform.

Open Source, Github, Vulnerability, Appdev

Cisco Fixes Kerberos Authentication Bypass Bug in ASA Software

Cisco has patched a dangerous flaw in its Adaptive Security Appliance Software that could allow an attacker to bypass authentication when Kerberos is enabled.

Vulnerability

Fortinet Products Used Hardcoded Encryption Key

Several Fortinet products had a hardcoded encryption key that could allow for passive monitoring of user traffic.

Vulnerability

Open Source Flan Scan Combines Nmap with Vulnerability Scanning

Cloudflare has open sourced Flan Scan, a “lightweight” network vulnerability scanner that it uses in-house to help identify vulnerable services running in its vast network. Early reactions suggest that it shouldn’t be the sole vulnerability management tool being used in the network.

Vulnerability, Vulnerability Assessment, Network Security

Audit Uncovers Critical Flaw in iTerm2

A Mozilla-funded security audit of the iTerm2 terminal emulator for macOS found a critical remote-code execution bug.

Vulnerability