All posts in flaw
07 Dec, 2020
Cross Site Scripting, flaw, NAS, NAS Systems, patch, QNAP, remote code injection, Security News, Security Update, Vulnerabilities, Vulnerability, XSS
0

The high-severity cross-site scripting flaws could allow remote-code injection on QNAP NAS systems. QNAP Systems is warning of high-severity flaws that plague its top-selling network attached storage (NAS) devices. If exploited, the most severe of the flaws could allow attackers to remotely take over NAS devices. NAS devices are systems . . . Read more
20 Nov, 2020
Android, Apple, Facebook, flaw, google, Google Project Zero, messenger, mobile apps, mobile devices, Mobile Security, security bug, Security News, Spying, video calls, voice calls, Vulnerabilities, Vulnerability
0

The company patched a vulnerability that could connected video and audio calls without the knowledge of the person receiving them. Facebook has patched a significant flaw in the Android version of Facebook Messenger that could have allowed attackers to spy on users and potentially identify their surroundings without them knowing. . . . Read more
17 Nov, 2020
Apple, apps, Big Sur, desktop, Developers, firewall, flaw, macOS, Privacy, Security, Security News, software, vpn, Vulnerabilities, Vulnerability, Web Security
0

Attackers can exploit the feature and send people’s data directly to remote servers, posing a privacy and security risk, researchers said. Security researchers are blasting Apple for a feature in the latest Big Sur release of macOS that allows some Apple apps to bypasses content filters and VPNs. They say . . . Read more
11 Nov, 2020
chip level, CPU, CVE-2020-8694, CVE-2020-8695, CVE‑2020‑5992, flaw, Gaming, geforce, Geforce NOW, GPU, Hacks, hardware, high severity flaw, Intel, Nvidia, Platypus, Security News, security vulnerability, Side-channel attack, Vulnerabilities, Windows
0

Both Nvidia and Intel faced severe security issues this week – including a high-severity bug in Nvidia’s GeForce NOW. Nvidia is red-flagging a high-severity flaw in its GeForce NOW application software for Windows. An attacker on a local network can exploit the flaw in order to execute code or gain escalated . . . Read more
20 Oct, 2020
API, Bug Bounty, crowd-sourcing, flaw, google, malgregator, mobile app security, mobile apps, navigation, Peter Gasper, Privacy, Security News, security research, Vulnerabilities, Vulnerability, Waze
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.
04 Sep, 2020
Bug Bounty, flaw, Hacks, IIoT, IoT, Microsoft, patch, Patch management, Podcasts, public disclosure, PWN2OWN, Security News, Vulnerabilities, Vulnerability Disclosure, zdi, zero day initiative
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.
25 Aug, 2020
Apple, Attackers, browsers, Bug Bounty, flaw, Hackers, patch, Pawel Wylecial, Safari, Security News, Security Researchers, Vulnerabilities, Vulnerability, Web Security
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.
20 Aug, 2020
cve-2020-1530, cve-2020-1537, elevation of privilege, flaw, Microsoft, out of band update, patch, patch tuesday, security bug, Security News, Security Update, Vulnerabilities, Windows, Windows 10, Windows 7, Windows Remote Access, Windows Server 2008
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.
14 Aug, 2020
Bug, Bug Bounty, Data, direct messages, Facebook, flaw, Instagram, Privacy, Saugat Pokharel, Security News, security researcher, social media, Vulnerability
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.
13 Aug, 2020
app, Code, Cross Site Scripting, CVE-2020-12648, flaw, HTML, Javascript, poc, Security, Security News, tinyMCE, Vulnerabilities, Web Security, XSS
0

The administrator of your personal data will be Threatpost, Inc., 500 Unicorn Park, Woburn, MA 01801. Detailed information on the processing of personal data can be found in the privacy policy. In addition, you will find them in the message confirming the subscription to the newsletter.