Microsoft patches four zero-days, finally takes action against crimeware kernel drivers - Here's a brief reminder to do two things. The first is to patch. The second is to read up... https://nakedsecurity.sophos.com/2023/07/12/microsoft-patches-four-zero-days-finally-takes-action-against-crimeware-kernel-drivers/ #elevationofprivilege #securitybypass #vulnerability #patchtuesday #microsoft #eop
#eop #microsoft #patchtuesday #vulnerability #securitybypass #elevationofprivilege
Serious Security: Learning from curl’s latest bug update - Learn how to write plain-speaking and purposeful security advisories from one of the most... https://nakedsecurity.sophos.com/2022/05/12/serious-security-learning-from-curls-latest-bug-update/ #securitybypass #vulnerability #curl
#curl #vulnerability #securitybypass
Windows “PetitPotam” network attack – how to protect against it - A cute name but an annoying and potentially damaging attack. Here's what to do. https://nakedsecurity.sophos.com/2021/07/26/windows-petitpotam-network-attack-how-to-protect-against-it/ #securitybypass #vulnerability #petitpotam #microsoft #windows #efs
#efs #windows #microsoft #petitpotam #vulnerability #securitybypass
Bugs in Critical Infrastructure Gear Allow Sophisticated Cyberattacks - Security problems in Schneider Electric programmable logic controllers allow compromise of the har... https://threatpost.com/bugs-critical-infrastructure-gear-attacks/161164/ #criticalinfrastructureattacks #programmablelogiccontrollers #ecostruxuremachineexpert #securityvulnerabilities #criticalinfrastructure #operationaltechnology #schneiderelectric #vulnerabilities #securitybypass #trustwave #utilities #firmware #ot
#ot #firmware #utilities #trustwave #securitybypass #vulnerabilities #schneiderelectric #operationaltechnology #criticalinfrastructure #securityvulnerabilities #ecostruxuremachineexpert #programmablelogiccontrollers #criticalinfrastructureattacks
No password required! “Sign in with Apple” account takeover flaw patched - A bug bounty hunter found a way to login using "Sign in with Apple"... but without the part where ... more: https://nakedsecurity.sophos.com/2020/06/01/no-password-required-sign-in-with-apple-account-takeover-flaw-patched/ #responsibledisclosure #securitybypass #vulnerability #sign-in #apple
#apple #sign #vulnerability #securitybypass #responsibledisclosure