Krebs on Security

Krebs on Security: A Developer’s Perspective Krebs on Security: A Developer’s Perspective Krebs on Security serves as a critical resource in the ever-evolving landscape of cyber threats, providing developers with…

Security Risk Advisors joins the Microsoft Intelligent Security Association

Security Risk Advisors (SRA) has officially joined the Microsoft Intelligent Security Association (MISA), an influential ecosystem comprising independent software vendors (ISVs) and managed security service providers (MSSPs). This partnership highlights…

CISA adds 2020 Oracle vulnerability to KEV: We hope you…

CISA Incorporates 2020 Oracle Vulnerability into KEV: Implications for Developers The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently added the 2020 Oracle vulnerability, identified as CVE-2020-2883, to its…

CISA Flags Critical Flaws in Mitel and Oracle Systems Amid Active Exploitation

CISA Flags Critical Flaws in Mitel and Oracle Systems Amid Active Exploitation CISA Flags Critical Flaws in Mitel and Oracle Systems Amid Active Exploitation The Cybersecurity and Infrastructure Security Agency…

PHP Servers Vulnerability Exploited To Inject PacketCrypt Cryptocurrency Miner

PHP Servers Vulnerability Exploited To Inject PacketCrypt Cryptocurrency Miner Recent reports have surfaced regarding a vulnerability in PHP servers that has been actively exploited to deploy the PacketCrypt cryptocurrency mining…

Chrome 131, Firefox 134 Updates Patch High-Severity Vulnerabilities

Chrome 131 and Firefox 134 Updates: A Focus on High-Severity Vulnerabilities This week, both Chrome and Firefox have rolled out significant updates—version 131 for Chrome and version 134 for Firefox—addressing…

Critical Mitel, Oracle flaws find active exploitation, CISA urges patching

The Cybersecurity and Infrastructure Security Agency (CISA) has reported critical vulnerabilities in Mitel and Oracle products that are currently under active exploitation. Both sets of flaws have now been added…

Dell Update Package Framework Vulnerability Let Attackers Escalate Privileges

Dell Update Package Framework Vulnerability: Implications for Developers The recent vulnerability discovered in Dell’s Update Package Framework has raised significant concerns in the cybersecurity community, particularly for developers responsible for…

CVE Partnership with Thales Group as a Designated Root for Vulnerability Management

The Common Vulnerabilities and Exposures (CVE®) Program has announced an important enhancement of its partnership with Thales Group, aimed at bolstering the system for managing and assigning CVE Identifiers (CVE…

Ivanti Warns of New Zero-Day Attacks Hitting Connect Secure Product

With the rise of cyber threats, developers must maintain vigilance in their security practices. Ivanti has recently reported that its Connect Secure product line is vulnerable to a new zero-day…