+44 (0)203 88 020 88

Vulnerabilities

Microsoft Patch Six Zero-Day Vulnerabilities

This week was November’s patch Tuesday, where Microsoft issued a security update that resolved 68 different vulnerabilities, 6 of which were actively exploited zero-day flaws. A total of 11 vulnerabilities that have been patched this week have been given a critical severity rating, due to a possible exploit leading to elevation of privileges, spoofing, or […]

Microsoft Patch Six Zero-Day Vulnerabilities Read More »

OpenSSL High Severity Vulnerabilities Patched

Two new high severity vulnerabilities have been identified in the OpenSSL Software Foundation cryptographic library version 3.0.0. This open-source library is used to encrypt HTTPS connections and other communication channels, so has been relied upon by many as a security measure. These new vulnerabilities could cause denial of service or possible remote code execution to

OpenSSL High Severity Vulnerabilities Patched Read More »

16 Malicious Android Apps on Google Play Store

A range of malicious adware apps have been found on the Google Play store by security researchers at  McAfee. It is estimated that 20 million installations across 16 different apps occurred before they were identified and subsequently removed from Google Play. These apps contained clicker malware, which runs in the background without the user’s knowledge.

16 Malicious Android Apps on Google Play Store Read More »

Windows Zero-Day Flaw Gets Free Unofficial Patch

An actively exploited zero-day flaw that prevents Windows from properly identifying potentially malicious documents by flagging them as downloaded from the web has been given an unofficial patch. The security issue was first brought to Microsoft’s attention by a security researcher 3 month ago, however no official update to correct this has been released. Security

Windows Zero-Day Flaw Gets Free Unofficial Patch Read More »

Fortinet Critical Authentication Bypass Vulnerability

A communication has been sent by Fortinet to their customers confirming a critical severity vulnerability in FortiOS and FortiProxy. The global cyber security company have warned administrators to update FortiGate firewalls and FortiProxy web proxies to the latest available versions to address this vulnerability. Although a full security advisory has not been released yet for

Fortinet Critical Authentication Bypass Vulnerability Read More »

Microsoft Exchange Server Vulnerabilities Exploited

Two high severity zero-day vulnerabilities for the Microsoft Exchange Server have been found to be exploited in the wild. An elevation of privilege vulnerability, and a remote code execution vulnerability have been used by attackers to gain access into victim’s systems. The Cybersecurity and Infrastructure Security Agency (CISA) recently added these two flaws to their

Microsoft Exchange Server Vulnerabilities Exploited Read More »

Scroll to Top