Tag Archives: flaw

Security researcher earns plaudits after discovering Yandex SSRF flaw

Russian language search engine has secured its backend infrastructure Russian search and internet services giant Yandex has resolved a potentially serious server-side request forgery (SSRF) vulnerability discovered by Egyptian security researcher Momen Ali. Ali (AKA ‘theCyberGuy’) discovered the vulnerability after a systematic search of Yandex’s infrastructure. They reported the vulnerability through Yandex’s bug bounty, earning a spot in the… Source link

Read More »

Log4j: Why this massive security flaw is impacting nearly all of the internet – Yahoo Finance

A major cybersecurity vulnerability is impacting nearly all of the internet, sending everything from financial institutions to government entities scrambling to patch their systems, before cybercriminals and nation states can launch cyberattacks. Known as the Log4j vulnerability, the flaw impacts a piece of open-source logging software that allows developers to understand how their programs function. The idea is to help companies understand potential bugs or performance issues in their own… Source link

Read More »

UPDATE 1-BlackBerry software flaw could impact cars, medical devices

(Updates with BlackBerry’s statement) Aug 17 (Reuters) – A cybersecurity flaw in a software designed by BlackBerry Ltd could put at risk cars and medical equipment that use it and expose highly sensitive systems to attackers, the U.S. drugs regulator and a federal agency said on Tuesday. The warning came after the Canadian company disclosed https://support.blackberry.com/kb/articleDetail?articleNumber=000082334 that its QNX Real Time Operating System (QNX RTOS) has a vulnerability that could… Source link

Read More »

Google rushes out fix for another Chrome zero-day flaw

Written by Sean Lyngaas Mar 15, 2021 | CYBERSCOOP Google has released an urgent software update for a flaw in the popular Chrome browser amid reports that an exploit for the bug is already available.  The vulnerability is in Blink, the feature that Chrome uses to convert HTML code to web pages, and could allow an attacker to execute code remotely or conduct a denial-of-service attack on a machine,

Read More »