Prometei Botnet Adds New Twist to Exchange Server Attacks
Enterprise VulnerabilitiesFrom DHS/US-CERT's National Vulnerability Database
CVE-2021-25668PUBLISHED: 2021-04-22
A vulnerability has been identified in SCALANCE X200-4P IRT (All versions < 5.5.1), SCALANCE X201-3P IRT (All versions < 5.5.1), SCALANCE X201-3P IRT...
New CISA Advisories Warn of ICS Vulnerabilities
The vulnerabilities exist in Cscape control system application programming software and the Mitsubishi Electric GOT.The Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA) today issued ICS advisories for...
A botnet named after Prometheus is also exploiting Exchange Server flaws
Written by Sean Lyngaas Apr 22, 2021 |...
Encrypted chat app Signal alleges flaws in Cellebrite equipment
Encrypted chat app Signal suggested in a blog post published on Wednesday that products sold to law enforcement from Israeli surveillance provider Cellebrite can easily be sabotaged.Cellebrite DI Ltd,...
Name That Toon: Greetings, Earthlings
Enterprise VulnerabilitiesFrom DHS/US-CERT's National Vulnerability Database
CVE-2021-22540PUBLISHED: 2021-04-22Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The...
Improving the Vulnerability Reporting Process With 5 Steps
Follow these tips for an effective and positive experience for both the maintainer and external vulnerability reporter.Vulnerability reports come at open source project maintainers from all directions with varying...












