patches - News, Features, and Slideshows

News

  • Oracle releases emergency fix for Java zero-day exploit

    Oracle released emergency patches for Java on Monday to address two critical vulnerabilities, one of which is actively being exploited by hackers in targeted attacks.

    Written by Lucian Constantin04 March 13 22:42
  • Facebook said to fix OAuth-based account hijacking flaw

    Facebook has patched a serious vulnerability that could have allowed attackers to easily gain access to private user account data and control accounts by tricking users into opening specifically crafted links, a Web application security researcher said late Thursday.

    Written by Lucian Constantin22 Feb. 13 15:14
  • Adobe releases emergency patches for Reader and Acrobat

    Adobe released emergency patches for Adobe Reader and Acrobat 11, 10 and 9 on Wednesday that address two critical vulnerabilities being actively exploited by attackers.

    Written by Lucian Constantin20 Feb. 13 19:06
  • Oracle releases new Java fixes, speeds up patching cycle

    Oracle released new Java security updates on Tuesday and announced plans to accelerate the release of future Java patches following recent attacks that have infected computers with malware by exploiting zero-day vulnerabilities in Java browser plug-ins.

    Written by Lucian Constantin20 Feb. 13 11:17
  • Microsoft monthly patches touch Exchange, Windows, Explorer

    System administrators overseeing Microsoft Exchange deployments should take a close look at Microsoft's latest round of security patches. In addition to covering Windows and Internet Explorer, Microsoft's latest monthly batch of patches covers the widely used Exchange Server, both the Exchange Server 2007 and Exchange Server 2010 editions.

    Written by Joab Jackson12 Feb. 13 20:05
  • Oracle to release yet more patches for Java

    Oracle isn't done releasing patches for Java SE this month, as another batch will arrive Feb. 19, according to a company blog post.

    Written by Chris Kanaracus08 Feb. 13 20:06
  • Barracuda Networks takes further steps to close backdoor access to its network gear

    Barracuda Networks released a new update on Monday to further mitigate a security issue that could have allowed attackers to gain unauthorized access to some of its network security appliances through backdoor accounts originally intended for remote support. The company apologized to customers for its design decisions that led to this situation and promised to look into additional ways to strengthen the remote support functionality.

    Written by Lucian Constantin06 Feb. 13 21:34
  • Securing SCADA systems still a piecemeal affair

    ReVuln, a Malta-based security startup that specializes in vulnerability research, is working on a product that could allow companies to protect their SCADA (supervisory control and data acquisition) software installations against entire classes of vulnerabilities. In the meantime, the company is developing and selling custom patches for SCADA software vulnerabilities that have yet to be addressed by the vendors.

    Written by Lucian Constantin23 Jan. 13 16:15
  • Foxit patches critical vulnerability in PDF viewer browser plug-in

    Foxit released version 5.4.5 of its Foxit Reader PDF viewer plug-in on Thursday in order to address a critical remote code execution vulnerability that could have allowed attackers to compromise computers running previous versions of the software.

    Written by Lucian Constantin17 Jan. 13 11:58
[]