GitHub Fixes RCE and 2FA Brute-Force Vulnerabilities

GitHub Fixes RCE and 2FA Brute-Force Vulnerabilities

The security holes have been reported as part of GitHub’s bug bounty program

Remote Code Execution Vulnerability Impacts Wikipedia and Other MediaWiki Sites

Remote Code Execution Vulnerability Impacts Wikipedia and Other MediaWiki Sites

The WikiMedia Foundation has rushed to address the security hole

Expert Finds Remote Code Execution Vulnerability in Yahoo Server – Video

Expert Finds Remote Code Execution Vulnerability in Yahoo Server – Video

Yahoo hasn’t determined if the flaw falls within the the bug bounty program, so the Hegazy's efforts remain unrewarded

Facebook Rewards Expert with $33,500 / €25,000 for Remote Code Execution Flaw

Facebook Rewards Expert with $33,500 / €25,000 for Remote Code Execution Flaw

This is the largest amount of money ever paid out by Facebook to a security researcher

Expert Finds Remote Code Execution Vulnerability on eBay – Video

Expert Finds Remote Code Execution Vulnerability on eBay – Video

eBay fixed the vulnerability three days after it was reported

Remote Code Execution Vulnerability Fixed in BlackBerry Link

Remote Code Execution Vulnerability Fixed in BlackBerry Link

Certain versions for Windows and Mac OS are affected

DHS Warns of Remote Code Execution Flaw in HP Insight Diagnostics

DHS Warns of Remote Code Execution Flaw in HP Insight Diagnostics

HP has been notified of the issue in April, but it still remains unfixed

Experts Identify Arbitrary Code Execution Flaw in IBM Notes

Experts Identify Arbitrary Code Execution Flaw in IBM Notes

IBM is preparing a fix for the vulnerability identified by n.runs researchers

RIM Fixes Remote Code Execution Flaws in BlackBerry Enterprise Server Components

RIM Fixes Remote Code Execution Flaws in BlackBerry Enterprise Server Components

Interim security updates and BlackBerry Enterprise Server 5.0.4 MR2 have been released

Zero-Day Vulnerability Uncovered in Symantec’s PGP Whole Disk Encryption

Zero-Day Vulnerability Uncovered in Symantec’s PGP Whole Disk Encryption

The company plans to address the issue sometime in early February

US-CERT Warns About 2-Year-Old Vulnerability in Adobe Shockwave Player

US-CERT Warns About 2-Year-Old Vulnerability in Adobe Shockwave Player

The company plans on fixing the issue only in February 2013

Drupal 7.18 and 6.28 Released to Address Security Vulnerabilities

Drupal 7.18 and 6.28 Released to Address Security Vulnerabilities

Users are advised to apply the updates immediately

PayPal Rewards Researcher with $5,000 for Finding Remote Code Execution Flaw

PayPal Rewards Researcher with $5,000 for Finding Remote Code Execution Flaw

Security expert Rafay Baloch has also been offered a position with the company

US-CERT Warns of Flaws in Symantec Products Caused by Legacy Decomposer

US-CERT Warns of Flaws in Symantec Products Caused by Legacy Decomposer

The list of affected products and known mitigation strategies has been provided

Nine Bulletins in Microsoft’s August 2012 Security Update, Five Critical

Nine Bulletins in Microsoft’s August 2012 Security Update, Five Critical

They patch issues in Windows, Internet Explorer, Office and other products

PHP-CGI Flaw from 2004 Leads to Remote Code Disclosure and Execution

PHP-CGI Flaw from 2004 Leads to Remote Code Disclosure and Execution

The details of the flaw mistakenly ended up online before PHP could issue a fix

Samba Releases Update to Fix "Root" Credential Remote Code Execution

Samba Releases Update to Fix "Root" Credential Remote Code Execution

Users who rely on older versions are advised to immediately update

 
Want more? Browse: