We have a new site. We're building it in the open. Spotted a bug or a UX gremlin? We welcome all feedback: ed@thestack.technology

Content Paint

vulnerabilities

106

A rat pokes its head through a cardboard box. the SpyNote malware is described as an AndroidOS RAT

China nexus group suspected as the attackers behind attacks

A meerkat sat on the ground. The Morphing Meerkat phishing platform uses fake, personalised email login pages to trick users

Phishing kits going to great lengths to personalise attacks

A person applies two plasters to an elbow. Veamm was criticised by security researchers for the patch used for its backup vulnerabilities

A CVSS rated 9.9 vulnerability needs an urgent fix - but is it sufficient?

VMware: Critical “VM escape” zero days exploited in wild

"There are no other meaningful workarounds that do not involve updating and restarting..."

Critical SonicWall SSLVPN authentication bypass exploited in the wild

Bug lets attackers to bypass even accounts with multi-factor authentication enabled.

Patch Tuesday: A “wormable” LDAP bug and two EOP zero days fixed

Lighter than last month, mercifully, but still some urgent fixes.

.NET bug being exploited in the wild

".NET Remoting is still around. Even where developers might not expect it such as in ASP.NET web applications, both on-premises and on Azure"

SonicWall zero day confirmed exploited in the wild

Affected devices “designed as an advanced secure access gateway for medium enterprises, multi-national corporations and managed security service providers (MSSPs.)”

Fortinet zero day confirmed. CVE allocated. Attackers tunnelling...

Authentication bypass to super admin. Gulp.

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.