Vendors/Products - Page 18
We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.
We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.
Mozilla is currently working on the next stable release of its popular Firefox web browser, version 59, which is expected to land in the second week of March with new privacy and security features.
For seven years, Xen virtualization software used by Amazon Web Services and other cloud computing providers has contained a vulnerability that allowed attackers to break out of their confined accounts and access extremely sensitive parts of the underlying operating system. The bug, which some researchers say is probably the worst ever to hit the open source project, was finally made public Thursday along with a patch.
We love Docker and containers. But, the more we use containers the more we worry exactly what it is we're running when we spin them up. So, Linux giant and cloud power Red Hat and Black Duck, a leader in automating securing and managing open-source software, are working together on establishing a secure and trusted model for containerized application delivery.
Adobe has patched a critical zero-day security flaw in Flash, which the company said was being used to launch "limited, targeted attacks." The emergency patch, which also fixed two other vulnerabilities, landed on Friday, sooner than the company's forecast of some time this week.
After a pair of very public disclosures in the last two weeks, Netgear published new firmware for vulnerabilities in its routers that have been publicly exploited.
Turnkey has improved SSL/TLS security. The net result is that TurnKey appliance's overall administrator tools, Webmin and Webshell, are now hidden behind stunnel using TLS. In addition, the three supported web servers used across appliances (Apache, LigHTTPd and Nginx) are now configured to use consistent hardened TLS cipher suite and settings. The Tomcat JavaServer also has hardened TLS settings.
Earlier this month, it was reported that hackers managed to breach the bug database of Mozilla. From here, the attackers accessed 185 non-public bugs for the popular Internet browser Firefox, 53 of which were categorized as
Cybersecurity firm FireEye has defended the decision to place an injunction against a researcher as the only way to protect trade secrets. Last week, reports surfaced suggesting the cyberforensics firm attempted to prevent the public disclosure of security vulnerabilities discovered within the firm's suite of software.
A spat between two security companies shows just how sensitive reporting software vulnerabilities can be, particularly when it involves a popular product. The kerfuffle between FireEye and ERNW, a consultancy in Germany, started after an ERNW researcher found five software flaws in FireEye's Malware Protection System (MPS) earlier this year.
On Sunday, Kristian Erik Hermansen disclosed an unauthorized file disclosure vulnerability in FireEye's core product. The zero-day disclosure quickly generated public attention, as did the discussion around three other vulnerabilities that haven't been published and the $10,000 USD price tag on the flaws.
Due to its vulnerability to hacks and exploits, many of the Windows and Linux users describe Windows as a very unsafe operating system. However, one Israeli security organization is claiming to work towards to change the impression of Microsoft
Verizon will introduce a virtualized firewall service across its global network later this month, part of its move into software-defined networking. The aim is to help businesses such as manufacturers or retailers, who may be running networks in far-flung places, to have better security when connecting their applications to the corporate network, said Shawn Hakl, head of network platforms and managed services for Verizon Enterprise Solutions.
Google has patched 29 security flaws, many of them deemed critical, in the latest update to the Chrome browser. On Tuesday, Google pushed Chrome 45 for Windows, Mac and Linux to the stable channel and for public release. As part of the Chrome 45.0.2454.85 update, 29 bugs have been fixed, and a number of improvements have been made.
Tuesday turned out to be a busy day for browser makers. The three major vendors in the space
As the zero days in Adobe Flash continue to pile up, Mozilla has taken the unusual step of disabling by default all versions of Flash in Firefox.
Google has reduced spam reaching inboxes to a fraction of a percent, but in the process sometimes misclassifies bulk-mailed messages like monthly statements and ticket receipts. It
Mozilla has rolled out a new version of its Firefox browser, an update that includes patches for four critical security vulnerabilities and several less-severe bugs. IN all, Firefox 39 patches 13 vulnerabilities, including two high-risk bugs and six moderate-level ones. The most dangerous vulnerabilities, however, include a pair of use-after-free bugs in one part of the browser and another in a separate component, as well as a number of memory corruption flaws.
A fix has been released for a vulnerability in a widely used piece of code in Android devices, which could cause apps to crash or display unwanted dialog boxes.
A security flaw in a common Unix software component remains unpatched in one of the most popular Linux distributions, more than a year after an official fix was published.
Shortly after this article was posted, WordPress released version 4.2.1, flagging it as a critical update. Website owners are encouraged to update immediately, and automatic updates have started to roll out. More information is here.