Google said half of Android devices are unpatched and that percentage of potentially harmful apps on phones installed from all sources rose in 2016.
Cisco Patches Critical IOx Vulnerability
Cisco Systems patched a critical vulnerability that could give an attacker root privileges to software running on two of its IoT router models.
Mozilla Patches Pwn2Own Zero Day in Firefox
Mozilla patched a zero day uncovered at Pwn2Own in Firefox in 22 hours on Friday.
Code Execution Vulnerability Found in Libpurple IM Library
A severe vulnerability has been disclosed in libpurple, the library used in the development of a number of popular instant messaging clients, including Adium for the macOS platform.
Critical Moodle Vulnerability Could Lead to Server Compromise
A critical vulnerability in Moodle, an open source system deployed across hundreds of thousands of universities, could expose the server to compromise.
LastPass Fixes Three Password Theft Vulnerabilities
LastPass has fixed three bugs in the password manager discovered by Google research Tavis Ormandy in the last 24 hours.
SAP Vulnerability Puts Business Data at Risk for Thousands of Companies
Researchers at ERPScan today disclosed details and a proof-of-concept exploit for a SAP GUI remote code execution vulnerability patched last week.
St Jude case highlights ongoing divide over ‘responsible bugs disclosure’
Disclosing bugs and vulnerabilities is ‘the free market
Siemens Patches Insufficient Entropy Vulnerability in ICS Systems
German industrial giant Siemens has provided a firmware update addressing software vulnerabilities that are found in a popular line of its Desigo PX industrial control hardware.
Panasonic, IOActive Clash on Vulnerability Report
Panasonic Avionics has pushed back against research released Tuesday by IOActive disclosing vulnerabilities in in-flight entertainment systems.