Act Now to Prepare for New NCUA Cyber Incident Reporting Requirements

We recently [discussed the new SEC rule]() requiring all registered companies to report material cyber incidents within four (4) days. Now the [**National Credit Union Administration**]() (NCUA)1 has ...

Continue Reading
New “Whiffy Recon” Malware Triangulates Infected Device Location via Wi-Fi Every Minute

[![Location Malware](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The SmokeLoader malware is being used to deliver a new Wi-Fi ...

Continue Reading
SugarCRM 12.2.0 Bean Manipulation Vulnerability

Post ContentRead More ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CrafterCMS 4.0.2 Cross Site Scripting Vulnerability

Post ContentRead More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

SugarCRM 12.2.0 PHP Object Injection Vulnerability

Post ContentRead More ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

SugarCRM 12.2.0 SQL Injection Vulnerability

Post ContentRead More ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-32559

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
CVE-2023-32559

A privilege escalation vulnerability exists in the experimental policy mechanism in all active release lines: 16.x, 18.x and, 20.x. The use of the deprecated API `process.binding()` can bypass the pol ...

Continue Reading

Back to Main

Subscribe for the latest news: