Content Paint

cybersecurity

Heroku's GitHub connection remains on ice after breach as customers fret, eye alternatives

Several weeks after a major security incident at Heroku, the company said this week it "will not be reconnecting to GitHub until we are certain that we can do so safely, which may take some time" -- as news of the early April breach continues to percolate slowly

"Dirty Pipe" Linux vulnerability now being exploited

Well a Metasploit module has been available for a while...

Teenage hackers breached T-Mobile, grabbed 30k repos

"Cloning 30k repos four times in 24 hours isn’t very normal..."

The Year of the Zero Day: A record 6 a month exploited in 2021

Vendor telemetry is improving...

Okta to directly manage third-party devices, modify customer support tools in wake of breach

Just two customers actually affected, but...

GitHub hacked, npm data stolen after 0auth tokens stolen in upstream breach

GitHub hacked after Heroku, Travis-CI 0auth tokens stolen in upstream attack

Five Cisco products vulnerable to a CVSS 10 auth bypass

Should customers start demanding more?

A million Microsoft machines exposed to a zero click, CVSS 9.8 bug

Over a million Microsoft machines appear potentially exposed to a wormable critical new vulnerability, CVE-2022-26809 in Microsoft's ubiquitous remote procedure call (RPC) runtime library. (RPC is as an inter-process communication mechanism for data exchange and functionality invocation in a different process -- a process which can be on

Hack-a-Sat 3 registrations open: Win hard cash for hacking a satellite

Hacking sandbox in space coming soon too. For now you get...

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.