AWS’ Inspector offers vulnerability management for Lambda serverless functions
Amazon Internet Companies has announced AWS Lambda serverless operate help for its automatic vulnerability administration service, Amazon Inspector, and a new automatic delicate info discovery capacity in its machine understanding security and privacy…
What is risk-based vulnerability management?
Check out the on-demand sessions from the Low-Code/No-Code Summit to learn how to successfully innovate and achieve efficiency by upskilling and scaling citizen developers. Watch now. Risk-based vulnerability management (VM) is the identification,…
Impact of Log4j vulnerability on GFI
A new 0-day vulnerability, formally known as CVE-2021-44228, was published on the NIST National Vulnerability Database on Friday, December 10. It is found in the Log4j Java library. Log4j is a popular open source logging library made by the Apache…
‘Dirty Pipe’ Linux vulnerability discovered
On Monday, a cybersecurity researcher released the details of a Linux vulnerability that allows an attacker to overwrite data in arbitrary read-only files. The vulnerability — CVE-2022-0847 — was discovered by Max Kellermann in April 2021,…
Operation EmailThief: Zero-day XSS vulnerability in Zimbra email platform revealed
Researchers have uncovered an active campaign exploiting a zero-day vulnerability in the Zimbra email platform. Zimbra is an email platform available under an open source license. According to the developer, the platform supports hundreds of millions of…
UK government security center, i100 publish NMAP scripts for vulnerability scanning
The UK’s National Cyber Security Center (NCSC) has released NMAP scripts to help defenders search for specific vulnerabilities in their networks. On January 25, the NCSC said the trial project is a joint effort between the cybersecurity guidance…
New cyber vulnerability poses ‘severe risk,’ DHS says
The vulnerability is linked to a commonly used piece of software called Log4j. December 13, 2021, 1:47 AM • 4 min read Share to FacebookShare to TwitterEmail this article Late Saturday, the Department of Homeland Security Cybersecurity and Infrastructure…
Intel Disables DirectX 12 On Older Processors Due To Security Vulnerability
Intel has disabled DirectX 12 API support in the latest graphics drivers for its Haswell processors because of a security vulnerability. Intel has disabled DirectX 12 API support in the latest graphics drivers for its 4th-generation Core processors…