Help Net Security
WordPress 2.8.6 security release
WordPress 2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges. If you have untrusted authors on your blog, …
Biggest website security weaknesses
WhiteHat Security released a report assembled from real-world website security data, is a high-level perspective on major website security issues that continue to compromise …
Spam evolution: September 2009
Spam in email traffic The amount of spam detected in email traffic averaged 86.3% in September 2009. A low of 83.3% was recorded on 18 September with a peak value of 91.3% …
Apple Safari 4.0.4 patches critical vulnerabilities
Safari 4.0.4 includes improvements to performance, stability, and security. ColorSync An integer overflow exists in the handling of images with an embedded color profile, …
Real-world data on software security initiatives
Cigital and Fortify Software released the Building Security In Maturity Model for Europe or “BSIMM Europe,” an application of the industry’s first-ever set …
Looking back at 2009 through SQL injection goggles
The earliest public mention I could find of SQL injection (“piggybacking SQL statements’ as the author put it) was from someone who called himself Rain Forest …
How to protect personal information
How do you know if your online activities are secure, or if trouble is lurking around the corner? IEEE has brought together its security expert members to evaluate the most …
Cybersecurity threats agencies face every day
CDW Government released its 2009 Federal Cybersecurity Report, which found that across Federal civilian and Department of Defense agencies, the number and severity of …
Breakdown of November Microsoft Patch Tuesday vulnerabilities
Qualys’ Richie Lai, vulnerability research director and Amol Sarwate, vulnerability labs manager, discuss this months Microsoft Patch Tuesday release.
Tracking Internet use and secure browsing
GFI Software released a new version of GFI WebMonitor that gives organizations control of the use of the Internet by employees in the workplace, performing both Internet …
International hacking ring caught in $9 million fraud
Three individuals from Russia, Ukraine and Moldova have been indicted by a federal grand jury on charges of hacking into a computer network operated by the credit card …
Microsoft patches critical Windows vulnerabilities
In today’s Patch Tuesday, Microsoft delivers 6 bulletins that fix 15 vulnerabilities targeting Windows and Office. Vulnerability in Web Services on Devices API Could …
Featured news
Resources
Don't miss
- Building the missing layers for an internet of agents
- What security leaders should watch for when companies buy or sell a business
- Malicious Rust packages targeted Web3 developers
- Max-severity vulnerability in React, Node.js patched, update ASAP (CVE-2025-55182)
- Smart grids are trying to modernize and attackers are treating it like an invitation