Remove weekly-update-69
article thumbnail

Weekly Update 69 (Boat Edition)

Troy Hunt

It's "the boat edition" of my weekly update and I apologise up front for the rocking motion, the occasional wind noise (I lost the fluffy bit off my smartLav mic ) and the gratuitous amount of sunshine and beach. Well, at least it's my last day in the sun for a couple of weeks so today I've gone to the sunniest place I know.

Internet 115
article thumbnail

Weekly Update 103

Troy Hunt

This week there's also a few random things ranging from online authenticity (the human kind), changes in Chrome 69 (there's some major visual security indicators gone), yet another spyware breach (just don't.), All that and more in this week's update, enjoy! Chrome 69 is. per day ??. Serverless to the max!

Spyware 114
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Microsoft took down 120 of 128 Trickbot servers in recent takedown

Security Affairs

Microsoft provided an update on its takedown efforts and announced a new wave of takedown actions against TrickBot. “We initially identified 69 servers around the world that were core to Trickbot’s operations, and we disabled 62 of them. elections. . elections. .

IoT 130
article thumbnail

Approximately 2000 Citrix NetScaler servers were backdoored in a massive campaign

Security Affairs

Cloud Software Group strongly urges affected customers of NetScaler ADC and NetScaler Gateway to install the relevant updated versions as soon as possible.” The Citrix Cloud Software Group is strongly urging affected customers to install the relevant updated versions as soon as possible. reads the report published by Citrix.

article thumbnail

Announcing State of Software Security v11: Open Source Edition

Veracode Security

Most libraries are never updated. In fact, 79 percent of the time, developers never update third-party libraries after including them in a codebase. What is preventing developers from updating vulnerable open source libraries? Lack of information can be a roadblock. Most open source security flaws require only minor fixes.

article thumbnail

Key Takeaways From State of Software Security v11: Open Source Edition

Veracode Security

This is likely attributable to the expanding capabilities of the built-in functionality in Python, with the built-in library asyncio receiving significant updates in 2016 and late 2018, and perhaps more importantly has only seen one CVE associated with it (CVE-2021-21330), in contrast to Twisted’s seven. But lack of information is a blocker.

article thumbnail

Key Takeaways for Developers From SOSS v11: Open Source Edition

Veracode Security

The majority of library vulnerabilities are fixable with minor updates It might surprise you that most vulnerabilities in third-party libraries are easy to fix with a minor update. But… …Most libraries are never updated at all. Or, there may not even be an update at all as is the case with number four.

Software 111