Wednesday, January 25, 2017

Cisco WebEx code execution hole – what you need to know

Google's Project Zero found a serious hole in Cisco's WebEx browser extension that is nearly but not yet fully fixed. Here's what to do.

from Cisco WebEx code execution hole – what you need to know

33c3, Mark van Cuijk’s ‘A World Without Blockchain’

Permalink

from 33c3, Mark van Cuijk’s ‘A World Without Blockchain’

VERT Threat Alert: Cisco WebEx Browser Extension Remote Code Execution

Vulnerability Description A vulnerability in the Cisco WebEx Browser extension for Chrome, Firefox, and Internet Explorer could be used to execute code on a victim system. It is trivial to exploit the vulnerability and sample exploit code has been released publicly. The vulnerability leverages command execution in the launch_meeting message via a message event, which […]… Read More

The post VERT Threat Alert: Cisco WebEx Browser Extension Remote Code Execution appeared first on The State of Security.



from VERT Threat Alert: Cisco WebEx Browser Extension Remote Code Execution

Do you use any of the worst passwords of 2016?

It is time to talk about passwords again. They are like the seatbelts of the security world. There are many more exciting security tools but few are as important to keeping you safe from the risks you encounter day to day. Splash Data recently released their list of the most common passwords from 2016 based […]

The post Do you use any of the worst passwords of 2016? appeared first on The Privacy Blog.



from Do you use any of the worst passwords of 2016?

Is the Internet leading us back to 1930s protectionism?

The mass market adoption of the Internet is now leading to 1930s protectionism not internationalisation

The post Is the Internet leading us back to 1930s protectionism? appeared first on When IT Meets Politics.



from Is the Internet leading us back to 1930s protectionism?

Opined

Mildly interesting opinion piece via CSM Passcode contributor Congressman Jim Langevin (D) of Rhode Island, d...

from Opined

Quick Integration of MISP and Cuckoo

With the number of attacks that we are facing today, defenders are looking for more and more IOC’s (“Indicator of Compromise) to feed their security solutions (firewalls, IDS, …). It becomes impossible to manage all those IOC’s manually and automation is the key. There are two main problems with this

[The post Quick Integration of MISP and Cuckoo has been first published on /dev/random]



from Quick Integration of MISP and Cuckoo