Software bugs put nearly 100 million health records at risk of exposure

The slew of vulnerabilities – since patched – were found without the use of automated testing tools. A team of seven researchers has discovered more than 20 security vulnerabilities in OpenEMR, an open-sourceapplication used worldwide for the electronic management of the medical records of almost 100 million people. In keeping with the principles of responsible disclosure, … More Software bugs put nearly 100 million health records at risk of exposure

Bluetooth bug could expose devices to snoopers

Patches have already been released or are expected to see the light of day soon. Researchers have discovered a flaw in some Bluetooth implementations that could allow an attacker to intercept or tamper with data exchanged between two vulnerable devices. The cryptographic bug, tracked as CVE-2018-5383, has been identified by scientists at the Israel Institute of … More Bluetooth bug could expose devices to snoopers

Microsoft Edge bug could be exploited to spill your emails to malicious sites

Since a patch for the flaw has already been released, users are well advised to make sure that they’re running the browser’s most recent version. A Google developer has discovered a high-severity loophole that affected the Microsoft Edge web browser and, less so, Mozilla Firefox, and that could provide an attacker with access to the … More Microsoft Edge bug could be exploited to spill your emails to malicious sites

Firms using WebEx at risk of poisoned Flash attacks

Companies should check they are running latest version of WebEx, and beware attacks via the road less travelled. A critical vulnerability has been found in Cisco’s WebEx conferencing software – widely used by businesses – that could be exploited by an attacker to spread malware directly to other meeting participants, tricking them into executing it … More Firms using WebEx at risk of poisoned Flash attacks

Vulnerabilities reached a historic peak in 2017

Vulnerabilities are one of the elements frequently identified in security incidents and, together with other threats like exploits and malware, constitute a latent risk. In 2017, the number of vulnerabilities reported reached its historic peak, smashing records set in previous years. Not only that, but the number of vulnerabilities identified as critical also reached a peak in the … More Vulnerabilities reached a historic peak in 2017