NIST’s Decision to Defer Older CVEs

NIST’s Decision to Defer Older CVEs

The National Institute of Standards and Technology (NIST) recently implemented a notable policy within its National Vulnerability Database (NVD). This policy involves placing a "deferred" status on Common Vulnerabilities and…

Python🐍 Package Probe Tool

A tool has been launched to scans Python environments for packages with known vulnerabilities dubbed 'Pip-audit’ leverages the PyPI JSON API to compare dependencies against the Python Packaging Advisory Database…

Qualys Ransomware Risk Assesment

Qualys, a leading provider of disruptive cloud-based IT, security, and compliance solutions, announced the availability of its Ransomware Risk Assessment Service to provide companies with visibility into their ransomware exposure…
Vulnerabilities Exploited by Ransomware Gangs

Vulnerabilities Exploited by Ransomware Gangs

Security researchers are compiling an easy-to-follow list of vulnerabilities ransomware gangs and their affiliates are using as initial access to breach victims' networks. The list include security flaws found in…
Android Zero Day Vulnerability

Android Zero Day Vulnerability

Google has disclosed that a now-patched vulnerability affecting Android devices that use Qualcomm chipsets is being weaponized by attackers to launch targeted attacks. Tracked as CVE-2020-11261 (CVSS score 8.4), the…