Category: zero-day

Apple releases iOS 13.5.1 to fix the flaw behind a well-known jailbreak

[ad_1] Less than two weeks after Apple released iOS 13.5, the company is rolling out the first major update, iOS 13.5.1 and iPadOS 13.5.1. The update patches the vulnerability that enabled the high-profile jailbreak discovered by the Unc0ver team just days after the new OS arrived. “This update provides important security updates and is recommended […]

The latest iOS jailbreak cracks virtually any iPhone

[ad_1] Apple’s efforts to discourage iOS jailbreaking have typically left enthusiasts waiting a while until code sleuths discover a flaw that lets them bypass safeguards and break some of the platform’s rules. Not this time around, though. The Unc0ver team has released (via TechCrunch) a jailbreak that works with every iPhone that runs iOS 11 […]

Microsoft warns Windows users of two security holes already under attack

[ad_1] The flaws exist in the Windows Adobe Type Manager Library, which allows apps to manage and render fonts available from Adobe Systems. Attackers may exploit the vulnerabilities by getting their targets to open booby-trapped documents or view them in the Windows preview pane. Microsoft is still working to fix the vulnerabilities. The earliest it […]

Homeland Security wants you to update your Firefox browser right now

[ad_1] Mozilla is “aware of targeted attacks in the wild abusing this flaw.” In a statement provided to Engadget, a Mozilla spokesperson said, “on Tuesday, January 7, 2020, Chinese security firm Qihoo 360 reported a vulnerability that was used as part of targeted attacks on a local network. We started shipping Firefox updates to address […]

Google’s new policy gives developers more time to address security flaws

[ad_1] There are more reforms. If there’s an incomplete fix, it’ll be reported to the developer and added to an existing report. Before, it would sometimes be treated as a separate problem with its own deadline. Google will also open tracker reports the moment a flaw is patched during the “grace period” (a 14-day window […]

Internet Explorer security flaw allows hackers to steal files

[ad_1] The vulnerability affects Windows 7, Windows 10 and Windows Server 2012 R2. This wouldn’t be an issue if it weren’t for the disclosure of the flaw. Page posted details of the exploit after Microsoft reportedly declined to roll out an urgent security fix. It instead said a fix would be “considered” in a future […]

Update Chrome now as attackers are ‘actively exploiting’ a bug

[ad_1] Google Chrome tends to auto update quickly and silently, but you may want to make sure you’re on the latest version right now, as the company announced a zero-day vulnerability that it said attackers are “actively exploiting.” As Chrome security engineer Justin Schuh explained in a series of tweets, the thing that makes this […]