Remote Code Execution Vulnerability Affects Millions of Dell Devices

Remote Code Execution Vulnerability Affects Millions of Dell Devices

Eclypsium has discovered a number of vulnerabilities, the combined exploitation of which allows remote code execution on Dell computers. The vulnerabilities affect the BIOSConnect feature of intelligent technology to maximize the performance of SupportAssist computers. The vulnerability chain scored 8.3 out of a maximum 10 on the CVSS severity scale. The cumulative exploitation of the…

Lawyer saw no sign that software mogul McAfee would kill himself

Lawyer saw no sign that software mogul McAfee would kill himself

John McAfee testifying via video during an extradition hearing at the National Court in Madrid on June 15. (AP pic) BARCELONA: Anti-virus software pioneer John McAfee’s lawyer said on Thursday he had seen no sign before the entrepreneur’s death in a Spanish prison that he would take his own life. Spanish coroners were conducting an…

Millions of Dell devices at risk due to SupportAssist security vulnerabilities

Millions of Dell devices at risk due to SupportAssist security vulnerabilities

Security researchers from Eclypsium have discovered a total of four vulnerabilities in Dell’s SupportAssist software. As the software is pre-installed on the majority of Dell machines running Windows, millions of systems are at risk of remote attack. Eclypsium says that a total of 129 Dell models are affected by the security issues. The chain of…

European Commission mulls cyber security task force

European Commission mulls cyber security task force

Image: Pete Linforth, Pixabay Joint Cyber Unit could ensure coordinated international response to attacks Print Print Pro Read More: cyber security European Commission security The European Commission has proposed the setting up of a new Joint Cyber Unit to tackle the rising number of serious cyber incidents impacting public services, as well as the life of businesses…

CISA doesn’t know how many US federal agencies use firewalls to fend off malicious traffic

CISA doesn’t know how many US federal agencies use firewalls to fend off malicious traffic

Written by Tonya Riley Jun 21, 2021 | CYBERSCOOP The Department of Homeland Security’s top cybersecurity agency doesn’t know how many agencies are segmenting their networks from unwanted outside traffic, a basic security practice, according to a letter recently sent to the office of Sen. Ron Wyden (D-Ore.) by the agency. The agency provided the…

EU Proposes Joint Cybersecurity Unit

EU Proposes Joint Cybersecurity Unit

Cybercrime , Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime Agency Would Help Member States Respond to Cyberattacks Akshaya Asokan (asokan_akshaya) • June 23, 2021     The European Commission has proposed creating a Joint Cyber Unit to help EU member states respond to and prevent cyberattacks, especially those involving ransomware. See Also: Bringing…

CVE-2021-0605 – Alert Detail – Security Database

CVE-2021-0605 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-0605 First vendor Publication 2021-06-22 Vendor Cve Last vendor Modification 2021-06-22 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Unpatched Flaw in Linux Pling Store Apps Could Lead to Supply-Chain Attacks

Unpatched Flaw in Linux Pling Store Apps Could Lead to Supply-Chain Attacks

Cybersecurity researchers have disclosed a critical unpatched vulnerability affecting Pling-based free and open-source software (FOSS) marketplaces for Linux platform that could be potentially abused to stage supply-chain attacks and achieve remote code execution (RCE). “Linux marketplaces that are based on the Pling platform are vulnerable to a wormable [cross-site scripting] with potential for a supply-chain…