Frank Crast

Microsoft August 2021 Security Updates includes fixes for 7 Critical RCEs, 3 zero-day vulnerabilities

Microsoft has released the August 2021 Security updates that includes patches for 49 vulnerabilities, 7 of those rated Critical. The updates also include fixes for 3 zero-day bugs exploited in the wild.

Microsoft August 2021 Security Updates includes fixes for 7 Critical RCEs, 3 zero-day vulnerabilities Read More »

Mozilla releases Firefox 91 with Windows SSO feature and 5 High risk security fixes

The Mozilla Foundation has released Firefox 91 that includes a new Windows single sign-on feature and security fixes for six vulnerabilities, five rated High severity.

Mozilla releases Firefox 91 with Windows SSO feature and 5 High risk security fixes Read More »

NIST SP 800-204B: Attribute-based Access Control for Microservices-based Applications using a Service Mesh

The National Institute of Standards and Technology (NIST) has issued the NIST SP 800-204B Attribute-based Access Control for Microservices-based Applications using a Service Mesh.

NIST SP 800-204B: Attribute-based Access Control for Microservices-based Applications using a Service Mesh Read More »

NIST SP 1271: Getting Started with the NIST Cybersecurity Framework: A Quick Start Guide

The National Institute of Standards and Technology (NIST) has issued the NIST SP 1271 Getting Started with the NIST Cybersecurity Framework: A Quick Start Guide.

NIST SP 1271: Getting Started with the NIST Cybersecurity Framework: A Quick Start Guide Read More »

VMware patches High risk vulnerability (CVE-2021-22002) in Workspace ONE Access and Identity Manager

VMware issued a security advisory for a High risk vulnerability CVE-2021-22002 that impacts VMware Workspace ONE Access and Identity Manager. Another vulnerability was also addressed in vRealize Automation products.

VMware patches High risk vulnerability (CVE-2021-22002) in Workspace ONE Access and Identity Manager Read More »

Malicious PyPI software packages found stealing payment card numbers and injecting code

Security researchers have discovered malicious software packages from Python’s official third party software package repository PyPl stealing payment card numbers and injecting code.

Malicious PyPI software packages found stealing payment card numbers and injecting code Read More »