Tag: Vulnerabilities

  • Blog
  • Tag: Vulnerabilities
Millions of Vehicles at Risk: API Vulnerabilities Uncovered in 16 Major Car Brands 
Millions of Vehicles at Risk: API Vulnerabilities Uncovered in 16 Major Car Brands 
Millions of Vehicles at Risk: API Vulnerabilities Uncovered in 16 Major Car Brands 
Millions of Vehicles at Risk: API Vulnerabilities Uncovered in 16 Major Car Brands 

Millions of Vehicles at Risk: API Vulnerabilities Uncovered in 16 Major Car Brands 

By exploiting the vulnerabilities of 16 different automotive brands, hackers can access, start, and track billions of cars. A privacy risk also arises. Vulnerabilities were found in the automotive APIs that were utilized in the Acura, BMW, Ferrari, Ford, Genesis, Honda, Hyundai, Infiniti, Jaguar, Kia, Land Rover, Mercedes-Benz, Nissan, Porsche, Rolls Royce, Toyota, Reviver, SiriusXM,

Why Phishing Campaigns are a Critical Threat in the Corporate World and What Companies Can Do to Protect Themselves

As the use of technology has become increasingly prevalent in the business world, so too have cyber attacks such as phishing campaigns. These attacks, which involve sending fraudulent emails or messages to individuals or organizations in an attempt to obtain sensitive information, can have serious consequences for businesses and organizations. In this blog, we will

CISA_WARNS modifies JasperReports exploit recommendations into actions

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) listed two-year-old security flaws in TIBCO Software’s JasperReports product thatcited evidence of exploitive use in the CISA Known Exploited Vulnerabilities (KEV) catalog. In April 2018 and March 2019, TIBCO resolved the vulnerabilities tracked as CVE-2018-5430 (CVSS score: 7.7) and CVE-2018-18809 (CVSS score: 9.9), respectively. TIBCO JasperReports is

Stupid security this year’s infosec fails in 2022

An ambitious success in web security, unfortunately, led to a salutary lesson in which lessons from another inevitably eventful year in infosec were learned. As 2022 draws to a close, let’s revisit some of those prominent web security wins and high-profile infosec fails from the previous year. Today we are going to begin our workshop