Security

FortinetSecurity

PHPMailer Powered – Use It, But Also Remember to Update It

Credit to Author: Tien Phan | Date: Thu, 16 Feb 2017 17:55:21 -0800

At the end of last year, a critical vulnerability in PHPMailer that affected millions of websites – CVE-2016-10033 –  was discovered by Polish security researcher Dawid. This vulnerability allows an attacker to compromise the target’s web application by executing remote code on the vulnerable web server. There are numerous open source web applications that use PHPMailer as their main library for sending emails, including WordPress, Joomla, Yii, SugarCRM… More than a month after PHPMailer released a patch for this critical…

Read More
FortinetSecurity

RSA 2017 Roundup

Credit to Author: Bill McGee| Date: Thu, 16 Feb 2017 16:03:03 -0800

RSA 2017 is a wrap. The final sessions are being recorded, the coat check area is filled with luggage, and the smell of propane is filling the show floors as forklifts begin to deliver packing crates to this year’s crop of security vendors. As expected, the hottest security topics and offerings were related to IoT and the cloud. Threat intelligence and SOCs were also top of mind as companies try to get a handle on the deluge of data and devices flooding their networks. In spite of the veneer of innovation, however, for far too many vendors…

Read More
SecuritySophos

Live from RSA Conference 2017: How machine-learning helps fight malware

Credit to Author: Bill Brenner| Date: Thu, 16 Feb 2017 17:34:22 +0000

If you’re across the Atlantic or couldn’t get to RSA, we’re bringing RSA to you via Facebook Live. In his presentation, Sophos product management director Russell Humphries talks about how machine learning will change the battle against malware. And, find out how we are bringing machine learning into the fold with our plans to acquire […]

Read More
SecuritySophos

Live from RSA Conference 2017: We’re talking IoT threats and ransomware

Credit to Author: Bill Brenner| Date: Thu, 16 Feb 2017 10:32:41 +0000

Greetings from RSA Conference 2017. This year we’ve been taking advantage of Facebook Live* to help us deliver news from the show floor. Here, I talk to Chester Wisniewski, principal research scientist in the Office of the CTO, about IoT threats and ransomware. If you’re at the show and have some questions of your own […]

Read More