Zero-Day Exploit
Discover expert analysis on zero day exploits with news, features and insights from the team at IT Pro.
-
Second-ever OpenSSL critical vulnerability teased, 10 years after Heartbleed
News All OpenSSL versions beyond 3.0 are at risk, with more details due to be released alongside a patch on 1 November
By Rory Bathgate Published
News -
Apple patches actively exploited iPhone, iPad zero-day and 18 other security flaws
News The out-of-bounds write error is the eighth actively exploited zero-day impacting Apple hardware this year and could facilitate kernel-level code execution
By Rory Bathgate Published
News -
Fortinet reiterates call to mitigate against active zero-day, as customers delay fixes
News A large number of customers have yet to apply mitigations necessary to avoid the critical vulnerability
By Rory Bathgate Published
News -
Microsoft still searching for zero-day fixes following Patch Tuesday
News ProxyNotShell remains unaddressed even as Microsoft fixes several critical flaws in its monthly package of security patches
By Rory Bathgate Published
News -
Microsoft's third mitigation update for Exchange Server zero-day exploit bypassed within hours
News The string of problematic temporary fixes for ‘ProxyNotShell’ grows longer after a 'confusing' and 'atypical' week-long vulnerability disclosure process
By Connor Jones Published
News -
Apple patches yet another zero-day flaw in substantial security update
News The updates include fixes for kernel-level code execution bugs, privacy issues, and more - all impacting iPhone and iPad users
By Connor Jones Published
News -
Google’s Project Zero is frightening and reassuring in equal measure
Opinion This crack team of security researchers are doing work we should all be grateful for
By Davey Winder Published
Opinion -
Apple breaks update policy to secure older iPhones and iPads against zero-day
News It's been four years since the company patched an end-of-life device against a major vulnerability
By Connor Jones Published
News -
Apple patches 'superpower' zero-days affecting iPhones, iPads, and Macs
News The RCE and kernel-level bugs may have been actively exploited and could give high-level privileges to attackers
By Connor Jones Published
News -
Dogwalk RCE variant among 121 vulnerabilities fixed in Microsoft's August Patch Tuesday
News The second-biggest security update released by Microsoft this year featured 17 critical-rated RCEs and privilege escalation bugs
By Connor Jones Published
News -
Actively exploited zero-day and four 'critical' vulnerabilities fixed in Microsoft's July Patch Tuesday
News The month's list of 84 bug fixes has been branded "boring" by some experts but should be welcome news to security personnel
By Connor Jones Published
News -
Exploitation of Atlassian Confluence zero-day surges fifteen-fold in 24 hours
News The zero-day code execution vulnerability was discovered last week and cyber attackers are already capitalising on the proof-of-concept code
By Connor Jones Published
News