je.st
news
Tag: zeroday
New zero-day attack threatens fully patched OS X
2015-08-05 15:00:28| Extremetech
The new exploit allows an application to gain root permissions via a Unix shell, all without ever needing a password. That's the kind of hack that could cripple deployed systems.
Tags: x
fully
attack
threatens
OS X Zero-Day Exploit Threatens Massive Mac Attack
2015-08-04 23:20:38| TechNewsWorld
Mac users, beware -- the ads you see on the Web could let hackers hijack your device. Malwarebytes has discovered a new zero-day exploit in OS X that lets apps bypass passwords during installation to get root permission through a Unix shell. A new adware installer downloaded by a Malwarebytes researcher modified his sudoers file -- a hidden Unix file that controls access to root permissions.
Tags: mac
attack
massive
exploit
Zero-day exploit lets hackers remotely force cars off the road
2015-07-21 22:48:42| Extremetech
An exclusive investigation by Wired has revealed the most powerful car hack yet, one that could leave thousands of Jeep Cherokee drivers seriously vulnerable.
Keeping Score in the Google vs. Microsoft Zero-Day Games
2015-01-20 16:47:22| TechNewsWorld
Google's recent publication of Windows' vulnerabilities -- two within a week -- predictably raised Microsoft's ire. "Risk is significantly increased by publically announcing information that a cybercriminal could use to orchestrate an attack and assumes those that would take action are made aware of the issue," wrote Chris Betz, Microsoft's senior director of trustworthy computing.
Tags: games
google
microsoft
score
3 zero-day flaws found in Symantec's Endpoint Protection
2014-07-30 13:30:44| InfoWorld: Top News
Symantec's Endpoint Protection product has three zero-day flaws that could allow a logged-in user to move to a higher access level on a computer, according to a penetration testing and training company. The three flaws, all known as privilege escalation vulnerabilities, were found during a security test of a financial services company, said Mati Aharoni, lead trainer and developer for Offensive Security, in a phone interview late Tuesday.
Tags: found
protection
flaws
endpoint