Google has released the January security update for Android (for its Nexus devices).
A vulnerability in Cisco's Jabber client for Windows can be exploited by attackers to wiretap communications, steal user credentials, and to tamper with messages sent between the client and the Jabber gateway, Synacktiv researchers have warned.
Representatives of the Tor Project, the non-profit organization that maintains the software needed for using the Tor anonymity network and operates the Onion network, have announced the imminent creation of a bug bounty program aimed at finding and fixing security flaws in the software.
Network Management System (NMS) offerings by Spiceworks, Ipswitch, Opsview and Castle Rock Computing have been found sporting several cross-site scripting and SQL injection flaws that could be exploited to extract information stored in databases and perform arbitrary code execution within the context of the authenticated user (and set up the stage for other attacks).
GCHQ, the UK equivalent of the US National Security Agency (NSA), has released on Monday the source code of Gaffer, a graph database that optimised for "retrieving data on nodes of interest." "Gaffer is a framework that makes it easy to store large-scale graphs in which the nodes and edges have statistics such as counts, histograms and sketches.
Reading our newsletter every Monday will keep you up-to-date with security news.
Receive a daily digest of the latest security news.