After the Superfish debacle earlier this year, Lenovo's security practices have once again been found lacking as researchers have discovered several vulnerabilities in the company's System Update software.
Microsoft is ready to abandon the longstanding patching schedule that saw patches and security updates being delivered on the second Tuesday of every month.
Barracuda Networks has issued a security update that patches critical flaws in the firmware of its Web Filter appliances, which could lead to an attacker successfully performing a man-in-the-middle (MITM) attack without the client knowing it.
Patching has been the stalwart of the information security community for at least the last 15 years.
A bug in an older version of AFNetworking, an open source library widely used for adding networking capabilities to iOS and OS X apps, can allow attackers to intercept and decrypt HTTPS traffic between apps and servers, effectively revealing all the sensitive information exchanged, such as passwords, bank account information, and so on.
Reading our newsletter every Monday will keep you up-to-date with security news.
Receive a daily digest of the latest security news.