Get a Pentest and security assessment of your IT network.

Cyber Security

Dell Security Support Tool Harbors High-Severity Flaws

Dell has patched two high-severity vulnerabilities in its SupportAssist software. The flaws could enable remote code-execution (RCE) and cross-site request forgery (CSRF) attacks. The software helps users remove viruses or detect security issues on their PCs. An unauthenticated attacker could exploit the flaw but they would need to share the network access layer with the vulnerable system. The second flaw is an improper origin validation vulnerability (CVE-2019-3718) with a ranking of 8.8.

Source: https://threatpost.com/dell-flaws-security-support-tool/144295/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security