RSS
Naked Security
cryptography
CVE-2022-21449
digital signature
Java
Oracle
vulnerability
Critical cryptographic Java security blunder patched – update now!
CVE-2022-22963
Log4She
SPEL
Spring
Spring Cloud
Spring Expression Resource
“VMware Spring Cloud Function” Java bug gives instant remote code execution – update now!
Security Operations
Cloud Security
Featured
Second vulnerability in Spring Cloud casts shadow on popular Java framework
CVE-2021-42392
H2
JNDI
Log4J
SQL
Log4Shell-like security hole found in popular Java SQL database engine H2
Apache
CVE-2021-44228
CVE-2021-44832
Log4shell
Patch
Log4Shell vulnerability Number Four: “Much ado about something”
Exploit
LOGJAM
RCE
“Log4Shell” Java vulnerability – how to safeguard your servers
anonymity
browser privacy
Firefox
Javascript
NoScript
the onion router
Tor
tor browser
Tor browser fixes bug that allows JavaScript to run when disabled
Bug
code review
serious security
testing
y2k
Serious Security: The decade-ending “Y2K bug” that wasn’t