Posts

Showing posts with the label Network security

HP Printer announces a whopping $10,000 Bug Bounty to Improve Network Security

Image
Vulnerability researchers, here comes a must not be missed opportunity for you! HP Inc. has rolled a bug bounty program to felicitate researchers with a whopping sum between $500 and $10,000 for finding security flaws in a range of HP printers. Bugs found in the vendor’s Enterprise LaserJet machines and multi-function printer (MFPs), such as the A3 and A4 will also be acknowledged. The amount of the reward is based on the severity of the discovered vulnerabilities! Keeping in mind the fact that printers are the weakest link in an organization and the vulnerabilities in these can be exploited to infect the entire chain in the network in various malicious campaigns; HP launches Bug Bounty program and announces its team venture with Bugcrowd on July 31st 2018. Bugcrowd is a bug bounty platform that manages vulnerability disclosure programs and  uses crowdsourced model to find vulnerabilities. In this private program, researchers will be sent the invite to join the program. The...

NetSpectre! A new Spectre Variant that Steals data through Network Connections!

Image
NetSpectre Bug! Spectre Variant Discovered! A New Spectre Variant has been uncovered by scientists that can steal your data by gaining access to your network connections. This new variant has been codenamed  NetSpectre as it does not require hosting its code on the system. This is a major step forward in the spectre attacks as it allows access to the victims PC without them even knowing that their system is vulnerable to cyber attacks. Until now the cyber crooks had to trick the user into  downloading and executing the malicious code into their system , but after the discovery of  NetSpectre, there is simply no need for these methods . Hoaxing a user into accessing a malicious website to run a JavaScript code to get the system infected by  Spectre seems a tedious process now, after the discovery of NetSpectre. The cyber attackers can easily bypass the whole hoaxing process or infecting the system with code to gain access to a user’s machine. Is NetSpect...