| 
	     You are here  | 
        www.sweharris.org | ||
| | | | | 
            
              www.trevorlasn.com
             | 
        |
| | | | | The vulnerability skips Next.js middleware security checks by adding a single HTTP header | |
| | | | | 
            
              reverse.put.as
             | 
        |
| | | | | Today a local privilege escalation vulnerability was disclosed in this blog post. It describes a vulnerability in IOBluetoothFamily kernel extension (IOKit is a never-ending hole of security vulnerabilities). Mavericks and most probably all previous versions are vulnerable but not Yosemite. The reason for this is that Apple silently patched the bug in Yosemite. This is not a new practice, where Apple patches bugs in the latest and newly released OS X version and doesn't care about older versions. | |
| | | | | 
            
              www.jenkins.io
             | 
        |
| | | | | The Jenkins project's response to a critical security vulnerability in the "Spring" framework. | |
| | | | | 
            
              www.komodosec.com
             | 
        |
| | | Learn about web penetration testing, potent web application vulnerabilities, their impact and solutions. | ||