Security researchers have been urged to send reports of any bugs they find directly to the companies affected after the bug bounty firm HackerOne cut off payments to Ukrainian researchers for a while after their country was invaded by Russia.
The maintainer of the node-ipc package, a node.js module for local and remote inter-process communication, added code to some of its nested dependencies, resulting in files on computers with Russian or Belarussian IPs being wiped, a security firm claims.
A group of attackers who claimed to have hacked the Belarus Railway have posted proof of their exploit on Twitter in what appears to be a violation of the social media site's policies.
Ransomware has changed from being just about encrypting a victim's data and become primarily about data exfiltration, the Russian security firm Kaspersky says.
Most cybersecurity is making up for weak platforms. We need to address the fundamentals, design platforms that prevent out-of-bounds access[…]
For most developers the security/performance trade off is still the hardest one to tackle, even as the cost of processing[…]
RISC has been overhyped. While it is an interesting low-level processor architecture, what the world needs is high-level system architectures,[…]
There are two flaws that are widespread in the industry here. The first is that any platform or language should[…]
Ajai Chowdhry, one of the founders and CEO of HCL is married to a cousin of a cousin of mine.[…]