Quantcast
Channel: Cisco Talos Blog
Browsing all 2026 articles
Browse latest View live

Image may be NSFW.
Clik here to view.

On Conveying Doubt

This post was authored by Matt Olney.Typically, Talos has the luxury of time when conducting research. We can carefully draft a report that clearly lays out the evidence and leads the reader to a clear...

View Article


Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: Adobe Reader DC Parser Confusion

Parser vulnerabilities in common software packages such as Adobe Acrobat Reader pose a significant security risk to large portions of the internet. The fact that these software packages typically have...

View Article


Image may be NSFW.
Clik here to view.

Microsoft Patch Tuesday - August 2017

Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 48 new...

View Article

Image may be NSFW.
Clik here to view.

WinDBG and JavaScript Analysis

This blog was authored by Paul Rascagneres.IntroductionJavaScript is frequently used by malware authors to execute malicious code on Windows systems because it is powerful, natively available and...

View Article

Image may be NSFW.
Clik here to view.

When combining exploits for added effect goes wrong

IntroductionSince public disclosure in April 2017, CVE-2017-0199 has been frequently used within malicious Office documents. The vulnerability allows attackers to include Ole2Link objects within RTF...

View Article


Image may be NSFW.
Clik here to view.

Booters with Chinese Characteristics: The Rise of Chinese Online DDoS Platforms

This post was authored by Dave LiebenbergIn the past few months, Talos has observed an uptick in the number of Chinese websites offering online DDoS services. Many of these websites have a nearly...

View Article

Image may be NSFW.
Clik here to view.

Threat Round-up for Aug 11 - Aug 18

Today, Talos is publishing a glimpse into the most prevalent threats we've observed between August 11 and August 18. As with previous round-ups, this post isn't meant to be an in-depth analysis....

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: Lexmark Perceptive Document Filters Code Execution Bugs

OverviewTalos is disclosing a pair of code execution vulnerabilities in Lexmark Perceptive Document Filters. Perceptive Document Filters are a series of libraries that are used to parse massive amounts...

View Article


Image may be NSFW.
Clik here to view.

Beers with Talos EP11 - This is How the World Ends, Not with a Whimper but...

Beers with Talos (BWT) Podcast Episode 11 is now available.  Download this episode and subscribe to Beers with Talos:If iTunes and Google Play aren't your thing: www.talosintelligence.com/podcastBeers...

View Article


Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW

Vulnerability discovered by Cory Duplantis of Cisco Talos.Update: 9/1/17 - National Instruments has published the following advisoryOverviewLabVIEW is a system design and development platform released...

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: Multiple Gdk-Pixbuf Vulnerabilities

OverviewToday, Talos is disclosing the discovery of two remote code execution vulnerabilities which have been identified in the Gdk-Pixbuf Toolkit. This toolkit used in multiple desktop applications...

View Article

Image may be NSFW.
Clik here to view.

Back to Basics: Worm Defense in the Ransomware Age

This post was authored by Edmund Brumaghin"Those who cannot remember the past are condemned to repeat it." - George SantayanaThe PrequelIn March 2017, Microsoft released a security update for various...

View Article

Image may be NSFW.
Clik here to view.

Threat Round Up for Aug 25 - Sep 1

Today, Talos is publishing a glimpse into the most prevalent threats we've observed between August 25 and September 1. As with previous round-ups, this post isn't meant to be an in-depth analysis....

View Article


Image may be NSFW.
Clik here to view.

Graftor - But I Never Asked for This…

This post is authored by Holger Unterbrink and Matthew MolyettOverviewFree software often downloaded from large freeware distribution sites is a boon for the internet, providing users with...

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: Content Security Policy bypass in Microsoft Edge,...

The vulnerabilities were discovered by Nicolai Grødum of Cisco.Today, Talos is releasing details of vulnerabilities discovered in Microsoft Edge browser as well as older versions of Google Chrome...

View Article


Image may be NSFW.
Clik here to view.

Another Apache Struts Vulnerability Under Active Exploitation

This post authored by Nick Biasini with contributions from Alex Chiu.Earlier this week, a critical vulnerability in Apache Struts was publically disclosed in a security advisory. This new...

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: TALOS-2017-0430/0431: Multiple Vulnerabilities in...

Vulnerability discovered by Marcin Noga of Cisco TalosOverviewTalos has discovered two remote code execution vulnerabilities in the the FreeXL library. FreeXL is an open source C library to extract...

View Article


Image may be NSFW.
Clik here to view.

Microsoft Patch Tuesday - September 2017

Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 81 new...

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: LibOFX Tag Parsing Code Execution Vulnerability

This vulnerability was discovered by Cory Duplantis of TalosOverviewLibOFX is an open source implementation of OFX (Open Financial Exchange) an open format used by financial institutions to share...

View Article

Image may be NSFW.
Clik here to view.

Vulnerability Spotlight: YAML Parsing Remote Code Execution Vulnerabilities...

Vulnerabilities discovered by Cory Duplantis of Talos.Talos is disclosing the presences of remote code execution vulnerabilities in the processing of Yet Another Markup Language (YAML) content in...

View Article
Browsing all 2026 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>