Compass Security News

Here you will find reports, interviews and news. We give you an insight into our work and report on 0day (zero-day) vulnerabilities discovered by our staff on customer projects or in their research time.

 

Emanuel Duss identified a biometric authentication bypass vulnerability in the Ionic Identity Vault secure storage solution on Android.

Lire la suite

Philipp Mao identified a hardcoded credentials vulnerability in the electronic time recording system timeCard

Lire la suite

Emanuele Barbeno identified a vulnerability in the open source software NeDi.

Lire la suite

Stephan Sekula identified an XSS vulnerability in the report generation tool Canopy.

Lire la suite

Alex Joss and Emanuele Barbeno identified vulnerabilities in Intland Software´s Application-Lifecycle-Management codeBeamer.

Lire la suite

Tino Kautschke identified an XSS vulnerability in the content management system Plone.

 

Lire la suite

Sylvain Heiniger and Alex Joss identified vulnerabilities in Avaya Equinox® Conferencing, an all-inclusive solution for voice, video and desktop…

Lire la suite

Nicolas Heiniger identified a OS Command Injection (RCE) in WorkCentre 78XX Series.

Lire la suite

Eine Ostschweizer Softwarefirma wurde Opfer eines Randsomware-Angriffs, welchen sie aber glücklicherweise rechtzeitig abwenden konnten. Diese…

Lire la suite

Philipp Mao identified an XML External Entity vulnerability in the FusionAuth SAML Library.

Lire la suite

Emanuele Barbeno identified a Privilege Escalation vulnerability in Pi-hole.

Lire la suite

Emanuele Barbeno identified an XXE vulnerability in Helix ALM, the application lifecycle management tool by Perforce.

Lire la suite