In Other News: Crypto Exchange Hack Guilty Plea, Rating AI Vulnerabilities, Intellexa Spyware 

December 22, 2023 at 09:12AM SecurityWeek releases a weekly cybersecurity roundup with notable stories. This week includes Ukrainian hackers targeting a Russian water utility, a former security engineer admitting to cryptocurrency exchange hacks, patches from Apple and Adobe, and various vulnerability and fraud reports. Additionally, Google shut down thousands of YouTube channels linked to influence … Read more

Years-Old, Unpatched GWT Vuln Leaves Apps Open to Server-Side RCE

December 18, 2023 at 05:43PM An unpatched Java deserialization vulnerability in the Google Web Toolkit (GWT) open source application framework remains unresolved after over eight years. This flaw, which enables remote code execution, could potentially require significant framework fixes for vulnerable applications. According to research by Bishop Fox, addressing this issue may necessitate architectural changes … Read more