[breadcrumb]
McAfee Labs

Linux Kernel Vulnerability Can Lead to Privilege Escalation: Analyzing CVE-2017-1000112

This blog was written by Krishs Patil. A memory corruption bug in UDP fragmentation offload (UFO) code inside the Linux...

McAfee Labs

Apache Struts at REST: Analyzing Remote Code Execution Vulnerability CVE-2017-9805

Apache Struts, an open-source web development framework, is prone to vulnerabilities. We wrote about CVE-2017-9791 in July. The latest is...

McAfee Labs

Microsoft Kills Potential Remote Code Execution Vulnerability in Office (CVE-2017-8630)

Recently the McAfee IPS Research Team informed Microsoft about a potential remote code execution vulnerability in Office 2016 that McAfee...

Internet Security Mobile Security

BlueBorne Vulnerabilities Endanger Over 5 Billion Bluetooth-Enabled Devices

From headsets, to speakers – Bluetooth technology has become an integral part our devices, and our everyday lives. Since it...

McAfee Labs

Analyzing CVE-2017-0190: WMF Flaws Can Lead to Data Theft, Code Execution

CVE-2017-0190 is a recently patched vulnerability related to Windows metafiles (WMFs), a portable image format mainly used by 16-bit Windows...

McAfee Labs

Analyzing CVE-2017-9791: Apache Struts Vulnerability Can Lead to Remote Code Execution

Apache Struts is a model-view-controller framework for creating Java web applications. Struts has suffered from a couple of vulnerabilities using...

McAfee Labs

Analyzing a Patch of a Virtual Machine Escape on VMware

This blog was written by Yakun Zhang. A virtual machine is a completely isolated guest operating system installation within a...

McAfee Labs

Vulnerable OpenSSL Handshake Renegotiation Can Trigger Denial of Service

OpenSSL, the popular general-purpose cryptographic library that implements SSL/TLS protocols for web authentication, has recently suffered from several vulnerabilities. We...

McAfee Labs

Critical Office Zero-Day Attacks Detected in the Wild

At McAfee, we have put significant efforts in hunting attacks such as advanced persistent threats and “zero days.” Yesterday, we...

McAfee Labs

Analyzing CVE-2017-3731: Truncated Packets Can Cause Denial of Service in OpenSSL

OpenSSL is a popular open-source library for SSL and is used by various software and companies across the world. In...

Subscribe to McAfee Securing Tomorrow Blogs