Posts

Showing posts with the label Bug

When a bug is found, the hacker earns about Rs 175 million

Image
When a bug is found, the hacker earns about Rs 175 million A white-hat hacker (cybersecurity researcher) has received the biggest bug bounty award ever. On February 3, Armor Fi paid a white-hat hacker named Alexander Slindwine 1.5 million, or about  175 million, for finding a sensitive bug in his smart contract. Alexander discovered the bug before going to the insurance brokerage platform Armor Fi Live. If the bug had been left unchecked, it would have allowed a bad character with a dollar coverage to steal the entire Armor Fi underwriting contract. The company has since provided 1 million armor tokens to Alexander. At the time of the announcement of the Bounty Reward, one million tokens were worth 700,000. But as news of the new bug bounty and security patch spread, public confidence in the platform increased, pushing the price of the token by 1.58. At the same time, the total value of Alexander's token has reached 1.5 million dollars. Which has made this bounty the biggest bounty

A new bug has been found in Windows 10, threatening to take control of a computer as an admin

Image
A new bug has been found in Windows Ten, threatening to take control of a computer as an admin Microsoft has confirmed that a 'Zero Day' security vulnerability that is not patched on the Windows operating system is being affected from Windows 7 to Windows 10. Microsoft's Project Zero team was the first to inform Microsoft about the vulnerability. The Dedicated Group of Leading Vulnerability Hunters discovered the Zero Day Security Bug. The team warned that hackers were targeting Vulnerability, giving Microsoft seven days to fix the bug or exposing it. According to Forbes, Google has revealed the Zero-Day Vulnerability after Microsoft failed to provide security patches during the period. Which is tracked as CVE-2020-17087. The bug is located inside the Windows Kernel cryptography driver, called CNG.sys. This gives hackers as much power as accessing a Windows machine. Its full technical details can be found in Google Project Zero Disclosure. But in general, it is a memory buf

6 Bug found in the mobile browser, threat of 'address bar spoofing' attack

Image
6 Bug found in the mobile browser, threat of 'address bar spoofing' attack Cyber ​​security researchers have found bugs (address bar spoofing) in six popular mobile browsers, including Safari and Opera. Address bar spoofing vulnerabilities have affected these mobile browsers and opened the door for malware delivery, phishing and malicious activity, the researchers said. The security vulnerabilities found in some browsers have been resolved and some are still problematic. The bug was discovered by Rapid Seven and independent Pakistani researcher Rafi Baloch. The six different browsers include Apple Safari, Opera Touch / Mini, Yandex, Bolt, RITS and UC Browser. They point out that these browsers allow cyber attackers to present fake webpage addresses. Users use such browsers for all kinds of applications needed in daily life. UC Web and Ballet Browser have already patched the bug, while Opera is expected to fix the bug by November 12. The attackers were found to be using executab

TikTok launched the Bug Bounty program to strengthen security

Image
TikTok launched the Bug Bounty program to strengthen security The video app is in a difficult situation due to sanctions from countries like India, Pakistan, and Indonesia and the ongoing war with the US government. Instead of sinking into the abyss of despair, the company, which is facing many challenges at once, seems to be fighting like a true warrior on the battlefield. TikTok is partnering with several platforms to enhance its image, such as TikTok recently partnering with OpenSlate for advertiser brand protection. It has now announced the launch of the Bug Bounty program in partnership with HackerWan. The Bug Bounty program is an extension of the already-running Vulnerability Disclosure Program, the company said. Explaining the purpose of the event in a blogpost, TikTok said the partnership with Hackervan would help the company secure the support of security researchers, experts, academics, and other independent individuals capable of detecting bugs and vulnerabilities. This boun