RubyGems DNS flaw now patched after second try

A revised patch has been released for a flaw in the distribution platform for Ruby applications, RubyGems, which could be used to deliver malware to someone trying to download a program.RubyGems lets people search for a “gem,” which is a packaging format for Ruby applications and code libraries. Ruby developers publish a gem when an application is ready.Security researchers from Trustwave found a problem with the platform. When people search for a gem, RubyGems uses a DNS (Domain Name System) SRV record request to find a server hosting a particular gem.The request, however, “does not require that DNS replies come from the same security domain as the original gem source,” according to a writeup, which Trustwave plans to release on its blog on Tuesday.To read this article in full or to leave a comment, please click here Continue reading at 'PC World'

[ PC World | 2015-06-23 00:00:00 UTC ]
News tagged with: #security researchers

Other news stories related to: "RubyGems DNS flaw now patched after second try"


RubyGems DNS flaw now patched after second try

A revised patch has been released for a flaw in the distribution platform for Ruby applications, RubyGems, which could be used to deliver malware to someone trying to download a program.RubyGems lets people search for a “gem,” which is a packaging format for Ruby applications and code libraries.... Continue reading at PC World

[ PC World | 2015-06-23 00:00:00 UTC ]
More news stories like this | News stories tagged with: #security researchers


HBO Max exec admits to the app’s early flaws

Viewers have long complained about the early HBO Max app’s tendency to crash, and its lack of discoverability features. There have been a number of overhauls and fixes since then. Now we know why. Turns out that HBO Max launched its apps before they were ready in order to keep up with its... Continue reading at Engadget

[ Engadget | 2022-04-14 23:32:58 UTC ]
More news stories like this | News stories tagged with: #harry potter #biggest change #home page #streaming platforms #apple tv+


Harry Truman’s surprising successes and overlooked flaws

He was barely equipped for the presidency, but he had an outsize impact, Jeffrey Frank writes. Continue reading at The Washington Post

[ The Washington Post | 2022-03-11 13:00:22 UTC ]
More news stories like this |


In a flawed system, a Black prosecutor wonders if she’s pursuing justice or being complicit

Laura Coates offers an honest description of prosecutors' complex moral universe. Continue reading at The Washington Post

[ The Washington Post | 2022-02-04 13:00:55 UTC ]
More news stories like this |


T.S. Eliot may have been flawed, but a new book reminds of his greatness on the page

As we reach the centenary of "The Wasteland," a new look at Eliot beyond the poem that defined him Continue reading at The Washington Post

[ The Washington Post | 2022-01-05 13:00:19 UTC ]
More news stories like this | News stories tagged with: #book reminds


Wilcox wins PEN Ackerley Prize for 'vivid' memoir Patch Work

Claire Wilcox has won the PEN Ackerley Prize 2021 for her "vivid" memoir Patch Work: A Life Amongst Clothes (Bloomsbury). Continue reading at The Bookseller

[ The Bookseller | 2021-08-04 21:28:36 UTC ]
More news stories like this | News stories tagged with: #memoir


‘A Light in the Dark’ is a love letter to directors, personal flaws and all

The latest addition to film historian David Thomson’s opinionated take on the film industry is notable for what it says — and what it doesn’t. Continue reading at The Washington Post

[ The Washington Post | 2021-04-12 07:00:00 UTC ]
More news stories like this | News stories tagged with: #film industry #latest addition #love letter


In Emma Cline’s story collection, ‘Daddy,’ flawed men reap what they sow

As in “The Girls,” Cline’s wit is on point and her writing is evocative and seductive. Continue reading at The Washington Post

[ The Washington Post | 2020-09-04 08:54:40 UTC ]
More news stories like this | News stories tagged with: #story collection #emma cline


‘This is not your grandfather’s Patch’: Lookout Local wants to be the modern local news of Santa Cruz

Launching a digital media company looking to take over the role of local newspapers is a tricky undertaking, even without calculating a looming recession. The post ‘This is not your grandfather’s Patch’: Lookout Local wants to be the modern local news of Santa Cruz appeared first on Digiday. Continue reading at Digiday

[ Digiday | 2020-08-17 04:01:53 UTC ]
More news stories like this | News stories tagged with: #digital media #local newspapers #santa cruz


Flaws Could Have Exposed Cryptocurrency Exchanges to Hackers

Researchers found troubling bugs in open-source libraries used by financial institutions. Continue reading at Wired

[ Wired | 2020-08-09 11:00:00 UTC ]
More news stories like this | News stories tagged with: #libraries #financial institutions


Norman Lock’s ‘American Follies’ mines America’s flawed past for dazzling fiction

The latest installment in Lock’s American Novels series brings together P.T. Barnum and Susan B. Anthony. Continue reading at The Washington Post

[ The Washington Post | 2020-07-07 15:01:01 UTC ]
More news stories like this | News stories tagged with: #latest installment


Open source security flaws found in 70 percent of applications

New research from application security specialist Veracode finds seven in 10 applications have a security flaw in an open source library on initial scan, highlighting how use of open source can introduce flaws, increase risk, and add to security debt. The study analyzed the component open source... Continue reading at Betanews

[ Betanews | 2020-05-19 09:57:36 UTC ]
More news stories like this | News stories tagged with: #libraries #open source


The inherently, intrinsically and inevitably flawed case for American nationalism

Review of 'The Case for Nationalism: How It Made Us Powerful, United, and Free' by Rich Lowry Continue reading at The Washington Post

[ The Washington Post | 2019-10-31 14:00:07 UTC ]
More news stories like this | News stories tagged with: #rich lowry #american nationalism


The inherently, intrinsically and inevitably flawed case for American nationalism

Review of 'The Case for Nationalism: How It Made Us Powerful, United, and Free' by Rich Lowry Continue reading at The Washington Post

[ The Washington Post | 2019-10-31 14:00:07 UTC ]
More news stories like this | News stories tagged with: #rich lowry #american nationalism


The inherently, intrinsically and inevitably flawed case for American nationalism

Review of 'The Case for Nationalism: How It Made Us Powerful, United, and Free' by Rich Lowry Continue reading at The Washington Post

[ The Washington Post | 2019-10-31 14:00:07 UTC ]
More news stories like this | News stories tagged with: #rich lowry #american nationalism


Is ‘Diary of a Wimpy Kid’ more difficult than ‘The Grapes of Wrath’? The flaw in reading levels.

So many kids are told to read at their ‘level.’ But there are problems in the system that assigns them. Continue reading at The Washington Post

[ The Washington Post | 2019-10-04 12:00:00 UTC ]
More news stories like this | News stories tagged with: #reading levels #wimpy kid


Goodbye X-Men—You Flawed, Frustrating Cinematic Revolution

Eighteen years ago, 'X-Men' taught audiences that comic books could live onscreen, as vast and rewarding as they were in their original form. Continue reading at Wired

[ Wired | 2019-06-07 14:43:31 UTC ]
More news stories like this | News stories tagged with: #original form #comic books


WhatsApp flaw let spies take control of phones

Spyware crafted by a sophisticated group of hackers-for-hire took advantage of a flaw in Facebook Inc.’s popular WhatsApp communications program to remotely hijack dozens of targeted phones without any user interaction. The Financial Times identified the hacking group as NSO Group, an... Continue reading at Baltimore Sun

[ Baltimore Sun | 2019-05-14 21:55:00 UTC ]
More news stories like this | News stories tagged with: #israeli company #nso group #hacking group #user interaction #sophisticated group #spyware crafted #targeted phones #whatsapp flaw


WhatsApp flaw let spies take control of phones

Spyware crafted by a sophisticated group of hackers-for-hire took advantage of a flaw in Facebook Inc.’s popular WhatsApp communications program to remotely hijack dozens of targeted phones without any user interaction. The Financial Times identified the hacking group as NSO Group, an... Continue reading at Baltimore Sun

[ Baltimore Sun | 2019-05-14 21:55:00 UTC ]
More news stories like this | News stories tagged with: #israeli company #nso group #hacking group #user interaction #sophisticated group #spyware crafted #targeted phones #whatsapp flaw


Vodafone is said to have found Huawei security flaws from 2009

For months, Huawei Technologies Co. has faced U.S. allegations that it flouted sanctions on Iran, attempted to steal trade secrets from a business partner and threatened to enable Chinese spying through the telecom networks it has built across the West. Now Vodafone Group has acknowledged to... Continue reading at Baltimore Sun

[ Baltimore Sun | 2019-04-30 22:20:00 UTC ]
More news stories like this | News stories tagged with: #business partner