No Image

USN-4496-1: Apache XML-RPC vulnerability

2020-09-16 KENNETH 0

USN-4496-1: Apache XML-RPC vulnerability It was discovered that Apache XML-RPC (aka ws-xmlrpc) does not properly deserialize untrusted data. An attacker could possibly use this issue to execute arbitrary code. (CVE-2019-17570) Source: USN-4496-1: Apache XML-RPC vulnerability

No Image

NGINX Announces Eight Solutions that Let Developers Run Safely with Scissors

2020-09-16 KENNETH 0

NGINX Announces Eight Solutions that Let Developers Run Safely with Scissors Technology is hard. As technologists, I think we like it that way. It’s built‑in job security, right? Well, unfortunately, the modern application world has become unproductively hard. We need to make it easier. That’s why I like describing the current developer paradox as the need to run safely with scissors. NGINX Balances Developer Choice with Infrastructure Guardrails Running with scissors is a simple metaphor for what is the admittedly difficult ask we make of software engineers. Developers need to run. Time to market and feature velocity are critical to the success of digital businesses. As a result, we don’t want to encumber developers with processes or technology choices that slow them down. Instead we empower them to pick tools and stacks that let them deliver code to customers as [ more… ]

No Image

The Essence of Sprint is Speed

2020-09-16 KENNETH 0

The Essence of Sprint is Speed We’re living in interesting, albeit challenging, times. This year set a new standard for change that saw both our professional and personal lives transformed almost overnight. The global pandemic has fueled a radical departure from established initiatives, bringing the rate at which businesses are able to adapt and respond even more sharply into focus. The message is clear: Speed will be key for modern organizations that not only want to survive – but thrive – in the future. Digital Is Table Stakes – Speed Is the Differentiator At this point, it’s fair to say that every business is a digital business. Going digital is no longer an option, but a critical factor to meeting consumer expectations. But beyond simply delivering digital services and goods, companies have to ensure they give customers a great experience. Today’s consumers [ more… ]

No Image

USN-4495-1: Apache Log4j vulnerability

2020-09-15 KENNETH 0

USN-4495-1: Apache Log4j vulnerability It was discovered that Apache Log4j does not properly deserialize untrusted data. An attacker could possibly use this issue to remotely execute arbitrary code. (CVE-2019-17571) Source: USN-4495-1: Apache Log4j vulnerability