LinuxSecurity.com: Bring technologists and members of the intelligence community together to figure out what to do about unbreakable encryption and guess what they conclude? They conclude that they don’t really need to worry about it.
LinuxSecurity.com: Three and a half years after he sought temporary asylum in the Ecuadorean embassy in London only to find himself a captive instead, a UN group has ruled that UK and Swedish authorities unlawfully detained WikiLeaks founder Julian Assange in violation of their international human rights obligations.
LinuxSecurity.com: On Sunday, an account on Twitter posted a Department of Homeland Security staff directory with 9,355 names. Shortly after the DHS data was posted, the account went on to claim that an additional data dump focused on 20,000 FBI employees was next.
LinuxSecurity.com: Days after a group of concerned professors raised alarm bells over a new network monitoring system installed at the University of California, Berkeley and the other nine campuses of the University of California system, a separate committee of system-wide faculty has now given its blessing.
Type: Vulnerability. Microsoft VBScript and JScript are prone to multiple remote memory-corruption vulnerabilities; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to an information-disclosure vulnerability; fixes are available.
security update
Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.
Type: Vulnerability. Microsoft Edge is prone to a remote privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Edge is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.
Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Android is prone to a remote security vulnerability.
Type: Vulnerability. Adobe Flash Player and AIR are prone to multiple remote code-execution vulnerabilities; fixes are available.
Type: Vulnerability. Adobe Flash Player and AIR are prone to multiple unspecified memory-corruption vulnerabilities; fixes are available.
Type: Vulnerability. Adobe Flash Player and AIR are prone to a stack-based buffer-overflow vulnerability; fixes are available.
Type: Vulnerability. Adobe Flash Player and AIR are prone to multiple remote code-execution vulnerabilities; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
security update
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
LinuxSecurity.com: Updated dnf patch —- Update to bugfix release 2015.5.9, patched with properdnf support
LinuxSecurity.com: This update together with previous releases addresses the followingvulnerabilities: – CVE-2015-7096 – CVE-2015-7098 Additional fixes: – DisableDNS prefetch when a proxy is configured. – Reduce the maximum simultaneousnetwork connections to match other browsers. – Make WebKitWebView alwayspropagate motion-notify-event signal. – Add a way to force acceleratingcompositing mode at runtime using an environment variable. – […]
LinuxSecurity.com: updated to 3.2 (#1301310)
LinuxSecurity.com: Security Report Summary
A lot happens in the security world, some big and some small, and many stories get lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. U.S. Police Union Data Breach In the past week, a […]
The University of Central Florida (UCF) has revealed that it has experienced a major data breach. Up to 63,000 people are thought to be affected by the incident. The post 63,000 people affected by UCF data breach appeared first on We Live Security.
LinuxSecurity.com: Ask one of the foremost cryptographers of the modern generation what the biggest privacy issue is today and you might expect something like backdoored encryption or government spying.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Silverlight is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Silverlight is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft VBScript and JScript are prone to an information disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft VBScript and JScript are prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a memory-corruption vulnerability; fixes are available.
LinuxSecurity.com: It’s still not clear how, but a disproportionately large number of websites that run on the WordPress content management system are being hacked to deliver crypto ransomware and other malicious software to unwitting end users.
LinuxSecurity.com: Multiple vulnerabilities have been found in QEMU, the worst of which may allow a remote attacker to cause a Denial of Service or gain elevated privileges from a guest VM.
LinuxSecurity.com: New MPlayer packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix security issues. [More Info…]
LinuxSecurity.com: New php packages are available for Slackware 14.0, 14.1, and -current to fix security issues. [More Info…]
LinuxSecurity.com: New openssl packages are available for Slackware 14.0, 14.1, and -current to fix a security issue. [More Info…]
LinuxSecurity.com: New mozilla-firefox packages are available for Slackware 14.1 and -current to fix security issues. [More Info…]
LinuxSecurity.com: Prosody 0.9.10 ============== A summary of changes in this release: Security——– * mod_dialback: Adopt key generation algorithm from XEP-0185, toprevent impersonation attacks (CVE-2016-0756) Fixes and improvements———————- * Startup: Open /dev/urandom read-only, to fix afailure to start on some systems (fixes #585) * Networking: Improve handling ofthe ‘select’ network backend running out of file descriptors […]
security update
Threat Intelligence has become common throughout the cyber security landscape used in traditional information technology platforms from next generation firewalls, application load balancers, SIEM and other threat monitoring and prevention tools. With the pervasive growth of IoT initiatives and concerns around how to protect operational infrastructures from malicious actors an understanding of how existing threat […]
More than perhaps any other security topic, encryption really seems to perplex a lot of people. So, let’s take a closer look – from basics to best practice. The post Encryption 101: What is it? When should I use it? appeared first on We Live Security.
In recognition of Facebook’s 12th birthday and its 1.2 billion active users who still enjoy using it, a timely guide on how to keep your account secure. The post Facebook at 12: Bigger, better and securer appeared first on We Live Security.
The European Commission and the US have agreed on a landmark new deal that will seek to boost the security of ‘transatlantic data flows’, it has been revealed The post New security measures to protect EU data flows to the US appeared first on We Live Security.
LinuxSecurity.com: The first serious look at the government’s plans for a new internet surveillance law has demonstrated just how much confusion there still remains about the legislation.
LinuxSecurity.com: One of the benefits of the next-generation Internet protocol known as IPv6 is the enhanced privacy it offers over its IPv4 predecessor. With a staggering 2128 (or about 3.4?1038) theoretical addresses available, its IP pool is immune to the types of systematic scans that criminal hackers and researchers routinely perform to locate vulnerable devices […]
LinuxSecurity.com: An open source network utility used by administrators and security professionals contains a cryptographic weakness so severe that it may have been intentionally created to give attackers a surreptitious way to eavesdrop on protected communications, its developer warned Monday.
LinuxSecurity.com: Websites that rely on the Tor anonymity service to cloak their server address may be leaking their geographic location and other sensitive information thanks to a setting that’s turned on by default in many releases of Apache, the world’s most widely used Web server.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
