Menu

Monthly Archives: May 2016

APPLE-SA-2016-05-16-5 Safari 9.1.1 Subject: APPLE-SA-2016-05-16-5 Safari 9.1.1 From: Apple Product Security <email@hidden> Date: Mon, 16 May 2016 15:47:18 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-16-5 Safari 9.1.1 Safari 9.1.1 is now available and addresses the following: Safari Available for: OS X Mavericks v10.9.5, OS X Yosemite v10.10.5, and OS X El Capitan v10.11.5 Impact: […]

APPLE-SA-2016-05-16-4 OS X El Capitan 10.11.5 and Security Update 2016-003 Subject: APPLE-SA-2016-05-16-4 OS X El Capitan 10.11.5 and Security Update 2016-003 From: Apple Product Security <email@hidden> Date: Mon, 16 May 2016 15:47:01 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-16-4 OS X El Capitan 10.11.5 and Security Update 2016-003 OS X El Capitan 10.11.5 and […]

APPLE-SA-2016-05-16-3 watchOS 2.2.1 Subject: APPLE-SA-2016-05-16-3 watchOS 2.2.1 From: Apple Product Security <email@hidden> Date: Mon, 16 May 2016 15:45:42 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-16-3 watchOS 2.2.1 watchOS 2.2.1 is now available and addresses the following: CommonCrypto Available for: Apple Watch Sport, Apple Watch, Apple Watch Edition, and Apple Watch Hermes Impact: A malicious […]

APPLE-SA-2016-05-16-2 iOS 9.3.2 Subject: APPLE-SA-2016-05-16-2 iOS 9.3.2 From: Apple Product Security <email@hidden> Date: Mon, 16 May 2016 15:45:17 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-16-2 iOS 9.3.2 iOS 9.3.2 is now available and addresses the following: Accessibility Available for: iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later Impact: […]

APPLE-SA-2016-05-16-1 tvOS 9.2.1 Subject: APPLE-SA-2016-05-16-1 tvOS 9.2.1 From: Apple Product Security <email@hidden> Date: Mon, 16 May 2016 15:43:43 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-16-1 tvOS 9.2.1 tvOS 9.2.1 is now available and addresses the following: CFNetwork Proxies Available for: Apple TV (4th generation) Impact: An attacker in a privileged network position may be […]

A critical flaw in Symantec antivirus engine puts computers at risk of easy hacking
Database mix-up let some smart doorbell users see video from others’ homes
Defend yourself! Build a cyber security database

Data is king — for attackers as well as defenders. Malicious hackers have long collected and used data in a systematic manner. For example, they investigate all the public-facing servers of a particular target company, as well as document their IP addresses, services, software versions, and back-end relationships. They collect as much publicly accessible information […]

Woman Follows GPS, Goes Straight into Lake

Julien Bernard discovered that libndp, a library for the IPv6 Neighbor Discovery Protocol, does not properly perform input and origin checks during the reception of a NDP message. An attacker in a non-local network could use this flaw to advertise a node as a router, and cause a denial of service attack, or act as […]

Nulled.IO Hacking Forum Hacked, Trove of Data Stolen
Apple bans iPhone app that warned if you had been secretly hacked
Privacy and security fears – predictably – impact US online commerce

Security professionals gave a large collective sigh of sadness this past weekend when BoingBoing published this headline by Cory Doctorow: “Half of Americans reluctant to shop online due to privacy & security fears.” Sarcastic remarks like “No kidding” and “You don’t say” floated through the infosec ether. Why? Because anyone who has studied information security […]

PornHub Gets Hacked Days After Launching Bug Bounty Program

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3579-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso May 16, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : xerces-c CVE ID : CVE-2016-2099 Debian Bug : 823863 Gustavo Grieco discovered an use-after-free vulnerability in xerces-c, a validating XML parser library for C++, due to not properly handling invalid characters in XML input […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3578-1 security@debian.org https://www.debian.org/security/ Alessandro Ghedini May 14, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libidn CVE ID : CVE-2015-2059 It was discovered that libidn, the GNU library for Internationalized Domain Names (IDNs), did not correctly handle invalid UTF-8 input, causing an out-of-bounds read. This could allow attackers to […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3577-1 security@debian.org https://www.debian.org/security/ Alessandro Ghedini May 14, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : jansson CVE ID : CVE-2016-4425 Debian Bug : 823238 Gustavo Grieco discovered that jansson, a C library for encoding, decoding and manipulating JSON data, did not limit the recursion depth when parsing JSON arrays […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3576-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 13, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : icedove CVE ID : CVE-2016-1979 CVE-2016-2805 CVE-2016-2807 Multiple security issues have been found in Icedove, Debian’s version of the Mozilla Thunderbird mail client: Multiple memory safety errors may lead to the execution of arbitrary […]

OpAfrica: Anonymous Deface South African University, Huge Data Leaked
Security researchers crack new version of CryptXXX ransomware
Expect the unexpected: The importance of audit logging

Planning and policies are essential to good security, but it’s also important to expect the unexpected whenever humans and computers mix. Having a log of user activities can help you deal with those unforeseen circumstances. In our previous posts in this series, we talked about verifying people’s identities with authentication, and then using authorization and […]

5 ways Microsoft has improved SharePoint security
Google aims to block Flash by default for Chrome users, except for 10 white-listed sites
The security review: Online safety for families and TalkTalk

Welcome to this week’s security review, which includes an online safety guide for families over the years, the repercussions of last year’s data breach at TalkTalk, and a warning from Adobe of a Flash zero-day vulnerability. Online safety for families across the years Looking for a handy guide to cyber-parenting in the 21st century, one […]

Gustavo Grieco discovered an use-after-free vulnerability in xerces-c, a validating XML parser library for C++, due to not properly handling invalid characters in XML input documents in the DTDScanner. For the stable distribution (jessie), this problem has been fixed in version 3.1.1-5.1+deb8u2. For the testing distribution (stretch), this problem has been fixed in version 3.1.3+debian-2. […]

Discovered: May 16, 2016 Updated: May 16, 2016 3:01:41 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows NT, Windows Vista, Windows XP Trojan.Ransomcrypt.AQ is a Trojan horse that encrypts files on the compromised computer and asks the user to pay in order to decrypt them. Antivirus […]

Apple Deletes App That Informed Users If Their iPhone is Hacked

It was discovered that libidn, the GNU library for Internationalized Domain Names (IDNs), did not correctly handle invalid UTF-8 input, causing an out-of-bounds read. This could allow attackers to disclose sensitive information from an application using the libidn library. For the stable distribution (jessie), this problem has been fixed in version 1.29-1+deb8u1. For the testing […]

Gustavo Grieco discovered that jansson, a C library for encoding, decoding and manipulating JSON data, did not limit the recursion depth when parsing JSON arrays and objects. This could allow remote attackers to cause a denial of service (crash) via stack exhaustion, using crafted JSON data. For the stable distribution (jessie), this problem has been […]

ThePirateBay.se is now ThePirateBay.org
Anonymous Shut Down 5 More Banking Websites for OpIcarus

Multiple security issues have been found in Icedove, Debian’s version of the Mozilla Thunderbird mail client: Multiple memory safety errors may lead to the execution of arbitrary code or denial of service. For the stable distribution (jessie), these problems have been fixed in version 38.8.0-1~deb8u1. For the unstable distribution (sid), these problems will be fixed […]

Government Spy Truck Guided As Google Street View Car on the Prowl in Philadelphia
Senators will introduce a bill to limit government hacking warrants
Severe 7-Zip vulnerabilities cause top security, software tools patch panic
The sport of threat hunting, and who should be in the game
Panama paper trail goes online with massive searchable database
Samsung File Patent for Projector Smartwatch That Uses Skin as Display Screen

It was discovered that XStream, a Java library to serialize objects to XML and back again, was susceptible to XML External Entity attacks. For the stable distribution (jessie), this problem has been fixed in version 1.4.7-2+deb8u1. For the testing distribution (stretch), this problem has been fixed in version 1.4.9-1. For the unstable distribution (sid), this […]

SQL Injection Flaw: Hardcore Fetish Forum Hacked, 100k Users’ Data Leaked

Risk High Date Discovered February 21, 2006 Description Apple Mac OS X is prone to an arbitrary command-execution vulnerability when processing metadata in archive files. Commands would be executed in the context of the user opening the archive file. Attackers can reportedly use Safari and Apple Mail as exploitation vectors for this vulnerability. Mac OS […]

So long .SE, The Pirate Bay loses domain name court battle in Sweden

Posted by Anthony Pell    An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: chromium-browser security update Advisory ID: RHSA-2016:1080-01 Product: Red Hat Enterprise Linux Supplementary Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-1080.html […]

An update for flash-plugin is now available for Red Hat Enterprise Linux 5 Supplementary and Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: flash-plugin security update Advisory ID: RHSA-2016:1079-01 Product: Red Hat Enterprise Linux Supplementary Advisory […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3575-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 12, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libxstream-java CVE ID : CVE-2016-3674 It was discovered that XStream, a Java library to serialize objects to XML and back again, was susceptible to XML External Entity attacks. For the stable distribution (jessie), this […]

An update for docker is now available for Red Hat Enterprise Linux 7 Extras. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: docker security, bug fix, and enhancement update Advisory ID: RHSA-2016:1034-01 Product: Red Hat Enterprise Linux Extras Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-1034.html Issue […]

Several security issues were fixed in QEMU. ========================================================================== Ubuntu Security Notice USN-2974-1 May 12, 2016 qemu, qemu-kvm vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS – Ubuntu 15.10 – Ubuntu 14.04 LTS – Ubuntu 12.04 LTS Summary: Several security issues were fixed in QEMU. Software Description: […]

Malware attacks on two banks have links with 2014 Sony Pictures hack
Best Choice for Teens’ Cyber Safety – Parental Control App!
Online safety for families across the years

Parenting has changed. In the digital age there are now more opportunities, through technology, to create experiences that were previously impossible and to enrich the lives of your children. Yet, at the same time, there are even greater and more complex risks, threats that were non-existent half a decade ago. For many moms and dads, […]

SWIFT warns of malware attack on another of its customers
Twitter May Have Cut Spy Agencies Off From Its Flood of Data
Mozilla Wants More Details on Browser Bug Exploited in an FBI Probe
Another Eurovision contestant? Even malware can ‘perform music’

On the 14th of May, more than two dozen talented musicians from Europe will compete in Stockholm in one of the longest-running television shows in history – Eurovision. For the 61th time, contestants representing members of the European Broadcasting Union will perform an original piece to compete for the jury’s and public’s favor in the […]

FBI/Apple privacy fight left out a major player: the data carriers
Anti-virus products, security devices affected by 7-Zip flaws
Jenkins security patches could break plug-ins
4 big plans to fix internet security
OpIcarus: Anonymous Shut Down 4 More Banking Websites
Time to trash Flash? If you’re not ready for that, you must update Adobe Flash now
Revolutionary Tech from MIT Researchers: Skin Cream Remove Wrinkles Instantly

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2016:1033-01 Product: Red […]

Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel-rt security and bug fix update […]

Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel-rt security, bug fix, and enhancement […]

An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: thunderbird security update Advisory ID: RHSA-2016:1041-01 Product: Red Hat Enterprise […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Red Hat: 2016:1033-01: kernel: Important Advisory Red Hat: 2016:1055-01: kernel-rt: Important Advisory Red Hat: 2016:1051-01: kernel-rt: Important Advisory Red Hat: 2016:1041-01: thunderbird: Important Advisory Slackware: 2016-132-01: mozilla-thunderbird: Security Update Red […]

An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: java-1.8.0-ibm security update Advisory ID: RHSA-2016:1039-01 Product: Red Hat Enterprise Linux Supplementary Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-1039.html Issue date: 2016-05-11 CVE Names: […]

Updated openshift packages that fix one security issue are now available for Red Hat OpenShift Enterprise 3.1. Red Hat Product Security has rated this update as having Moderate security [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: openshift security update Advisory ID: RHSA-2016:1038-01 Product: Red Hat OpenShift Enterprise Advisory URL: https://access.redhat.com/errata/RHSA-2016:1038 Issue date: 2016-05-11 CVE […]

An update for pcre is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: pcre security update Advisory ID: RHSA-2016:1025-01 Product: Red Hat Enterprise Linux […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3565-2 security@debian.org https://www.debian.org/security/ Sebastien Delafond May 11, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : monotone ovito pdns qtcreator softhsm Debian Bug : 823823 This updates fixes a regression introduced in botan1.10 by DSA-3565-1: packages depending on libbotan1.10 needed to be rebuilt against the latest version to function properly. […]

8 Reasons why you shouldn’t upgrade your system to Windows 10
Security Sessions: Unique security challenges for healthcare IT
Mozilla asks court to force FBI into revealing potential Firefox zero-day vulnerability
Review: An Undetectable Android Spying Software that No One Can Perceive
US Congress blocks Yahoo Mail after wave of ransomware attacks
SPF (SpeedPhish Framework) – E-mail Phishing Toolkit
Hacker Lexicon: SQL Injections, an Everyday Hacker’s Favorite Attack
Six months on from the TalkTalk hack – how has the firm suffered?
Mozilla wants US to disclose to it first any vulnerability found in Tor by government hackers
TalkTalk profits halve following last year’s major cyberattack

The UK-based telecommunications company TalkTalk has seen its profits more than halve, following last year’s “significant and sustained cyberattack”. Profits were down to $20 million compared with $46 million for the same period last year, which has largely been attributed to the financial fallout of the high-profile incident. The cost of the cyberattack, which was […]

Adobe warns of Flash zero-day vulnerability, being actively exploited by online criminals

As I write this, if you’re running Adobe Flash on your Windows, Mac, Linux or Chrome OS computer you’re potentially at risk. Adobe has issued a security advisory, warning of an as-yet unpatched critical security hole in its popular Flash player software that is reported to being actively exploited by criminals in the wild. No […]

Sophisticated AbbadonPOS malware upgraded in its attempt to exfiltrate credit card data from retailers

Discovered: May 12, 2016 Updated: May 12, 2016 10:56:36 AM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Trojan.Wortrik is a Trojan horse that sends spam email messages from the compromised computer. Antivirus Protection […]

This Hacker Got Bored, Wanted Some Fun So He Defaced Several Subreddits
US Congress Dumps Yahoo Mail Over Phishing Attacks

Risk High Date Discovered May 10, 2016 Description Microsoft Windows is prone to a local privilege-escalation vulnerability that occurs in the Windows kernel. A local attacker can exploit this issue to execute arbitrary code in kernel mode with elevated privileges. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted […]

Risk Medium Date Discovered May 10, 2016 Description Microsoft Windows is prone to a local security-bypass vulnerability. A local attacker can leverage this issue to bypass certain security restrictions and perform unauthorized actions. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells. Allow only trusted individuals to have […]

Microsoft Disabling Controversial Wi-Fi Sense Feature in Windows 10

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Slackware: 2016-132-01: imagemagick: Security Update Red Hat: 2016:1019-01: qemu-kvm-rhev: Important Advisory Ubuntu: 2972-1: OpenJDK 6 vulnerabilities Red Hat: 2016:0778-01: icedtea-web: Moderate Advisory Red Hat: 2016:0741-01: openssh: Moderate Advisory Red Hat: […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Slackware: 2016-132-01: imagemagick: Security Update Red Hat: 2016:1019-01: qemu-kvm-rhev: Important Advisory Ubuntu: 2972-1: OpenJDK 6 vulnerabilities Red Hat: 2016:0778-01: icedtea-web: Moderate Advisory Red Hat: 2016:0741-01: openssh: Moderate Advisory Red Hat: […]

Posted by Anthony Pell    Several security issues were fixed in OpenJDK 6. ========================================================================== Ubuntu Security Notice USN-2972-1 May 10, 2016 openjdk-6 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 12.04 LTS Summary: Several security issues were fixed in OpenJDK 6. Software Description: – openjdk-6: Open Source Java […]

Posted by Anthony Pell    An update for icedtea-web is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: icedtea-web security, bug fix, and […]

An update for openssh is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: openssh security, bug fix, and enhancement update Advisory ID: RHSA-2016:0741-01 […]

An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: kernel security, bug fix, and enhancement update Advisory ID: RHSA-2016:0855-01 […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Slackware: 2016-132-01: imagemagick: Security Update Red Hat: 2016:1019-01: qemu-kvm-rhev: Important Advisory Ubuntu: 2972-1: OpenJDK 6 vulnerabilities Red Hat: 2016:0778-01: icedtea-web: Moderate Advisory Red Hat: 2016:0741-01: openssh: Moderate Advisory Red Hat: […]