Menu

Monthly Archives: August 2016

PoodleCorp Shut Down Blizzard and League of Legends (NA) Servers

It was discovered that redis, a persistent key-value database, did not properly protect redis-cli history files: they were created by default with world-readable permissions. Users and systems administrators may want to proactively change permissions on existing ~/rediscli_history files, instead of waiting for the updated redis-cli to do so the next time it is run. For […]

The 10 Security Commandments for every SysAdmin

System administrators are responsible for the reliable operation of corporate IT resources, working around the clock to manage deployments and upgrades, as well as finding the fastest way to solve problems. Celebrating the 17th annual SysAdmin Day, we recognize their dedication and workplace contributions and want to show appreciation for their talent. However, we wondered […]

It was discovered that redis, a persistent key-value database, did not properly protect redis-cli history files: they were created by default with world-readable permissions. Users and systems administrators may want to proactively change permissions on existing ~/rediscli_history files, instead of waiting for the updated redis-cli to do so the next time it is run. For […]

Telegram App Hacked Again; Millions of Contacts Revealed

Red Hat: 2016:1532-02: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Two use-after-free vulnerabilities were discovered in DBD::mysql, a Perl DBI driver for the MySQL database server. A remote attacker can take advantage of these flaws to cause a denial-of-service against an application using DBD::mysql (application crash), or potentially to execute arbitrary code with the privileges of the user running the application. For the stable distribution […]

Central Ohio Urology Group Hacked; 223GB of Crucial Data Leaked (Updated)
The US Submarines with Cyber Offensive Features
How many zero-day vulns is Uncle Sam sitting on? Not as many as you think, apparently
Phoenix-based Banner Health Suffers Data Breach Affecting 3.7M
Three times as bad as malware: Google shines light on pay-per-install
PLC-Blaster Worm Targets Industrial Control Systems
AdBlock Plus blocked in China: 159m forbidden from stripping adverts
How over 30 Jeeps were Hacked into and Driven Away
Researcher hides stealthy malware inside legitimate digitally signed files

There’s a lot that happens in the security world, with many stories getting lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Banner Health Warns Patients Over Cyber Attack Recently, Banner Health has begun notifying nearly 4 […]

Gunter Ollmann on the Future of Ransomware, Exploit Kits, and IoT