Menu

Monthly Archives: September 2016

Blizzard Suffers DDoS Attack; Servers Go Down.. AGAIN
Uni student cuffed for ‘hacking professor’s PC to change his grades’
The Nastiest of all Ransomware Mamba Encrypts Entire Hard Drive

  It’s that time of week again. Our Threat Recap is bringing you the top news in cybersecurity from new OS releases to remote access of popular cars. Here are five of the major security stories happening this week. New Ransomware Targets Disk Drives With the current state of ransomware threatening computer systems around the […]

Here’s what you should know, and do, about the Yahoo breach

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: New irssi packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New pidgin packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New mozilla-firefox packages are available for Slackware 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: Security Report Summary

Largest DDoS attack ever delivered by botnet of hijacked IoT devices
Researchers Find ‘Severe’ Password Security Hole with iOS 10 Backups
Threatpost News Wrap, September 23, 2016
Michelle Obama’s passport – or a scan that looks like it – posted online
University Student Arrested for hacking computer and changing grades
Medical Devices Should Withstand Rigor, Expert Says
Mr. Robot security recap: 10 lessons learned from season 02

Cybersecurity and hacking play a leading role in the series, so with Mr. Robot season 02 almost over, we want to do a reality check on the scenarios we saw. The post Mr. Robot security recap: 10 lessons learned from season 02 appeared first on WeLiveSecurity.

Upgrading to iOS 10 may have made your backups a lot faster to crack
Hackers hit White House staffer’s Gmail account, raises security concerns by leaking sensitive emails
8 years of Android: malware, malicious apps, and how to stay safe

At eight years old, Android is hugely popular. Both with users and attackers. The post 8 years of Android: malware, malicious apps, and how to stay safe appeared first on WeLiveSecurity.

Vint Cerf’s dream do-over: 2 ways he’d make the internet different
Hackers have a treasure trove of data with the Yahoo breach
Akamai Kicks off Brian Krebs from its network after 665 Gbps DDoS attack
Half a billion Yahoo users victim to ‘biggest data breach in history’

Yahoo has confirmed that half a billion users may have had their data stolen in what has been described as the ‘biggest data breach in history.’ The post Half a billion Yahoo users victim to ‘biggest data breach in history’ appeared first on WeLiveSecurity.

Sky customers told to change passwords after massive Yahoo hack
BT investigates Yahoo hack, tells BT Yahoo mail users to reset passwords
YouTube is cleaning up and it wants your help!
Twitter says government requests for data still climbing
Change your password! Yahoo confirms data breach of 500 million accounts
Woo hoo, UK.gov has unveiled yet another tech creche – for infosec
OpenSSL swats a dozen bugs, one notable nasty
Report: NSA hushed up zero-day spyware tool losses for three years
Sad reality: It’s cheaper to get hacked than build strong IT defenses
Cops blasted for relying on IP addresses to hunt down suspects
Safe browsing checks fail as 16,000 WordPress sites hacked this year
Malware figures out it’s running on VMs and refuses to execute
Valid logins to your workplace are on the net, right now
US Homeland Security launches IoT willy-waving campaign
Yahoo says it was hacked; ‘state-sponsored actor’ stole 500 million accounts

security update

500 Million Yahoo Accounts Stolen By State-Sponsored Hackers
IDG Contributor Network: Tech leaders must act quickly to ensure algorithmic fairness
Half! a! billion! Yahoo! email! accounts! raided! by! ‘state! hackers!’
Drupal Patches Three Vulnerabilities in Core Engine
Yahoo confirms: hackers stole 500 million account details in 2014 data breach
Yahoo to announce breach of more than 200 million user accounts

LinuxSecurity.com: New openssl packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New pidgin packages are available for Slackware 13.0, 13.1, 13.37, 14.0, and 14.1 to fix security issues. [More Info…]

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Cisco Warns of Command Injection Flaw in Cloud Platform
DHS Announces Intent to Draft IoT Security Framework
Yahoo Reportedly to Confirm Breach of Hundreds of Millions of Credentials
Siri opens “smart” lock to let neighbor walk into a locked house
Eleven US cities to crack down on warrantless surveillance
Yahoo reportedly to confirm massive data breach
Donald Trump’s Website Caught Leaking Intern Résumé Files
Hackers are automatically seeding trackers with malware disguised as most popular downloads
Mr. Robot season 2 finale eps2.9_pyth0n-pt2.p7z – the security review
Don’t rely on Cortana to make your emergency calls
Malware Evades Detection with Novel Technique
Book of Eli: African targeted attacks

ESET’s latest research analyzes a piece of malware active since 2012, but which has targeted one specific country – Libya. The post Book of Eli: African targeted attacks appeared first on WeLiveSecurity.

Raum turns the most popular torrents on the web into malware spreading weapons
Chinese Researchers Hack Tesla S Models, Expose Bugs
Florida Man Charged With Hacking Linux Servers
More than 840,000 Cisco devices are vulnerable to NSA-related exploit
5 simple ways you can protect yourself from phishing attacks

With these top tips, you should have no trouble in keeping yourself protected against all sorts of phishing attacks. The post 5 simple ways you can protect yourself from phishing attacks appeared first on WeLiveSecurity.

Bank cyber heists are here to stay, says SWIFT security chief
Lockdown! Harden Windows 10 for maximum security
Black Team’s tool ‘RAUM’ is infecting torrent users with malware
Yahoo ‘expected to confirm massive data breach’, says Recode
DDoS attacks: For the hell of it or targeted – how do you see them off?
SWIFT warns of more ‘sophisticated’ attacks, readies anti-fraud tool
Google automates Apps OAuth token revocation

Risk Level: Very Low. Type: Worm.

Who on earth would want to use Google’s Allo chat app?
Danger USB! Oz police warn of malware in the letterbox
Cisco snaps shut remote pwnage hole in Cloud Services Platform
Almost any file is up for grabs when this Android banking trojan attacks
SWIFT Confirms Banks Still Being Targeted, Announces Mitigation Tool

security update

US cities promise to crack down on police surveillance tech

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

LinuxSecurity.com: Security Report Summary

Google Retreats on Some Allo Privacy Promises
iSpy Keylogger Targets Passwords, Skype, Webcams
US Firefighters: Samsung Galaxy Note 7 Not Guilty of Burning Jeep
Tesla Model S hacked from 12 miles away

A team of researchers was able to hack the controls of a Tesla Model S from a distance of 12 miles – adjusting the mirrors, locks and even slamming on the brakes. The post Tesla Model S hacked from 12 miles away appeared first on WeLiveSecurity.

Google weakens Allo privacy promises
Don’t plug it in! Scammers post infected USB sticks through letterboxes

  While ransomware has become a buzzword for some, cyber criminals have made it a lucrative business and one which they are constantly evolving. Each day, the Webroot BrightCloud® Threat Intelligence Platform monitors, classifies and scores 95% of the internet to discover 6,000 phishing sites and 80,000 variants of malware and PUAs. According to Webroot’s […]

Brian Krebs site hit with 665 Gbps DDoS attack; Largest Internet has ever seen
RIG Picks Up Where Neutrino Left Off, Pushes CrypMIC Ransomware
Mozilla Patches Certificate Pinning Vulnerability in Firefox
New guidelines: cybersecurity, privacy and your self-driving car
Secure Docker on Linux or Windows platforms
Kali Linux 2016.2 Delivers New Security Testing Options
Is Debian the gold standard for Linux security?