Menu

Monthly Archives: September 2016

Russia, Others Indeed Could Hack The Vote
Hackers take over Tesla Model S while car is moving
PoodleCorp DDoS Blizzard Servers Twice in Last 24 Hours
Caught between security and stupidity
Bossie Awards 2016: The best open source networking and security software
Bossies 2016: The Best of Open Source Software Awards
IT security: 3 things you need to know now
Wow, RIP hackers … It’s Cyber-Lord Blunkett to the rescue for UK big biz
Police warn of malware-laden USB sticks dropped in letterboxes
Greybeards beware: Hair dye for blokes outfit Just For Men served trojan
BT’s Wi-Fi Extender works great – at extending your password to hackers
10-second hijack hole could kill any Facebook profile
Citrix swats Sweet32 bug by just turning off old ciphers
Anonymous Targets Italian Healthcare Sites Against ADHD Treatment
Apple Squashes 68 Security Bugs With Sierra Release
Mamba Ransomware Encrypts Hard Drives Rather Than Files

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

CloudFlare offers web encryption up the wazoo
Experts Want Transparency From Government’s Vulnerabilities Equities Process
Fake FedEx ‘missed delivery’ emails infecting devices with ransomware

LinuxSecurity.com: Several security issues were fixed in the kernel.

LinuxSecurity.com: Several security issues were fixed in the kernel.

LinuxSecurity.com: Several security issues were fixed in the kernel.

LinuxSecurity.com: Several security issues were fixed in the kernel.

LinuxSecurity.com: Several security issues were fixed in the kernel.

LinuxSecurity.com: The system could be made to run programs as an administrator.

LinuxSecurity.com: The system could be made to run programs as an administrator.

LinuxSecurity.com: An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Python Imaging Library could be made to crash if it received specially craftedinput or opened a specially crafted file.

Tesla Fixes Critical Remote Hack Vulnerability
Mobile review website MoDaCo coughs to data breach
Cisco customers targeted by hackers using leaked NSA hacking tools
Watch Chinese hackers taking control of Tesla’s brakes from 12 miles away
House panel looking into Reddit post linked to Clinton’s deleted email
Android Banking Trojan First to Gain Root Privileges
Payment Gateway Data Breach Exposes Financial Details of 324,000 users
Vulnerability Patched in WordPress Theme That Allows Unrestricted Uploads
Android community MoDaCo suffers data breach, user database stolen
Student cybervandal earns $300,000 for hacking US Airlines
Maker of smart vibrator sued for snooping on customers’ use
How any Facebook page could have been hijacked or deleted, in just 10 seconds
Watch Teslas being hacked as they drive, from up to 20 km away
Going, going, done: Trio of prolific auction fraud fraudsters jailed
Hackers claim they breached Aussie point-of-sale tech firm, try to sell ‘customer DB’
Robot arrested for allegedly recording voters at a political rally
Seagate NAS hack should scare us all

No fewer than 70 percent of internet-connected Seagate NAS hard drives have been compromised by a single malware program. That’s a pretty startling figure. Security vendor Sophos says the bitcoin-mining malware Miner-C is the culprit.I’m surprised this story hasn’t garnered more attention. Perhaps it’s because we’re talking only 7,000 hard drives possibly in total, or […]

Online scammers speed up: Hit gold every 15 seconds
How one man could have deleted any Facebook page
Microsoft lets Beijing fondle its bits in new source code audit hub

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Bypass an iPhone 5c’s passcode lock for $100
Mozilla Patching Firefox Certificate Pinning Vulnerability
Facebook Fixes Vulnerability That Led to Account Takeover, Pays Researcher $16K
US Election 2016: 3 Privacy threats to voter data this campaign season
Spyware Targeting Overseas Travelers Removed from Google Play
Misspelled Malwarebytes isn’t the real deal. It’s ransomware!
FBI or no FBI – how one man says he can crack an iPhone for less than $100
Cisco Warns of IOS Flaw Vulnerable to ShadowBrokers Attack
Uninstall your anti-virus says Amazon, if you want to work for us from home
324,000 payment cards breached, CVVs included, source still unknown!
Bullocks need privacy too! Google Street View blurs ruminant’s face
Cisco patches Equation group exploit in IOS, IOS XE, and IOS XR devices
Mooncake thieves fired from Alibaba’s infosec department
Password-protect your Wi-Fi hotspots and ask for user details too, rules ECJ
Brits: Can banks do biometric security? We’d trust them before the government
Facebook and Twitter team up with news orgs to help stop hoax news
Microsoft snubs alert over Exchange hole
Science news journal EurekAlert down after hack
Cybersecurity becoming a key boardroom agenda item

An increase in the number of cyberattacks and growing awareness of the threat has made cybersecurity a key boardroom level consideration. The post Cybersecurity becoming a key boardroom agenda item appeared first on WeLiveSecurity.

Security scores for cloud companies on the way
Fight cybercrime by “plug and play” encrypting all data and communications
Dark web drug sellers shutter location-tracking EXIF data from photos
FBI overpaid $999,900 to crack San Bernardino iPhone 5c password
Mozilla will patch zero-day Firefox bug to fiddle man-in-the-middle diddle
How an attacker could exploit Windows Safe Mode to steal users’ passwords
Let’s Encrypt won its Comodo trademark battle – but now fan tools must rename
Artificial Intelligence can Decode and Unblur Pixelated Images
Turns out iPhone 5c can be hacked with a $100 hardware
Hacker Shows How to Hack Any Facebook Page; Earns $16k as Bug Bounty
Snowden Slammed in House Committee Report

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Fancy Bear Hackers Leak More WADA Data; Accuse More Athletes of Doping

Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation. For the stable distribution (jessie), this problem has been fixed in version 8.0.14-1+deb8u3. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your tomcat8 packages.

Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation. For the stable distribution (jessie), this problem has been fixed in version 7.0.56-3+deb8u4. We recommend that you upgrade your tomcat7 packages.

FBI Encouraging Ransomware Victims To Report Infections
Bugs in Signal Messaging App Corrupt Attachments, Crash App
This Ransomware Exposes Users’ Location Data on the Internet
Researcher Proves Viability of NAND Mirroring to Bypass iPhone Passcode Restrictions
Anti-virus industry’s bête noire Tavis Ormandy to enter the lion’s den
Teen sues parents over embarrassing childhood photos on Facebook