Menu

Monthly Archives: September 2016

Threatpost News Wrap, September 16, 2016
Cover your webcam – protect your privacy from hackers

There’s a lot that happens in the cybersecurity world, with many stories getting lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Patch Tuesday Changing Update Format In one of the largest changes that Microsoft has implemented, […]

National Cyber Security Centre to shift UK to ‘active’ defence
Judge Decides to Extradite Lauri Love to the US
Pramworld admits mailing list breach
FBI Director James Comey wants you to cover your webcam
The Feds Will Soon Be Able to Legally Hack Almost Anyone
Pardon Edward Snowden
Gmail outage for business users lasted over 12 hours
Some security advice for Colin Powell to better protect his Gmail account
Chrome and Firefox mark ThePirateBay.org as Malicious Site Again
You call it ‘hacking.’ I call it ‘investigation’
Emerging technologies are poking holes in security
The real threat to our elections: Disinformation and doubt
New Google API cryptographically secures Chromebooks
Ransomware scum infect Comic Relief server: Internal systems taken down
Researcher says Patch Tuesday fix should have been made earlier
Remote hacker nabs Win10 logins in ‘won’t-fix’ Safe Mode* attack
Cisco drops patch for nasty WebEx remote code execution hole
Online Ad Service ClixSense Hacked; 6M Plain-Text Passwords Leaked
Encryption backdoors? It’s an ongoing dialogue, say anti-terror bods
It’s OK for the FBI’s fake hacks to hack suspects’ PCs, says DoJ watchdog
Neverquest Trojan Gets Big Summer Update

Risk Medium Date Discovered September 13, 2016 Description Microsoft Internet Explorer and Edge are prone to an information disclosure vulnerability. Attackers can exploit this issue by enticing an unsuspecting user to view a specially crafted webpage. Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks. Edge and Internet explorer […]

Attack Leverages Windows Safe Mode
Snowden: 4 big security and privacy assumptions he undermined

Oliver Stone’s movie about Edward Snowden, which opens on Friday, September 16th, 2016, has a lot of people looking back at one of the biggest information security breaches in US history, the one we learned about in June, 2013. That’s when the UK-based Guardian newspaper published classified information about the mass electronic surveillance activities of […]

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security, bug fix, and enhancement update Advisory ID: RHSA-2016:1847-01 Product: […]

Red Hat: 2016:1875-01: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Red Hat: 2016:1883-01: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Debian: 3667-1: chromium-browser: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3667-1 security@debian.org https://www.debian.org/security/ Michael Gilbert September 15, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : chromium-browser CVE ID : CVE-2016-5170 CVE-2016-5171 CVE-2016-5172 CVE-2016-5173 CVE-2016-5174 CVE-2016-5175 CVE-2016-7395 Several vulnerabilities have been discovered in the chromium web browser. CVE-2016-5170 A use-after-free issue […]

Debian: 3666-1: mysql-5.5: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3666-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 14, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : mysql-5.5 CVE ID : CVE-2016-6662 Dawid Golunski discovered that the mysqld_safe wrapper provided by the MySQL database server insufficiently restricted the load path for custom […]

Microsoft Shuts Down Zero Day Used in AdGholas Malvertising Campaigns
Cisco Patches Critical WebEx Meetings Server Vulnerability
Can you stay anonymous by hiding your face?
Hacked TalkTalk data used in scamming people with thousands of pounds
Trump website server config snafu left interns’ CVs exposed
How one teen gained access to T-Mobile’s network for free – without any data plan or contract
Bruce Schneier on Probing Attacks Testing Core Internet Infrastructure
DDoSers do it more now, but they do it less fiercely*
Google offers $200,000 for Android-busting exploit
Will Congress ever vote on the “The Stop Mass Hacking Act”?
Internet of targets: Webcams and routers in the crosshairs of bad guys

Mass surveillance, stolen data, passwords and misused sensitive information; it seems that there is so much to worry about these days when it comes to your online privacy. All most people want is to browse the web and enjoy its treats instead of bumping into malware or other problems, right? Then you read about things occurring online that […]

‘Cyber Terrorists’ Hack Housing Authority Data; Demand $4k Ransom
Why hackers hack: Is it all about the money?
Cybersecurity In The Obama Era
Hack an Android phone remotely, and win $200,000
Hackers found 47 new vulnerabilities in 23 IoT devices at DEF CON
NTP reflection attacks hit record high
Mr. Robot eps2.9pyth0n-pt1.p7z – the security review
Hacker and chums jailed over gold bullion hack, track ‘n’ grab scam
Turning the tables on a scammer… by contacting his mum on Facebook
Gutted: 6.6M cleartext creds, dox, breached in ClixSense site hack
Double-dipping malware steals iOS creds and roots Android
Google GPS grab felt like a feature, was actually a bug
35,000 ARRIS cable modems at risk from firmware dumper bot
French hackers selling hidden .22 calibre pen guns on secret forums

It was discovered that there was a CSRF vulnerability in mailman, a web-based mailing list manager, which could allow an attacker to obtain a user’s password. For the stable distribution (jessie), this problem has been fixed in version 1:2.1.18-2+deb8u1. For the unstable distribution (sid), this problem has been fixed in version 1:2.1.23-1. We recommend that […]

Several vulnerabilities have been discovered in the chromium web browser. CVE-2016-5170 A use-after-free issue was discovered in Blink/Webkit. CVE-2016-5171 Another use-after-free issue was discovered in Blink/Webkit. CVE-2016-5172 Choongwoo Han discovered an information leak in the v8 javascript library. CVE-2016-5173 A resource bypass issue was discovered in extensions. CVE-2016-5174 Andrey Kovalev discoved a way to bypass […]

Discovered: September 15, 2016 Updated: September 15, 2016 3:44:33 PM Type: Trojan Infection Length: Varies Systems Affected: Linux Linux.Trojan is a generic detection used to identify malicious software that targets computers running the Linux operating system. Antivirus Protection Dates Initial Rapid Release version September 15, 2016 Latest Rapid Release version September 15, 2016 Initial Daily […]

Google Play obsessed with tracking Android users’ every move
DualToy Windows Trojan Attacks Android, iOS Devices

Risk High Date Discovered September 13, 2016 Description Microsoft ASP.NET Core MVC is prone to multiple privilege escalation vulnerabilities. Attackers can exploit these issues to gain elevated privileges. Microsoft ASP.NET Core MVC 1.0.0 is vulnerable. Technologies Affected Microsoft ASP.NET Core MVC 1.0.0 Recommendations Block external access at the network boundary, unless external parties require service. […]

Risk Medium Date Discovered September 13, 2016 Description Microsoft Application Virtualization is prone to an information-disclosure vulnerability. An attacker can leverage this issue to obtain sensitive information that may aid in further attacks. Technologies Affected Microsoft Office 2007 SP3 Microsoft Office 2010 Service Pack 2 (32-bit editions) Microsoft Office 2010 Service Pack 2 (64-bit editions) […]

Phony Pokémon GO Android App Gave Attackers Root Access
Snowden Makes Case for a Presidential Pardon

An update for flash-plugin is now available for Red Hat Enterprise Linux 5 Supplementary and Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: flash-plugin security update Advisory ID: RHSA-2016:1865-01 Product: Red Hat Enterprise Linux Supplementary Advisory […]

Slackware: 2016-257-01: mariadb / mysql: Security Update Posted by Anthony Pell    New mariadb or mysql packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…] [slackware-security] mariadb / mysql (SSA:2016-257-01) New mariadb or mysql packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a […]

WADA cyberattack compromises agency’s database

The World Anti-Doping Agency (WADA) has revealed that it was the victim of a cyberattack, which it has attributed to the Russian cyberespionage group, Tsar Team (APT28). According to the agency, the group, which also goes by the moniker Fancy Bear, was able to gain access to its Anti-Doping Administration and Management System (ADAMS) database. […]

AdBlock Plus launches its ad-selling platform
Tenable brings network visibility into Google Cloud Platform
Adblock Plus wants to put more ads on your screen
A single ransomware network has pulled in $121 million
Pay-to-click ad service hacked, 6.6M plaintext passwords dumped
Google Project Zero Prize Pays $200,000 for Critical Vulnerability Chains
65 expert speakers reveal secure identity management solutions at Biometrics 2016
Surveillance Middlemen Make it Harder to Track Who’s Responsible For Hacks
Long-Secret Stingray Manuals Detail How Police Can Spy on Phones
Instagram users to take control over abusive comments
Microsoft Intune to support Android for Work
Google offers $200K for top prize in new Android hack challenge
Hackers smear Olympic athletes with data dump of medical files
US National Security Agency gets CREST smile
So, Gov.UK infosec in 2015. ‘Chaotic’. Cost £300m. NINE THOUSAND data breaches…
Logins for US Navy, NASA’s JPL among US gov logins sold on deepweb
Great British Block-Off: GCHQ floats plan to share its DNS filters
Top infosec vendors, cops, liberate thousands from ransomware
Researcher reports XSS hole in Google France
Sports doping agency WADA says hackers lifted Olympic athletes’ medical records

Dawid Golunski discovered that the mysqld_safe wrapper provided by the MySQL database server insufficiently restricted the load path for custom malloc implementations, which could result in privilege escalation. The vulnerability was addressed by upgrading MySQL to the new upstream version 5.5.52, which includes additional changes, such as performance improvements, bug fixes, new features, and possibly […]

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

A patchtastic day for Flash and Windows users – don’t delay!
Will iOS 10, “the biggest release of iOS ever,” brick your device?
Using a thing made by Microsoft, Apple or Adobe? It probably needs a patch today
This man is creating a chatbot for his mom so they can talk after she dies
Hacker jailed after stealing thousands of pounds worth of gold bullion
Microsoft Patches 47 Vulnerabilities with September Patch Tuesday
‘Now the cyber is so big’ says Donald Trump