Menu

Monthly Archives: October 2016

Happy Halloween! To commemorate this annual night of fright, our team wanted to accentuate the unpredictability of cyber threats. What they came up with was not only funny and entertaining, but also serves as a reminder to stay vigilant when online. This Halloween and beyond, remember these sage words of advice. Files that used to be benign can […]

Google drops a zero-day on Microsoft: Web giant goes public with bug exploited by hackers
Hacker busted after laundering money using his own email and IP address
Google Reveals Windows Kernel Zero Day Under Attack

LinuxSecurity.com: update to upstream release 0.2.8.9

Nymaim Dropper Updates Delivery, Obfuscation Methods
America has one month to stop the FBI getting its global license to hack
Melbourne Cup is ‘top op for hacked camera DDoS extortionists’

LinuxSecurity.com: An update for mariadb55-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

LinuxSecurity.com: KDE PIM Applications 16.08.2, https://www.kde.org/announcements/announce-applications-16.08.2.php

ShadowBrokers Dumps Lists of Equation Group Hacked Servers
WhatsApp Blasted by EU Data Protection Group Over Facebook Sharing
Hacker arrested for Jamming 911 Emergency Call System with DDoS Attack
Scary security: Halloween costume ideas from the EFF and us
Why did WhatsApp change its mind over privacy? The EU wants answers
Appointments on hold as (computer) virus wreaks havoc with NHS trust systems
Could a ‘good worm’ save the Internet of Things from the Mirai botnet?
Halloween Special: three zombie security myths that just won’t die
Electronic Arts (EA) Blocks Origin-Based Games in Myanmar
10 gadgets every white hat hacker needs in their toolkit

Here’s a list of the 10 tools every white hat hacker needs in their toolkit, says ESET’s Lucas Paus. The post 10 gadgets every white hat hacker needs in their toolkit appeared first on WeLiveSecurity.

This is the email that hacked Hillary Clinton’s campaign chief
Joomla websites attacked en masse using recently patched exploits
Trick or threat? How zombie IoT devices surprised the internet

It seems the current DDoS tactics from cybercriminals is to gain control over millions of IoT devices and direct their power towards any target they choose. The post Trick or threat? How zombie IoT devices surprised the internet appeared first on WeLiveSecurity.

Shadow Brokers leak systems hacked by NSA – mostly mail and uni servers in India, China
Why blockchain’s growing pains will be worth it
History and Evolution of the Locky Ransomware

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 5.9 Long Life. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 5.6 Long Life. Red Hat Product Security has rated this update as having a security impact [More…]

Buggy components still dog Java apps
17 essential tools to protect your online identity, privacy
Boffin’s anti-worm bot could silence epic Mirai DDoS attack army
Obey Google, web-masters, or it will say you can’t be trusted

LinuxSecurity.com: the new package fixes the CVE-2016-7966. for more info please take a look athttps://www.kde.org/info/security/advisory-20161006-1.txt

Boffins predict web scams with domain registration data
130 serious Firefox holes plugged this year
DROWN-ing Xcode developer? Apple’s thrown you a lifebelt
US Voter Data Leaked Again; This Time Multiple States are Involved
AtomBombing; An Injection Code that Infects Multiple Processes in Windows
Electronic Arts, EA Servers Down Again (Updated)
As the clocks go back, UK Apple users targeted by smishing campaign
HackForums delete “Server Stress Testing” amidst links with Dyn DDoS Attack
Hardware Firewall: Choosing the Right Firewall Distribution
Google to Make Certificate Transparency Mandatory By 2017
‘Hacker’ accused of idiotic plan to defraud bank out of $1.5 million
Australian Red Cross apologizes for largest Aussie data breach to date
DMCA updated – toaster penetration testing gets green light in America
Red Cross Data Leak; Personal Data of 550,000 Blood Donors Stolen
Lad cuffed after iOS call exploit knocks out Arizona 911 center
Florida man ran $1.35m hack-and-spam racket with 50m-plus addresses
Danish Payment Processing Firm Suffers Breach 100k Credit Cards Stolen
Mirai Vulnerability Disclosed, But Exploits May Constitute Hacking Back

LinuxSecurity.com: An update for nodejs-tough-cookie and nodejs is now available for Red Hat OpenShift Container Platform 3.1, 3.2, and 3.3. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 6.5 Advanced Update Support and Red Hat Enterprise Linux 6.5 Telco Extended Update Support. [More…]

LinuxSecurity.com: An update for flash-plugin is now available for Red Hat Enterprise Linux 5 Supplementary and Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for openstack-manila-ui is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for openstack-manila-ui is now available for Red Hat OpenStack Platform 8.0 (Liberty). Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 7.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for openstack-manila-ui is now available for Red Hat OpenStack Platform 9.0 (Mitaka). Red Hat Product Security has rated this update as having a security impact [More…]

Ensuring that ICS/SCADA isn’t our next IoT nightmare

Fake BSOD Lock Screens Popping Up Again In a nod to screen-locking malware from past years, a new variant has arrived that now requests a simple call to support for assistance. Rather than demand a ransom to remove the fake screen, it provides a number to a fake tech support line and suggests calling them. […]

From: Apple Product SecurityReply to list APPLE-SA-2016-10-27-3 iTunes 12.5.2 for Windows iTunes 12.5.2 for Windows is now available and addresses the following: WebKit Available for: Windows 7 and later Impact: Processing maliciously crafted web content may result in the disclosure of user information […]

From: Apple Product SecurityReply to list APPLE-SA-2016-10-27-2 iCloud for Windows v6.0.1 iCloud for Windows v6.0.1 is now available and addresses the following: WebKit Available for: Windows 7 and later Impact: Processing maliciously crafted web content may result in the disclosure of user information […]

From: Apple Product SecurityReply to list APPLE-SA-2016-10-27-1 Xcode 8.1 Xcode 8.1 is now available and addresses the following: IDE Xcode Server Available for: OS X El Capitan v10.11.5 and later Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution […]

Celeb nude photo thief Ryan Collins sentenced to 18 months in jail
Apple Patches iTunes, iCloud for Windows, Xcode Server
Ukrainian Hackers Expose 2,337 Emails from Putin’s Most Trusted Advisor
550,000 Australian Red Cross blood donor details leaked

The personal details of 550,000 Australian Red Cross blood donors have been leaked in an event being described as Australia’s largest ever security breach. The post 550,000 Australian Red Cross blood donor details leaked appeared first on WeLiveSecurity.

Threatpost News Wrap, October 28, 2016
Researchers expose Mirai vuln that could be used to hack back against botnet
PayPal 2FA bypass – how did *that* get past testing?
This IoT Scanner Shows if Your Device is Vulnerable to be used in DDoS Attacks
Alleged ISIS member ‘wore USB cufflink and trained terrorists in encryption’
International Internet Day: A great network targeted by cybercriminals

As the world celebrates International Internet Day, we take a look at how cybercriminal activity has evolved online. The post International Internet Day: A great network targeted by cybercriminals appeared first on WeLiveSecurity.

New FCC rules impose privacy boost for ISP customers
Canadian police to text all phone numbers in vicinity of murder victim
Search engine results increasingly poisoned with malicious links
Nude celebrity photo hacker sentenced to 18 months in prison
Keep your LinkedIn profile secure with the Kevin Bacon rule
Researchers exploit unencrypted radio to hack wireless mice, keyboards
Windows Atom Tables popped by security researchers

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

Researchers tag new brace of bugs in NTP, but they’re fixable
‘Fappening’ hacker gets 18 months in US federal clapper
Bitcoin exchange boss going down for washing ransomware cash
Blood donors’ privacy anaemic after Red Cross data breach

LinuxSecurity.com: Security Report Summary

Dan Kaminsky calls for a few good hackers to secure the web
Scare tactics! Tech support scam claims your hard drive will be deleted

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

IDG Contributor Network: Cybersecurity Awareness Month: Shedding light on application security
Hackers Earn $215,000 for Hacking Nexus 6P, iPhone 6S