Menu

Monthly Archives: October 2016

Friday’s IoT-based DDoS attack has security experts worried
VASCO white paper- Strong authentication to solve your everyday banking problems
The only realistic plan to avoid DDoS disaster

Last Friday’s massive DDoS attack against Dyn.com and its DNS services slowed down or knocked out internet connectivity for millions of users for much of the day. Unfortunately, these sorts of attacks cannot be easily mitigated. We have to live with them for now.Huge DDoS attacks that take down entire sites can be accomplished for a […]

Microsoft: Watch out millennials for evil Security Essentials
Graduate recruitment site exposed 50,000 CVs sent to Virgin Media UK
MedSec’s St Jude pacemaker hacks confirmed by pen-tester
Joomla! readies patch for core vulnerability so critical it isn’t talking
Judge orders FBI to reveal whether White House launched ‘Tor pedo’ torpedo exploits

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

LinkedIn, Dropbox hack suspect named as Yevgeniy Nikulin by US prosecutors
It’s nearly 2017 and JPEGs, PDFs, font files can hijack your Apple Mac, iPhone, iPad
St. Jude Faces New Claim Heart Implants are Hackable
A boobytrapped JPEG could infect your iPhone. Upgrade to iOS 10.1 now
Firm recall webcams after confirming involvement in Dyn DDoS attack
Webcam firm recalls hackable devices after mighty Mirai botnet attack

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Chinese Manufacturer Recalls IOT Gear Following Dyn DDoS
App proves Rowhammer can be exploited to root Android phones – and there’s little Google can do to fully kill it
Fake Microsoft Installer Leads to Malware, Support Call Scam

LinuxSecurity.com: Security Report Summary

Risk Level: Very Low. Type: Trojan.

Hacker Who DDoSed Boston Hospital for OpJustina Facing Charges
Know your enemy: Training can help avoid cybersecurity pitfalls

European Cyber Security Month offers a great opportunity to remind people of some of the practices that can boost their cybersecurity skills. The post Know your enemy: Training can help avoid cybersecurity pitfalls appeared first on WeLiveSecurity.

Rowhammer Vulnerability Comes to Android
Russian indicted over LinkedIn and Dropbox mega-breaches
Dyn DDoS – what can we do right now to help prevent the next attack?
Jester defaces website but the Russian Government isn’t laughing
For rent: An IoT botnet to take down much of the internet
Post-Mirai, how to better protect your IoT devices
Chinese electronics biz recalls webcams at heart of botnet DDoS woes
Anonymous hacker charged with #opJustina DDoS attacks on hospitals
From There to Here (But Not Back Again)
Crashing a $1,000 Drone by Hacking the 3D Manufacturing System
French surveillance law is unconstitutional after all, highest court says
Chinese firm admits its hacked products were behind Friday’s massive DDOS attack
Mirai, Mirai, on the wall – through the looking glass of the attack on Dyn
Hacktivist crew claims it launched last week’s DDoS mega-attack
Dyn DDoS attack exposes soft underbelly of the cloud
PayPal’s 2FA proves too easy to bypass
How to delete your Yahoo account
Ageing GSM crypto cracked on commodity graphics rig

Risk Level: Very Low. Type: Trojan.

Hackers pop top ‘secure’ wireless keyboard and mouse kits, gain RCE
Thanks, IoT vendors: your slack attitude will get regulators moving
Brute force cred crunchers gifted Username Anarchy
Every LTE call, text, can be intercepted, blacked out, hacker finds
Mozilla plots TLS 1.3 future for Firefox
Data breach at Weebly affects 43 million users
DDoS attack on Dyn involved 10s of millions of hacked IP addresses
“No More Ransom” Campaign Saves 2,500 Ransomware Victims, 1.3 Mil Euros

security update

Mirai Botnet Linked to Massive DDoS Attacks on Dyn DNS
Pacemaker maker St Jude faces new security flaw claims from biz short-selling its stock
“Dirty COW”, the most dangerous Linux Bug for the last 9 years
Mirai-Fueled IoT Botnet Behind DDoS Attacks on DNS Providers

  A portion of the internet went down after suffering a crippling blow from a series of global attacks on a cloud-based Internet Performance Management (IPM) company, called Dyn. Major websites including Twitter, Reddit, Spotify and even game servers for Battle Field 1 have been affected. This was all made possible by an unknown group of […]

  DDoS Attack on Dyn Crippled the Internet A portion of the internet went down after suffering a crippling blow from a series of global attacks on a cloud-based Internet Performance Management (IPM) company, called Dyn. Major websites including Twitter, Reddit, Spotify and even game servers for Battle Field 1 have been affected. Malware Using Trump’s […]

Como–D’oh! Infosec duo exploits OCR flaw to nab a website’s HTTPS cert
Mozilla Turning TLS 1.3 On By Default With Firefox 52

LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 5 and Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for bind97 is now available for Red Hat Enterprise Linux 5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

LinuxSecurity.com: An update for java-1.7.0-oracle is now available for Oracle Java for Red Hat Enterprise Linux 5, Oracle Java for Red Hat Enterprise Linux 6, and Oracle Java for Red Hat Enterprise Linux 7. [More…]

Linux kernel bug: DirtyCOW “easyroot” hole and what you need to know
Millions of AdultFriendFinder user accounts hacked – again
Serious Dirty Cow Linux Vulnerability Under Attack
Threatpost News Wrap, October 21, 2016
Online crime leads to losses of £10.9 billion a year
Dyn dinged by DDoS: US DNS firm gives web a bad hair day
Dyn Confirms DDoS Attack Affecting Twitter, Github, Many Others
DDoS attack against DNS provider knocks major sites offline
Why you should be cautious of emails from friends or colleagues
Hax0rs sow Discord by using VoIP service to sling malware at gamers
DDoS Attack on DNS; Major sites including GitHub, Twitter Suffering Outage
Intel asserts its trademark rights against John McAfee
Hack us and you’re basically attacking America, says UK defence sec
Hackers Steal Data from Japanese Nuclear Facility
9 Sources For Tracking New Vulnerabilities
Cybercriminals target Brazilian routers with default credentials

Criminals are hunting for routers with default credentials and with vulnerabilities in their firmware, with Brazilians the main target. The post Cybercriminals target Brazilian routers with default credentials appeared first on WeLiveSecurity.

“Anonymous” Yik Yak users can be tracked down, say researchers