Menu

Monthly Archives: October 2016

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows Graphics Component is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Researchers Send Secure Passwords Using the Human Body
Samsung tells Galaxy Note 7 users to stop using it, and turn it off NOW
‘Cyber terrorist’ trades cufflinks for handcuffs
Yahoo has a creepy plan for advertising billboards to spy on you

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Multiple vulnerabilities have been found in Apache, the worst of which could allow HTTP request smuggling attacks or a Denial of Service condition.

LinuxSecurity.com: Groovy is vulnerable to a remote execution of arbitrary code when java serialization is used.

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

The next Google Chrome update will make it consume less RAM

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

TV5Monde was saved from airtime-KO hack by unplugging infected box

  Recently, source code for the Internet of Things (IoT) botnet malware, Mirai, was released on hack forums. This type of malware was used last month in an historic distributed-denial-of-service (DDoS) attack against KrebsOnSecurity, which was estimated to have sent 650 gigabits per second of traffic from unsecured routers, IP cameras, DVRs and more to […]

Cyberbullies could be jailed in the UK for ruining people’s lives
Turkey blocks cloud sites following huge data dump of stolen email
Why and how to delete your Yahoo email account permanently
Security fatigue is preventing us from being safe online

Individuals are demonstrating security fatigue when it comes to protecting themselves online, increasing their risk of being compromised by a cyberattack. The post Security fatigue is preventing us from being safe online appeared first on WeLiveSecurity.

StrongPity APT Covets Secrets of Crypto Users
These 60 dumb passwords can hijack over 500,000 IoT devices into the Mirai botnet
When DVRs Attack: A Post IoT Attack Analysis
Is it really a good idea to scam the scammers?
Ransomware: Expert advice on how to keep safe and secure

ESET’s Lysa Myers offer a detailed and comprehensive overview on how to stay safe against ransomware attacks, a threat that is growing in prominence. The post Ransomware: Expert advice on how to keep safe and secure appeared first on WeLiveSecurity.

12-year-old gets €100,000 Google bill after confusing AdWords and AdSense
Monday review – the hot 22 stories of the week
Cybercrime in Canada: The impact on SMBs

A new survey, conducted by Ipsos and sponsored by ESET, finds that one in four Canadian SMBs with yearly revenues of $10 million or more have been hit by a cyberattack. The post Cybercrime in Canada: The impact on SMBs appeared first on WeLiveSecurity.

LinuxSecurity.com: Multiple vulnerabilities have been fixed in libgcrypt,the worst of which results in predictable output from the random number generator.

Stickers emerge as EU’s weapon against dud IoT security

LinuxSecurity.com: A buffer overflow in Quagga might allow remote attackers to execute arbitrary code.

LinuxSecurity.com: An update for python-django is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for python-django is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for python-django is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for python-django is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

Security bod to MSFT: PowerShell’s admin-lite scheme is an open door
Heads roll as Qihoo 360 moves to end WoSign, StartCom certificate row
Yahoo! spymasters! patent! biometric! online! ad! tracking! IRL!
This map shows free WiFi passwords from airports worldwide
Crypto needs more transparency, researchers warn
Spy program could have given hacker access to all Yahoo email, claims ex-employee
How to find your lost or stolen laptop
EU privacy watchdogs concerned by Yahoo’s email scanning
Cerber Ransomware Encrypts Files, Kills Database Process Servers
Eko Malware Targeting Facebook and its Messenger Users
Amazon Sends Password Reset Email after Discovering Login Data Online

security update

US officially blames Russian government for election-related hacking
US govt straight up accuses Russia of hacking prez election
Mac Malware Can Spy on You Through Webcam: Ex-NSA Hacker
Two Charged for alleged Connections to Lizard Squad and PoodleCorp
TalkTalk receives record fine for security failings that resulted in 2015 cyberattack

The UK’s Information Commissioner’s Office (ICO) hits TalkTalk with record fine for failing to take basic security measures to protect customer information. The post TalkTalk receives record fine for security failings that resulted in 2015 cyberattack appeared first on WeLiveSecurity.

‘Security fatigue’ leading computer users to more or less just give up
Android battles to fix the holes where the rain gets in
Threatpost News Wrap, October 7, 2016
The Ethics and Morality Behind APT Reports
Cisco Warns of Critical Flaws in Nexus Switches
FBI wants to unlock another jihadist’s iPhone

  Alright, everyone, this week has been a whopper. I didn’t foresee Facebook Messenger adopting full user encryption, but it’s definitely time. And Apple’s move to auto-updating macOS? We can only wait and see how users react. Catch up on those stories and more in this week’s edition of the Threat Recap. Here are five […]

Crooks and kids (not scary spies paid by govt overlords) are behind most breaches
Taking down the internet: possible but how probable?
Report: Linux security must be upgraded to protect future tech
Keeping Linux containers safe and secure
Down the rabbit hole, part 3: Linux and Tor are key to ensuring privacy, security
Free Tool Protects Mac Users from Webcam Surveillance
Islamic State suspect charged with hiding terrorist data in cufflink
Yahoo’s email snooping: It’s all legal
London cops charge ATM malware hacker
Smash and grab PoS pwners ready with pre-Xmas malware update
Google’s Chrome cloaks Pirate Bay in red screen of malware death