Menu

Monthly Archives: November 2016

  The sheer number of cyberattacks lately led us to this question: which states are at the greatest risk of a cyberattack? Naturally, we took it a step further. We looked into data on population and population density in an effort to find correlations. Which are the most infected states? Opening up our list in […]

Wow. What a shock. The FBI will get its bonus hacking powers after all
Microsoft Silently Fixes Kernel Bug That Led to Chrome Sandbox Bypass
Gooligan Attack on Android: Millions of Google Accounts Compromised
10% off Nest Cam Indoor Security Camera – Deal Alert
I love how San Francisco’s metro system responded to its ransomware attacker
26,500 National Lottery accounts accessed by cybercriminals

National lottery operator Camelot tells players to change their passwords after thousands of accounts have been accessed by cybercriminals. The post 26,500 National Lottery accounts accessed by cybercriminals appeared first on WeLiveSecurity.

Bypassing BitLocker during an upgrade
Facebook users want to continue posting from beyond the grave
News in brief: leniency urged for Snowden; crowdsourced suggestions for Facebook; Berners-Lee slams ‘Snoopers’ Charter’

LinuxSecurity.com: An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]

German Minister Proposes Data Protection Law Aimed at Limiting Privacy Rights
Tor Patched Against Zero Day Under Attack
Hackers reuse passwords to access 26,500 National Lottery accounts
Real threats for business: Mischief, extortion and million-dollar frauds
Android-rooting Gooligan malware infects 1 million devices
Computer Systems at Carleton University Shut Down due to Ransomware
America wonders what path Trump will tread on cybersecurity
The new Mirai malware strain has gone beyond Deutsche Telekom
Cryptography: How something nerdy went mainstream

Cryptography is one of the fundamental aspects of information security. We look at it through the lens of the silver screen. The post Cryptography: How something nerdy went mainstream appeared first on We Live Security.

UCL snags head of Europol for a seminar on privacy
New Cerber Variant Leverages Tor2Web Proxies, Google Redirects
UK cops spot webcam ‘sextortion’ plots: How vics can hit stop
IoT camera turned into a zombie in under two minutes
UK National Lottery data breach: Fingers crossed – it might not be you
Hackers access National Lottery accounts – do you have your fingers crossed?
‘Tesco Bank’s major vulnerability is its ownership by Tesco,’ claims ex-employee
Spam campaign tiptoes via Tor to deliver Cerber ransomware
Speaking in Tech: The limitations of Android’s crypto
UK’s new Snoopers’ Charter just passed an encryption backdoor law by the backdoor

LinuxSecurity.com: Security Report Summary

PayPal proffers patch for OAuth app hack hole
GET pwned: Web CCTV cams can be hijacked by single HTTP request
Drive-by web nasty unmasks Tor Browser users, Mozilla dashes to patch zero-day vuln

LinuxSecurity.com: Security fix for CVE-2016-9296

LinuxSecurity.com: Update to 0.6.4

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

Another Canadian uni hit by ransomware, students told to keep Windows PCs away

LinuxSecurity.com: Update to 0.6.4

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

NetWire RAT Back, Stealing Payment Card Data
New Mirai Variant Targets Routers, Knocks 900,000 Offline

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: Fix for CVE-2016-9400

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

News in brief: Muni hacker is hacked; Facebook warned over data sharing; spy agency releases data tool
Dismay as ‘snooper’s charter’ finally becomes law
New Lethal Version of Mirai Botnet Claims First Target: Deutsche Telekom
CERT to Microsoft: Keep EMET alive
Deutsche Telekom outage: Mirai botnet goes double-rogue
900,000 Germans knocked offline, as critical router flaw exploited

As many as 900,000 Deutsche Telekom customers were knocked offline on Sunday and Monday as an attempt was made to hijack broadband routers into a botnet. The post 900,000 Germans knocked offline, as critical router flaw exploited appeared first on We Live Security.

The Tor Phone prototype: a truly private smartphone?
San Francisco’s Muni says server data not accessed in ransomware hit
Oh no, software has bugs, we need antivirus. Oh no, bug-squasher has bugs, we need …
Hacker Who Hacked SF Rail System for Ransom Hacked by Another Hacker
Queen signs the Investigatory Powers Act into UK law
When are you going to die? Ubisoft tool uses Facebook data to tell you
Bletchley Park Trust vows to shore up insecure website
Extending Linux Executable Logging With The Integrity Measurement Architecture
3 clues to spotting a spam scam

I received the following “domain abuse notice” for one of my inactive registered domains last week: Those of us who have dealt with falsely blacklisted domains in the past have seen notices like this before. It’s usually from an antispam vendor or service letting you know that your domain has been used in a spam […]

R3 four flew: What’s driving banks to flee blockchain consortium?
A Rowhammer ban-hammer for all, and it’s all in software
Hackers crack Liechtenstein banks, demand ransoms
Cisco stre…tches vulnerability disclosure timeline out to 90 days
Netflix and spill: Web vid giant kills password masking in tests
Inside Android’s source code… // TODO – Finish file encryption later

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

‘Mirai bots’ cyber-blitz 1m German broadband routers – and your ISP could be next
Hackers Deface Kuwaiti Parliament website on Election Day
No, I won’t help you blackmail the company you just hacked
PayPal Fixes OAuth Token Leaking Vulnerability
Hackers Make New Claim in San Francisco Transit Ransomware Attack

security update

The Chrome extension that “Firesheeps” you by choice

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security fix for CVE-2016-8864

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Update to 4.4.2: Security fixes * A difference in cookie parsing betweenTornado and web browsers (especially when combined with Google Analytics) couldallow an attacker to set arbitrary cookies and bypass XSRF protection. Thecookie parser has been rewritten to fix this attack. Backwards-compatibilitynotes * Cookies containing certain special characters (in particular semicolonand square brackets) are […]

Hackers threaten to leak bank customers’ account info unless they pay up
FBI offers some poor password advice for online shoppers
Creaking Royal Navy is ‘first-rate’ thunders irate admiral
‘Ransomware’ attack halts payments on San Francisco Muni network
Who’s better at reading lips – humans or AI?
Female DDoS Attacker Charged with Crippling School System
Muni experiences security incident

The San Francisco Municipal Transportation Agency has confirmed that it experienced a security incident over the weekend The post Muni experiences security incident appeared first on We Live Security.

San Francisco Railway’ Fare System Hacked for 100 Bitcoin Ransom
San Francisco’s Muni transit system reportedly hit by ransomware
Locking Down Your Linux Server
How to protect the C-suite from spear phishing
Concern over FBI operation to catch users of darkweb site
Ransomware scams cost Brits £4.5m per year
Monday review – the hot 20 stories of the week
Time is running out for NTP
Ransomware hits San Francisco transport system. Free rides for all as $73,000 demanded
100k+ petition: MPs must consider debating Snoopers’ Charter again
The Internet Society is unhappy about security – pretty much all of it
Japan investigating defence network break-in