Menu

Monthly Archives: November 2016

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Bad karma! Ransomware piggybacks on free software downloads
Security bods find Android phoning home. Home being China
BlackNurse Attack Can Bring an Entire Business Offline with Just One Laptop
Carbanak Attacks Shift to Hospitality Sector
Report: Backdoor access in the Blu R1 HD and other phones sent data to China
Cryptsetup Vulnerability Grants Root Shell Access on Some Linux Systems
Lobbyists Press Trump to Support Strong Encryption, Surveillance Reform
As teenager admits hack, let’s not forget TalkTalk’s shameful security
BlackNurse DDoS attack can ‘overload firewalls from a laptop’
VMware Patches VM Escape Vulnerability
TalkTalk teen hacker pleads guilty as firm reveals £22m profit jump
The world has changed but has your IAM?
In case of cyberattack, don’t count on Donald Trump knowing what to do
Major Linux security hole gapes open
FBI says FIFA Ultimate Team console game hackers stole millions in virtual currency
Shhh! Shazam is always listening – even when it’s been switched ‘off’
Adobe fined $1 million for 2013 data breach

The financial repercussions of a data breach have been highlighted by the $1 million fine handed out to Adobe Systems for a 2013 security incident. The post Adobe fined $1 million for 2013 data breach appeared first on WeLiveSecurity.

5 ways President Trump may affect computer security

It’s no secret that conservatives, who will soon control all three branches of the U.S. government with the election of President Trump, are more liable to give more power and deference to law enforcement. Perhaps the strongest influence is the likely appointment of one to three conservative Supreme Court justices. What does that mean for […]

Privacy stripped bare as hackers breach 412 million Adult Friend Finder accounts
Stolen passwords integrated into the ultimate dictionary attack

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

‘Ultimate Team’ scheme: EA hackers charged for stealing in-game coins
Microsoft Bolsters Ransomware Protection in Windows 10 Anniversary Update
UK Home Secretary signs off on Lauri Love’s extradition to US

security update

CrySis Ransomware Master Decryption Keys Released
Spotify desktop app bug writes data in massive proportions on a daily basis
Adult FriendFinder Hack Exposes 400 Million Accounts

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.36 up to 8.0.38 which resolvesmultiple CVEs and a problem that 8.0.37 introduces to freeipa: * rhbz#1375581 -CVE-2016-5388 Tomcat: CGI sets environmental variable based on user suppliedProxy request header * rhbz#1390532 – CVE-2016-0762 CVE-2016-5018 CVE-2016-6794CVE-2016-6796 CVE-2016-6797 tomcat: various flaws and includes two additionalCVE fixes along with one […]

LinuxSecurity.com: Security fix for CVE-2016-8864

LinuxSecurity.com: This update backports an upstream patch to fix multiple integer overflows(CVE-2016-9085).

LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.36 up to 8.0.38 which resolvesmultiple CVEs and a problem that 8.0.37 introduces to freeipa: * rhbz#1375581 -CVE-2016-5388 Tomcat: CGI sets environmental variable based on user suppliedProxy request header * rhbz#1390532 – CVE-2016-0762 CVE-2016-5018 CVE-2016-6794CVE-2016-6796 CVE-2016-6797 tomcat: various flaws and includes two additionalCVE fixes along with one […]

LinuxSecurity.com: – update to 1.8.18p1 – fixes CVE-2016-7076

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: The system could be made to crash under certain conditions.

LinuxSecurity.com: The system could be made to crash under certain conditions.

LinuxSecurity.com: The system could be made to crash under certain conditions.

LinuxSecurity.com: The system could be made to crash under certain conditions.

Wi-Fi shadows cast by your fingers could leak your password
Origin of the beasties: Mirai botnet missing link revealed as DVR player
Army Bug Bounty Building New Relationships with Hackers
DoS technique lets a single laptop take down an enterprise firewall
Adult FriendFinder users get their privates exposed… again – reports
Zuckerberg pushes back on fears over fake news on Facebook
AdultFriendFinder Network Hacked; 412 Million User Accounts Exposed
Pay up or your data gets it. Ransomware highwaymen’s attacks on small biz octuple
Security Sessions: How to prepare for a data breach
Encrypted email sign-ups instantly double in wake of Trump victory
412 million FriendFinder Network accounts said to be exposed in hack
Developers, don’t DDoS your own apps
Google Pixel, Safari, and Microsoft Edge all pwned at PwnFest 2016

LinuxSecurity.com: An update for policycoreutils is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]

Risk Level: Very Low. Type: Trojan.

Your body reveals your password by interfering with Wi-Fi

security update

Wireless Brain Interface Can Make the Paralyzed Walk Again

Risk Level: Very Low. Type: Virus, Worm.

Did Facebook tell your friends that you had died?
Hackers Pwned Apple Safari in 20 seconds; Google Pixel in 60 seconds
The worst people you meet doing IT security

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Russia shoves antitrust probe into Microsoft after Kaspersky gripes about Windows 10
Encrypted email service ProtonMail says new users up 100% since Trump victory
Facebook buys stolen passwords on the black market to protect your account

security update

Your online identity is at risk now more than ever. This week’s cyber news update covers the growing threat of online banking attacks and phishing scams across the globe. Tesco Bank Hacked For Millions Tesco’s banking services released a statement earlier this week announcing that several thousand bank accounts had been hacked, resulting in the theft […]

Type: Vulnerability. Microsoft SQL Server is prone to a privilege-escalation vulnerability; fixes are available.

Anatomy of a Chrome for Android bug: the mixed-up world of mobile browsers
Computer System of Canadian Casino Hacked; Financial Data Stolen
Hackers Disclose Easily Exploitable Flaws in Microsoft Edge and VMware
Graham Cluley on Jenny Radcliffe’s new podcast, ‘The Human Factor’
BlackNurse Low-Volume DoS Attack Targets Firewalls
Pawn Storm used Microsoft zero-day in spear-phishing attacks before patch
Join the Q: British intel agencies seek tech-savvy apprentices
Capgemini sloppily leaks data of 780,000 Michael Page job seekers to anyone on the internet
Sednit: A very digested read

This feature offers a very digested read of ESET’s trilogy of research papers on Sednit, one of the most notorious groups of cyberattackers in the world. The post Sednit: A very digested read appeared first on WeLiveSecurity.

Russian banks floored by withering DDoS attacks
OpenSSL Patches High-Severity Denial-of-Service Bug
Google Pixel pwned in 60 seconds
Yahoo staff knew they were breached two years ago
ICO concerned about privacy protection on WhatsApp/Facebook

Concerns over unprotected customer data sharing on WhatsApp and Facebook results in UK Information Commissioner threatening to enforce action. The post ICO concerned about privacy protection on WhatsApp/Facebook appeared first on WeLiveSecurity.

Facebook is buying up stolen passwords on the black market
Reg meets ‘Lokihardt’, quite possibly the world’s best hacker
What strange madness is this? Microsoft makes patch data RESTful
Make phishing great again: Hackers prod US think tanks, NGOs amid Trump win shockwaves
Recruitment giant PageGroup hacked, Capgemini dev server blamed for info leak
Adobe Developing Photoshop for Audio Files with Project VoCo
Microsoft to revamp its documentation for security patches
Over 300k Android Devices Infected with Banking Trojan
Signal Audit Reveals Protocol Cryptographically Sound
Top Russian Banks Suffer Powerful DDoS Attacks

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 7.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for systemd is now available for Red Hat Enterprise Linux 7.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]