Menu

Monthly Archives: November 2016

security update

Facebook halts plan to mine profiles for insurance quotes
Mitigations Available for PanelShock Vulnerabilities in Schneider Electric Magelis HMIs

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: update to upstream release 0.2.8.9

LinuxSecurity.com: Fixes CVE-2016-7969, CVE-2016-7970 and CVE-2016-7972 —- Update to 0.13.3.Contains various bugfixes.

LinuxSecurity.com: Security fix for CVE-2016-5407

LinuxSecurity.com: Security fix for CVE-2016-7953

LinuxSecurity.com: Security fix for CVE-2016-7949, CVE-2016-7950

LinuxSecurity.com: Security fix for CVE-2016-7951, CVE-2016-7952

LinuxSecurity.com: Security fix for CVE-2016-7947, CVE-2016-7948

Critical MySQL Vulnerabilities Can Lead to Server Compromise

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Don’t cyber-mess with Britain, warns UK Chancellor
Firefox kills the Battery Status ‘super cookie’
New FCC ISP privacy rules create more questions than answers
Barracuda email security scanning services in worldwide TITSUP
Belkin’s WeMo Gear Can Hack Android Phones
Survey finds 75% of security execs believe they are INVINCIBLE
Services slowly resume after malware strikes UK hospitals
William Hill website under siege from DDoS attacks
Flashback Tuesday: The Morris Worm

On November 2nd 1988, the Morris Worm was released, bringing the internet to an effective standstill. It was a seminal moment in internet history. The post Flashback Tuesday: The Morris Worm appeared first on WeLiveSecurity.

Linux/Moose: Still breathing

For the past year, ESET and the security firm GoSecure combined their skills in order to research Linux/Moose further. Here’s some of what was uncovered. The post Linux/Moose: Still breathing appeared first on WeLiveSecurity.

86-year-old grandmother billed $5K, accused of pirating zombie game
Fixing the communications breakdown between IT security and the board and c-suite
How To Protect Linux Servers And Android Phones Against Dirty COW Security Bug
New leak may show if you were hacked by the NSA
Sundown Exploit Kit ‘Larger Threat Than People Realize’

LinuxSecurity.com: An update for java-1.7.0-ibm is now available for Red Hat Enterprise Linux 5 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 6 Supplementary and Red Hat Enterprise Linux 7 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for java-1.7.1-ibm is now available for Red Hat Enterprise Linux 6 Supplementary and Red Hat Enterprise Linux 7 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

England expects… you to patch your apps and not just Windows
Want to spy on the boss? Try this phone-mast-in-an-HP printer
Multiple RCE flaws found in Memcached web speed tool
Teen UK hacker pleads guilty after earning $385k from DDoS tool
Hackers hustle to hassle un-patched Joomla! sites
Google punts WoSign, StartCom from good guy certificate club

Risk Level: Very Low. Type: Trojan.

Microsoft Says Russian APT Group Behind Zero-Day Attacks
20% off Ring Wi-Fi Enabled Video Doorbell – Deal Alert
Sweden axes 700MHz spectrum sale over ‘national security’ fears
Microsoft flips Google the bird after Windows kernel bug blurt

LinuxSecurity.com: An update for mysql55-mysql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 6.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

Google to Distrust WoSign, StartCom Certs in 2017
Is it real? The Trump-Russia server connection
No, checking in via Facebook won’t help Standing Rock protestors
New IoT Botnet Malware Borrows From Mirai
Ransomware Disguised as Windows Update Causing Havoc among Users
Apple fans using Chrome on alert for Mac malware
The Clinton emails – from humble iMac to data center
Phony Android Flash Player Installs Banking Malware
Shadow Brokers Dump List of Servers Hacked by the NSA’s Equation Group
UK will retaliate against state-sponsored cyber attacks, Chancellor warns
Google to untrust WoSign and StartCom certificates
Cyberattacks ‘no longer the stuff of spy thrillers’

Cyberattacks are “no longer the stuff of spy thrillers” – they are now a very serious threat to individuals, organizations and economies. The post Cyberattacks ‘no longer the stuff of spy thrillers’ appeared first on WeLiveSecurity.

A history of mobile malware from Cabir to SMS Thief

As we continue to do more things with our smartphones, the threat posed by mobile malware increases. Here’s a short history of its development. The post A history of mobile malware from Cabir to SMS Thief appeared first on WeLiveSecurity.

Microsoft: Google has put our customers at potential risk
Critical vulnerabilities pose a serious threat to Joomla sites
US DMCA rules updated to give security experts legal backing to research
Security All Saints: security is for life, not just for Halloween
Freeze …SCADA! Flaw lets hackers peel away Human Machine Interface
How Clinton could have avoided the Wikileaks fiasco

People who are upset that Hillary Clinton’s personal email server may have been hacked are missing the big picture. Nearly everything that is worth hacking and connected to the internet is already hacked — and that which is not can be hacked at will. I don’t want to get into the morass of whether Clinton’s […]

LinuxSecurity.com: Multiple vulnerabilities have been found in UnZip allowing remote attackers to execute arbitrary code and cause Denial of Service.

LinuxSecurity.com: update to upstream release 0.2.8.9

Docker user? Haven’t patched Dirty COW yet? Bad news …

LinuxSecurity.com: New x11 packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New mariadb packages are available for Slackware 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New php packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

Nymaim malware got a major ‘upgrade’, says Verint
Post-Mirai, HackForums kills off white hat DDoS rental service