Menu

Monthly Archives: March 2017

Critical Moodle Vulnerability Could Lead to Server Compromise
Code Execution Vulnerability Found in Libpurple IM Library
Now UK bans carry-on lappies, phones, slabs on flights from six nations amid bomb fears
World’s worst botnet fiends switch from ransomware to stock scam spam

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Locky, Cerber Ransomware Skilled at Hiding

Sometimes it takes a close call or bad experience to really hammer it home. The concept of identity theft is nothing new. To put it in perspective, my step-dad had his identity stolen, and didn’t even know it. He was targeted by a social engineering attack and forked over several hundred dollars during the scam […]

Latest Tax Scams Include Phishing Lures, Malware
Your Mac is not malware-proof: a look at the threats and defenses
People who think they’re ‘tech-savvy’ 18% more likely to be hit by ID theft
IDG Contributor Network: Could iris recognition be coming to the enterprise?
Touch Bar in New MacBook Pro ‘Hacked’ by White Hat Hackers
Hackers claim they will wipe iPhones and iCloud accounts unless Apple pays ransom
Three’s website exposes mobile phone customers’ details to strangers
US bans electronics larger than smartphones in cabins on certain flights
Three cops to data breach
Russian bank claims hackers are trying to connect it to Trump
Park uses facial recognition to wipe out toilet paper thieves
Old Linux kernel security bug bites
Firefox gets complaint for labeling unencrypted login page insecure
Virtual machine escape fetches $105,000 at Pwn2Own hacking contest
GitHub awards researcher $18,000 for remote code execution flaw discovery
Laptops, tablets and other gadgets banned from cabin on some US-bound flights
Malicious hackers discovered way to deliver malware through unloved Ask Toolbar
Airplane bomb fears spark America’s laptop, tablet carry-on ban
Vastly improve your IT security in 2 easy steps

It’s a rough number, but I’d wager that 99 percent of computer security risk in most organizations can be attributed to two root causes: social engineering and unpatched software. I’m not talking about pure numbers of success exploits, but overall impact. Many CISOs and threat intelligence analysts have told me that 100 percent of the […]

Tip for darknet drug lords: Don’t wear latex gloves to the post office

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for quagga is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for samba4 is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for bash is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for subscription-manager, subscription-manager-migration-data, and python-rhsm is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for glibc is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for samba is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for wireshark is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for openssh is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for tigervnc is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for ocaml is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

DNS lookups can reveal every web page you visit, says German boffin
Nest cameras can be easily blacked out by Bluetooth burglars
Millions of Accounts from 11 Hacked Bitcoin Forums Being Sold on Dark Web

Risk Level: Very Low. Type: Trojan.

Confirmed: TSA bans gear bigger than phones from airplane cabins
FBI, NSA top brass: We’ve seen jack squat to back up Trump’s claims of Obama wiretaps

security update

Russian bank Alfa Says it was Under DNS Botnet Attacks
‘Sorry, I’ve forgotten my decryption password’ is contempt of court, pal – US appeal judges
WWE star’s swiped sex snaps survey spam snares selfie sickos
Local Windows Admins Can Hijack Sessions Without Credentials
ABTA experiences data breach

The Association of British Travel Agents discovered the data breach on March 1st, but failed to notify customers until March 16th. The post ABTA experiences data breach appeared first on WeLiveSecurity

LinuxSecurity.com: A buffer overflow in PuTTY might allow remote attackers to execute arbitrary code or cause a denial of service.

LinuxSecurity.com: Multiple vulnerabilities have been found in Adobe Flash Player, the worst of which allows remote attackers to execute arbitrary code.

LinuxSecurity.com: A vulnerability in OpenOffice Impress could cause memory corruption.

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: An update for firefox is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

Mozilla Patches Pwn2Own Zero Day in Firefox
Cisco Warns of Critical Vulnerability Revealed in ‘Vault 7’ Data Dump
Sweeping dragnet search warrant given the go-ahead by judge
News in brief: FBI probes Russian ‘meddling’; Secret Service laptop stolen; Pi beats Commodore 64 sales
Stop shifting the blame onto third parties. That breach is still your firm’s responsibility
ISP customer data breach could turn into supercharged tech support scams
FBI looks into Russian hack of US election, possible Trump involvement
Emma Watson among stars targeted by hackers in ‘Celebgate 2.0’
Dr Hannah Fry: We need to be wary of algorithms behind closed doors
Jon Oberheide on Perimeter Security
DIY kits for sale on dark web spark rise of ransomware-as-a-service
Scammers target tax preparers with last-minute phishing attacks
Some HTTPS inspection tools might weaken security
6 of the most effective social engineering techniques
Personalized spam campaign targets Germany
A new spam campaign targeting German users uses victims’ real details and installs banking malware on compromised computers. Read More
When will blockchain technology deliver on its promise?
Cebit showcases security after Snowden
Norfolk County Council sent filing cabinet filled with kids’ info to a second-hand shop
Leading Linux distros dawdle as kernel flaw persists
Cobol plays major role in U.S. government breaches
Atlassian admins, your Struts 2 patch has landed
Git sprints carefully towards SHA-1 deprecation

LinuxSecurity.com: An update for openjpeg is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

Cisco reports bug disclosed in WikiLeaks’ Vault 7 CIA dump

security update

security update

McDonalds India’s delivery app was a golden honeypot
21 Million Decrypted Gmail, 5 Million Yahoo Accounts Being Sold on Dark Web
WWE’s Paige Nude Photos Leaked – ‘Total Divas’ Star Comments on Scandal
Ethical Hacking: The Most Important Job No One Talks About
This laptop-bricking USB stick just got even more dangerous
Surprise! WikiLeaks won’t just hand over details of zero-day vulnerabilities to tech firms
Friday security roundup: Secret Service laptop bungle, hackers win prizes, websites leak
String of fileless malware attacks possibly tied to single hacker group
The priest, the coder, the Bitcoin drug deals – and today’s guilty verdicts
Do you have an incident response plan in place?
News in brief: GCHQ hits back in ‘wiretap’ row; Uber still needs humans; Intel call to bug-hunters
Warning: Your networking tools are weakening your web security
VM Escape Earns Hackers $105K at Pwn2Own

Risk Level: Very Low. Type: Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.