Menu

Monthly Archives: March 2017

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Vulnerability Disclosed in Ubquiti Networks Admin Interface
Graham Cluley named Best IT Security blog at SysAdmin blog awards
An under-appreciated threat to your privacy: Security software
Kirk ransomware sports Star Trek-themed decryptor and little-known crypto-currency
Ethical hacking: should you pay a white hat to break in?
Despite Brexit, Brit firm lands £58m EU spy drone ‘copter contract
Threatpost News Wrap, March 17, 2017
Fappening 2.0: Private Photos of Amanda Seyfried, Emma Watson and others Leaked
National Audit Office: Brit aircraft carrier project is fine and dandy… for now
Studies are nice, but women in security say it’s time for the next step
Safari, Ubuntu Linux, Edge and Adobe Reader, Hacked At Pwn2Own 2017

The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. USAF Leaks Highly Sensitive Data Our government is back at it again. Researchers discovered the exposure […]

Flashback Friday: Operation Windigo

In 2014, ESET delivered a comprehensive and detailed report on Operation Windigo. We take a look back at what was documented and what insight was gathered. The post Flashback Friday: Operation Windigo appeared first on WeLiveSecurity

GitHub Code Execution Bug Fetches $18,000 Bounty
Shameless crooks fling Star Trek-themed ransomware at world
Yahoo breach exposes the drawbacks of state-sponsored hacking
In-the-wild exploits ramp up against high-impact sites using Apache Struts
Number of women in infosec industry ‘remains stagnant’

The number of women working within the infosec industry is “continues to remain low”, and could be exacerbating the skills gap within the industry. The post Number of women in infosec industry ‘remains stagnant’ appeared first on WeLiveSecurity

US-CERT Warns HTTPS Inspection May Degrade TLS Security
Are you undermining your web security by checking on it with the wrong tools?

Risk Level: Very Low. Type: Trojan.

How to remove ransomware: Use this battle plan to fight back
Ubiquiti network gear can be ‘hijacked by an evil URL’ – thanks to its 20-year-old PHP build
Judge issues search warrant for anyone who Googled a victim’s name in an entire US town
Security Flaw Allowed Hackers to Compromise WhatsApp, Telegram Accounts

security update

Intel touts bug bounties to hardware hackers

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Yahoo breach lessons IT can’t ignore
Canada’s privacy watchdog probes US border phone seizures
News in brief: Yahoo ‘was spear-phished’; McDonald’s Twitter hijacked; Samsung moots face recognition for payments

LinuxSecurity.com: An update for tomcat6 is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for policycoreutils is now available for Red Hat Enterprise Linux 7.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for policycoreutils is now available for Red Hat Enterprise Linux 7.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

Fileless Malware Campaigns Tied to Same Attacker
IDG Contributor Network: Kellyanne Conway’s microwave story is half-cooked

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

UK’s National Cyber Security Centre bungles simple Twitter Rickroll
Hackers Take Down Reader, Safari, Edge, Ubuntu Linux at Pwn2Own 2017
Court blocks American from suing Ethiopia over alleged hacking
How much of the IT your workers use is hiding in the shadows?
Barrister fined after idiot husband slings unencrypted client data onto the internet
UK’s Association of British Travel Agents cops to data breach
New cloud-based keylogger gaining momentum among criminals
Switch console flaw leaves Nintendo looking flat-footed
Dormant Linux kernel vulnerability finally slayed
Safety in Node.js: NodeSource to certify NPM modules
Mozilla: Everyone’s scared of hackers but clueless about fending them off
Hire a DDoS service to take down your enemies
Debunking 5 Myths About DNS
Smashing Security #012: Eau de Eugene Kaspersky
US charges Russian FSB officials in connection with massive Yahoo security breach
US faces limits in busting Russian agents over Yahoo breach
Smackdown: Office 365 vs. G Suite management
Bye bye, botnet! Kibosh put on Chamois Android fraud network
Xen bends own embargo rules to unbork risky Cirrus video emulation

LinuxSecurity.com: New pidgin packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…]

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

13 Infected Android Apps on Google Play Phishing Instagram Accounts
Why are creepy SS7 cellphone spying flaws still unfixed after years, ask Congresscritters
Inside the Russian hack of Yahoo: How they did it

The online threat landscape continues to evolve. Not only do we need to continue innovating and refining our protection techniques, but we also need to stay on top of our cybersecurity education in order to protect each other from these attacks. As it happens, a number of people still don’t use any cybersecurity on their […]

Intel, Microsoft Announce New Bug Bounties

security update

In a big crop of Windows fixes, Patch Tuesday includes a few surprises
Russian! spies! ‘brains! behind!’ Yahoo! mega-hack! – four! charged!

Type: Vulnerability. Microsoft Office is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows DirectShow is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows DVD Maker is prone to an unspecified cross-site request-forgery vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.