Menu

Monthly Archives: April 2017

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low.

Risk Level: Very Low. Type: Trojan.

New tech allows researchers to bypass fingerprint scanner on smartphone
Internet Society: Encryption is key to growing world economy

The Internet Society says that current perceptions of data encryption are misguided and need to change for the sake of the digital economy. The post Internet Society: Encryption is key to growing world economy appeared first on WeLiveSecurity

For a while the infamous Mirai botnet could have exploited your IoT devices to mine Bitcoins
Court to force adult site to expose ‘pirating’ users
SAP Updates Two-Year-Old Patch for TREX Vulnerability
Low fines for charities misusing donors’ data was ‘a masterstroke’
Microsoft fixes 45 flaws, including three actively exploited vulnerabilities
Determining your risk
Malware, Sir? Jenkins ‘software butler’ tool gets many security fixes
Inmates hid self-built PCs in the ceiling and connected them to prison network
Don’t buy the elixir of youth: Machine learning is not magic

There is no magic in machine learning. It’s a field of computer science that gives computers the ability to find patterns in huge amounts of data. The post Don’t buy the elixir of youth: Machine learning is not magic appeared first on WeLiveSecurity

Google boosts verification after wave of Maps fake listings fraud
Insider hacks Marriott hotel reservation system; slashes rates up to 95%
Mark Shuttleworth says some free software folk are ‘deeply anti-social’ and ‘love to hate’
Microsoft patches Word zero-day vulnerability being actively exploited in attacks
Microsoft Patches Three Vulnerabilities Under Attack
Fortinet upgrades for better cloud, SD-WAN protection
Microsoft patches Word zero-day booby-trap exploit

security update

FBI Kills Kelihos Botnet after Russian Hacker Arrested in Spain
Adobe Patches 59 Vulnerabilities Across Flash, Reader, Photoshop
Microsoft Patches Word Zero-Day Spreading Dridex Malware

LinuxSecurity.com: Multiple vulnerabilities have been found in X.Org server and libraries, the worse of which allowing local attackers to execute arbitrary code.

LinuxSecurity.com: New vim packages are available for Slackware 14.0 and 14.1 to fix a security issue. [More Info…]

LinuxSecurity.com: Multiple vulnerabilities have been found in the Chromium web browser, the worst of which allows remote attackers to execute arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in QEMU, the worst of which could the worst of which could lead to arbitrary code execution, or cause a Denial of Service condition.

LinuxSecurity.com: Security Report Summary

News in brief: Macron vows encryption crackdown; mobile calls on planes ruled out; AI wins at poker
Triple malware threat delivered by USPS-themed spam
Spammer’s Arrest Puts End to Kelihos Botnet
Graham Cluley speaking at the Foursys SecureTour, up and down the UK
DNS record will help prevent unauthorized SSL certificates
Attackers using a Word zero-day to spread malware
Third-Party Sellers From Amazon Hacked by Cyber Criminals
Nothing is certain except death, taxes – and tax scams, phishing and ransomware
Pwned at the factory: attackers think outside the box
Tools Used by Lamberts APT Found in Vault 7 Dumps
Unsecured database exposed diabetics’ sensitive data
Rollback of FCC privacy requirements could have broad repercussions
Fighting post-truth with reality in cybersecurity

Welcome to the beginning of a new series of short articles focused on the currents state of AI, all the ins and outs of machine learning, and how it affects cybersecurity. The post Fighting post-truth with reality in cybersecurity appeared first on WeLiveSecurity

CIA tools exposed by Wikileaks linked to hacking across 16 countries
spectrology – Basic Audio Steganography Tool
Smartphone sensors ‘can reveal PINs and passwords’

A smartphone’s internal sensors may provide cybercriminals with enough information to be able to guess a user PINs and passwords, according to new research by Newcastle University in the UK. The post Smartphone sensors ‘can reveal PINs and passwords’ appeared first on WeLiveSecurity

Top tip for botnet overlords: Don’t vacation in countries that can extradite you to the United States
US dismantles Kelihos botnet after Russian hacker’s arrest
Breaking Signal: A Six-Month Journey
Clean up your DNS act or get pwned like this bank
Why we need to encrypt everything

If you’ve been paying attention lately, you’ve likely noticed that more of your everyday websites are going HTTPS by default: Twitter, Facebook, LinkedIn, and even your favorite search engine.This is a good development. For years, critics have derided default, widespread HTTPS encryption and authentication as unnecessary and performance-wasting. But now that we’ve seen most of […]

LinuxSecurity.com: An update for 389-ds-base is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

LinuxSecurity.com: Security Report Summary

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Outlook for Mac is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Outlook is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a security bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.

This Ransomware tells users to play a popular Japanese game – That’s all
Wonga database hacked: Nearly 270,000 customers could be affected
ShadowBrokers Dump More Equation Group Hacks, Auction File Password
Travel Routers, NAS Devices Among Easily Hacked IoT Devices
Hackers are Exploiting New Microsoft Office Vulnerability to Drop Malware

LinuxSecurity.com: New libtiff packages are available for Slackware 14.2 and -current to fix security issues. [More Info…]

LinuxSecurity.com: Security Report Summary

News in brief: Dallas sirens ‘hacked’; Livejournal cracks down; Russian man arrested in Spain

Risk Level: Very Low. Type: Trojan.

Microsoft Office zero-day being exploited to spread malware, but no patch available… yet
Shadow Brokers return with a password and message for Trump