Menu

Monthly Archives: May 2017

Rogues reset ‘passwords’, steal W-2 info from Equifax subsidiary customer employees
ATM heists: 27 arrested as police move against ‘black box’ attacks

LinuxSecurity.com: Fix for CVE-2017-6949, also bump to 4.12.0

LinuxSecurity.com: Fix for CVE-2017-6949, also bump to 4.12.0

LinuxSecurity.com: Security fix for CVE-2017-8849. https://www.kde.org/info/security/advisory-20170510-2.txt

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Worm.

How To Prevent Growing Issue of Encryption Based Malware (Ransomware)

security update

security update

HSBC voice recognition security system spoofed by BBC
Proposed PATCH Act forces US snoops to quit hoarding code exploits
Twitter abandons ‘Do Not Track’ privacy protection

security update

security update

security update

Terror Exploit Kit Evolves Into Larger Threat

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: An update for openstack-heat is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: Updated atomic-openshift-utils and openshift-ansible packages that fix two security issues and several bugs are now available for OpenShift Container Platform 3.5, 3.4, 3.3, and 3.2. [More…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: New kdelibs packages are available for Slackware 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…]

LinuxSecurity.com: New freetype packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…]

News in brief: twins fox bank’s voice security; FCC moves on net neutrality; torrent site closes
Available Tools Making Dent in WannaCry Encryption
VMware Patches Multiple Security Issues in Workstation
WannaCry responsible for infecting medical devices
WannaCry: could something similar happen to Android?
Walk this way: how you roll could become how you log in
You were not alone; Twitter went down everywhere
Threatpost News Wrap, May 19, 2017
Ignoring software updates? You’re making one of five basic security mistakes

Cybersecurity is now a worldwide problem. But far too many citizens, businesses and governments are still making the same old, basic errors. The post Ignoring software updates? You’re making one of five basic security mistakes appeared first on WeLiveSecurity

Good news, OpenVPN fans: Your software’s only a little bit buggy
Will Linux protect you from ransomware attacks?
Sweden drop rape case probe against WikiLeaks’ Julian Assange

The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. WannaCry Ransomware Tackles Globe In the past week, organizations in over 150 different countries have been […]

Google wants to share your photos with your nearest and not-dearest
Companies keeping Bitcoin on hand in case of ransomware attacks
New NIST guidelines banish periodic password changes
How to delete your browser history in Microsoft Edge, block cookies, and increase your privacy
PATCH Act Calls for VEP Review Board
Android Gets Security Makeover With Google Play Protect
WordPress Fixes CSRF, XSS Bugs, Announces Bug Bounty Program
News in brief: 17m passwords stolen from Zomato; laptop ban from EU shelved; hackers target MPs
Senate’s Use of Signal A Good First Step, Experts Say
Are you protected against WannaCryptor and other forms of ransomware?

Technology evangelist Marc Saltzman asks: Are you protected against WannaCryptor, aka WannaCry, and other forms of ransomware? The post Are you protected against WannaCryptor and other forms of ransomware? appeared first on WeLiveSecurity

Have you inadvertently joined a Trump-supporting robot army?
WannaCry Ransomware Attackers are sending new message to victims
Patches Pending for Medical Devices Hit By WannaCry
Facebook is losing the fight against the spread of fake news

Webroot recently announced a new collaboration with Clavister, a leader in the network security market. Clavister selected Webroot’s BrightCloud® IP Reputation Service. The solution detects malicious activity within users’ IT infrastructure and delivers actionable threat intelligence. We sat down with Mattias Nordlund, product manager for Enterprise at Clavister to get the scoop on the new […]

Zomato hacked! Database of 17 million users stolen
WannaCryptor: Are governments and financial regulators to blame?

Are governments and financial regulators to blame for WannaCryptor, aka WannaCry, asks Tony Anscombe in this insightful feature. The post WannaCryptor: Are governments and financial regulators to blame? appeared first on WeLiveSecurity

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Zomato Hacked; 17 Million Accounts Sold on Dark Web
APT3 Linked to Chinese Ministry of State Security
CryptoMining malware Adylkuzz using the same vulnerability as WannaCry
News in brief: warning on extending laptop ban; telecom customers alerted; watchdog opens data probe
Next NSA Exploit Payload Could be Much Worse Than WannaCry
Reuben Paul still at it with connected toys hack

Cybersecurity genius Reuben Paul demonstrates that connected toys can be used for malicious purposes at the World Forum in The Hague. The post Reuben Paul still at it with connected toys hack appeared first on WeLiveSecurity

Shocking: ExtraTorrent has been permanently shut down
How Big Fuzzing helps find holes in open source projects
Chrome vulnerability can allow attackers to steal user credentials
The RHSA notifications you want, right in your Inbox
New Pirates of the Caribbean movie leaked online after hackers fail to extort money
Cryptocurrency-mining malware cashes in on NSA exploit that enabled WannaCry
WannaCryptor wasn’t the first to use EternalBlue: Miners misused it days after Shadow Brokers leak

The massive campaign that spread the WannaCry ransomware wasn’t the only large-scale infection misusing the EternalBlue and DoublePulsar exploits. The post WannaCryptor wasn’t the first to use EternalBlue: Miners misused it days after Shadow Brokers leak appeared first on WeLiveSecurity

Brooks Brothers reveals theft of payment card details
Edmodo confirms hackers breached its education platform, stole user data and hashed passwords
IDG Contributor Network: Will Linux protect you from ransomware attacks?
Cryptocurrency-mining malware has been using WannaCry’s NSA exploit for weeks

Risk Level: Very Low. Type: Trojan, Virus, Worm.

WannaCry: the ransomware worm that didn’t arrive on a phishing hook
10 Crucial Security Tips to Reduce Data Loss in Microsoft Office 365
DocuSign Phishing Campaign Includes Hancitor Downloader

LinuxSecurity.com:

Apple Patches Pwn2Own Vulnerabilities in Safari, macOS, iOS
News in brief: Depp film stolen by hackers; Facebook fined again; social media blocked in Ukraine
DocuSign admits hackers accessed its customer email database, sent out malware

Risk Level: Low. Type: Trojan, Worm.

Hospitals rapped for sharing 1.6m patient records with Google
New Pirates of the Caribbean film ‘stolen by cybercriminals’

Cybercriminals are reportedly demanding a ransom to prevent them from releasing Pirates of the Caribbean: Dead Men Tell No Tales. The post New Pirates of the Caribbean film ‘stolen by cybercriminals’ appeared first on WeLiveSecurity

UK airport authorities arrest human rights activist for not sharing his passwords
WannaCry Shares Code with Lazarus APT Samples
WikiLeaks Posts User Manuals for CIA Malware AfterMidnight and Assassin
Check-EternalBlue: Is your PC patched against the WannaCryptor worm vulnerability?

In this post, ESET’s Cassius Puodzius addresses what we can learn from WannaCryptor ransomware attack, and what we can expect. The post Check-EternalBlue: Is your PC patched against the WannaCryptor worm vulnerability? appeared first on WeLiveSecurity

FTC launches crackdown on tech support scammers
Chrome Browser Hack Opens Door to Credential Theft
Shadow Brokers threaten to release even more NSA-sourced malware
Hackers hold unreleased Pirates of the Caribbean movie to ransom
ShadowBrokers Planning Monthly Exploit, Data Dump Service
Security updates belong in the limelight, not in the dustbin of history

Without regular security updates, your endpoint will be left standing alone against an entire army of cybercriminals who see you as easy prey. The post Security updates belong in the limelight, not in the dustbin of history appeared first on WeLiveSecurity

Digital signature service DocuSign hacked and email addresses stolen
Cybercrooks fight over DDoS attack resources
The Ransomware Meltdown Experts Warned About Is Here