Menu

Monthly Archives: July 2017

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

How did the data of 14m Verizon customers end up online?
Google Changes How it Analyzes Misbehaving Mobile Apps
Who gets gold stars for looking after your privacy?
Microsoft’ Calibri font hinges Pakistan’s entire government
Bupa warns health insurance information exposed by rogue employee

LinuxSecurity.com: Evince could be made run programs as your login if it opened a specially crafted file.

How app developers are gaming Google Play to boost their rankings
Are you looking at me? Welcome to the world of facial recognition
So long, Windows Phone – it was nice knowing you
What is new in OpenSSH 7.4 (in RHEL 7.4)?
Hackers able to turbo-charge DJI drones way beyond what’s legal

LinuxSecurity.com: Updated to the latest version; Security fix for CVE-2017-10788

The Magala trojan makes its money dishonestly by clicking on ads in your browser

LinuxSecurity.com: An update that solves 15 vulnerabilities and has 162 fixes An update that solves 15 vulnerabilities and has 162 fixes An update that solves 15 vulnerabilities and has 162 fixes is now available. is now available.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

14 Million Verizon Customer Records Exposed

security update

security update

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Third Party Exposes 14 Million Verizon Customer Records
New Point-of-Sale Malware LockPoS Hitches Ride with FlokiBot
News in brief: probe in Jupiter fly-by; footage of politician ‘not illegal’; Trump sued over Twitter block
LeakerLocker Android Ransomware: Pay or Your Data Will Be Leaked
Uber Patches Authentication Bypass Vulnerability on Custom SSO Solution
SAP Patches High-Risk Flaws in SAP POS, Host Agent
Social engineering – explored and explained by our experts [VIDEO]
Researchers find chinks in the armour of satellite phone calls
Trump Hotels’ Booking System Hacked, Credit Card Data Stolen
Industrial control security practitioners worry about threats … for a reason

Recent research from the SANS Institute confirms that security of industrial control systems is increasingly seen and understood to be a serious issue. The post Industrial control security practitioners worry about threats … for a reason appeared first on WeLiveSecurity

LinuxSecurity.com: This update updates QtWebEngine to the 5.9.1 release, a security and bugfix release from the 5.9 branch. QtWebEngine 5.9.1 is part of the Qt 5.9.1 release, but only the QtWebEngine component is included in this update. The update fixes the following security issues in QtWebEngine 5.9.0: CVE-2017-5070, CVE-2017-5071, CVE-2017-5075, CVE-2017-5076, CVE-2017-5077, CVE-2017-5078,

LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.

Vulnerabilities Expose Oracle OAM 10g to Remote Session Hijacking
Firms that didn’t patch and enabled local admin rights continue to suffer post cyber-attack
Russians told to log in to Pornhub using verified social media accounts
Linux Foundation launches Open Security Controller Project
Mingis on Tech: How linguistics can help catch cyberattackers
Trump Hotels customers hit by credit-card stealing hackers. Again.

LinuxSecurity.com: https://github.com/libexpat/libexpat/blob/R_2_2_1/expat/Changes

LinuxSecurity.com: New stable upstream release, primarily includes security fixes for CVE-2017-10794, CVE-2017-10799, CVE-2017-10800 See also http://www.graphicsmagick.org/NEWS.html#july-4-2017

Microsoft issues critical security patches. Have you updated yet?
LDAP & RDP Relay Flaws Found in Windows Security Protocols
Telegram-Controlled Hacking Tool Targets SQL Injection at Scale
Microsoft Patch Tuesday Update Fixes 19 Critical Vulnerabilities
News in brief: dark web sites attacked; radio station pwnd; Russian hacker jailed for nine years
Microsoft Addresses NTLM Bugs That Facilitate Credential Relay Attacks

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Mark your calendar for the net neutrality Day of Action
Adobe Fixes Six Vulnerabilities in Flash, Connect with July Update
Adobe Flash Player users should update their software NOW

Critical security holes keep being found in Adobe Flash Player. Have you updated yours yet? The post Adobe Flash Player users should update their software NOW appeared first on WeLiveSecurity

Creators of dark web chat room arrested for facilitating child abuse
Two-factor via your mobile phone – should you stop using it?
Avanti Markets’ kiosks hacked; credit card, biometric data stolen
More than 100m records potentially lost in huge telecoms breach
Latest Intelligence for June 2017
A rise in instances of a particular bitcoin mining malware for Macs, the chaos causing Petya outbreak, and an increase in phishing emails for the third [...]
Desperately Seeking Security: 6 Skills Most In Demand
Your gadget could save your life: smart device phones police
UK’s ICO launches first ever International Strategy

The Information Commissioner’s Office (ICO) has launched an International Strategy, which provides guidance on key issues such as GDPR and changing technologies. The post UK’s ICO launches first ever International Strategy appeared first on WeLiveSecurity

Type: Vulnerability. Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Wordpad is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows PowerShell is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to an open-redirection vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows Explorer is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.