Menu

Monthly Archives: January 2018

libcurl has had auth leak bug since ‘the first commit we recorded’
Mobile point of sale gets a PCI security standard
SHL just got real-mode: US lawmakers demand answers on Meltdown, Spectre handling from Intel, Microsoft and pals
Skype, Slack and Other Popular Windows Apps Vulnerable to Critical Framework Bug

security update

security update

Bell Canada Canucks it up again: Second hack in just eight months
NFC card skimming – is it really a thing? [VIDEO]
Hacker Used Malware To Hike Prices for Gas Station Customers
NHS deploys Microsoft threat detection service on just 30,000 devices
Tinder flaw exposes user swipe, match and photos to strangers
Tinder user? Lack of encryption means stalkers can watch you at it…
10 Linux distributions recommended for 2018

The new features included all the patches, fixes, and updates to the tools and Kernel that were released over the preceding period, which is no small matter, especially if you use Maltego or SET. The post 10 Linux distributions recommended for 2018 appeared first on WeLiveSecurity

Apple’s Tim Cook doesn’t want his nephew on social media
Serious ‘category one’ cyberattack not far off – warns security chief
A Piece of DNA Contained the Key to 1 Bitcoin and This Guy Cracked the Code
Electron critical vulnerability strikes app developers
‘WHAT THE F*CK IS GOING ON?’ Linus Torvalds explodes at Intel spinning Spectre fix as a security fea
Hawaii Gov. couldn’t flag false missile alert on Twitter – didn’t know password
Bug Bounty Hackers Make More Money Than Average Salaries, Report Finds
Hackers steal almost $400 million from cryptocurrency ICOs

LinuxSecurity.com: An update for firefox is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which

Fresh botnet recruiting routers with weak credentials
Skype, Signal, Slack, other apps inherit Electron vuln

LinuxSecurity.com: An update that fixes 11 vulnerabilities is now available.

It’s 2018 and… wow, you’re still using Firefox? All right then, patch these horrid bugs
SpriteCoin cryptocurrency ransomware spy on user, steal saved passwords
It’s 2018 and your Macs, iPhones can be pwned by playing evil music
Satori Author Linked to New Mirai Variant Masuta
Swipe fright: Tinder hackers may know how desperate you really are

security update

Mingis on Tech: 2018 – the year blockchain breaks out
PlayStation 4 hacked to run PS2 emulation & homebrew software

LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0102

LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0101

App Flaws Allow Snoops to Spy On Tinder Users, Researchers Say
ESET’s guide makes it possible to peek into FinFisher

To help malware analysts and security researchers overcome FinFisher’s advanced anti-disassembly obfuscation and virtualization features, ESET researchers have framed some clever tricks into a whitepaper, “ESET’s guide to deobfuscating and devirtualizing FinFisher”. The post ESET’s guide makes it possible to peek into FinFisher appeared first on WeLiveSecurity

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Intel Halts Spectre/Meltdown Patching for Broadwell and Haswell Systems
Pirated Version of Fire and Fury Book Loaded with Malware
Opera Mobile Browser for Android & iOS Blocks Cryptocurrency Mining
South Korea moves to ban anonymous cryptocurrency trading

As part of the policy, underage individuals and foreigners without local bank accounts will be barred from trading in virtual currencies. Banks will be required to share information about cryptocurrency exchanges with each other. The post South Korea moves to ban anonymous cryptocurrency trading appeared first on WeLiveSecurity

Five ways to check if your router is configured securely

In a dynamic environment where threats continually evolve and new vulnerabilities are identified almost daily, it is necessary to use the most up-to-date security tools, since they deal with protection measures for new and ever-shifting attack vectors. The post Five ways to check if your router is configured securely appeared first on WeLiveSecurity

Gas pump malware tricks customers into paying for more than they pump
How a teen used social engineering to take on the FBI and CIA
Twitter will email 677,775 users who engaged with Russian election trolls
Salted Hash Ep 15: The state of security now and the not too distant future
We’re cutting F-35 costs, honest, insists jet-builder Lockheed Martin

LinuxSecurity.com: An update for rh-eclipse46-jackson-databind is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Electronic voting box makers try to get gear stripped from eBay and out of hackers’ hands
Optimus multi-prime is the new rule as OpenSSL transforms crypto policies again

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.

Uber dismissive about security flaw that lets hackers bypass its 2FA

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Uber hit with criticism of “useless” two-factor authentication

LinuxSecurity.com: It was discovered that Smarty, a PHP template engine, was vulnerable to code-injection attacks. An attacker was able to craft a filename in comments that could lead to arbitrary code execution on the host running Smarty.

‘WHAT THE F*CK IS GOING ON?’ Linus Torvalds explodes at Intel spinning Spectre fix as a security feature
Popular Sonic the HedgeHog Apps at Risk of Leaking User Data to Unverified Servers

security update

LinuxSecurity.com: An update for java-1.6.0-sun is now available for Oracle Java for Red Hat Enterprise Linux 6 and Oracle Java for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: Several security issues were fixed in GIMP.

Evrial Info-Stealing Trojan Modifies Addresses to Steal Cryptocurrency

From Facebook to LinkedIn, social media is flat-out rife with phishing attacks. You’ve probably encountered one before… Do fake Oakley sunglasses sales ring a bell? Phishing attacks attempt to steal your most private information, posing major risks to your online safety. It’s more pressing than ever to have a trained eye to spot and avoid […]

Google Denies Using Google Arts & Culture App to Collect Selfie Data
Get 29% Off This 6-Sheet Micro-Cut Paper and Credit Card Shredder
Up to 40,000 OnePlus customers potentially hit by credit card hack

The breach put at risk ‘only’ the customers who entered their payment data on oneplus.net between the middle of November 2017 and January 11, 2018. Those who paid with previously saved credit card details or via PayPal are believed to be out of harm’s way. The post Up to 40,000 OnePlus customers potentially hit by […]

Famous cryptographers’ tombstone cryptogram decrypted
The people you call when you’ve had a breach | Salted Hash Ep 15
How To Keep Yourself Safe During Online Gaming
UK Army chief: Russia could totally pwn us with cable-cutting and hax0rs
California to make it harder for your license plate to be tracked
Stock exchange finally fixes telnet router weakness
Under the hoodie: what makes bug bounty hunters tick?
HMRC dev support team cc blurtfest: Over 1,400 email addresses blabbed

LinuxSecurity.com: An update for libvirt is now available for Red Hat Enterprise Linux 6.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for libvirt is now available for Red Hat Enterprise Linux 6.6 Advanced Update Support and Red Hat Enterprise Linux 6.6 Telco Extended Update Support. Red Hat Product Security has rated this update as having a security impact

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6.6 Advanced Update Support and Red Hat Enterprise Linux 6.6 Telco Extended Update Support. Red Hat Product Security has rated this update as having a security impact

LinuxSecurity.com: An update for libvirt is now available for Red Hat Enterprise Linux 6.5 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for libvirt is now available for Red Hat Enterprise Linux 6.4 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for libvirt is now available for Red Hat Enterprise Linux 6.2 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6.5 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6.2 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6.4 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

The Reg visits London Met Police’s digital and electronics forensics labs
World Economic Forum: Cyberthreats rising in prominence in global risk landscape

The latest survey marks a shift from optimism regarding technological risks in the previous years. The heightened levels of worry come on the back of an escalation in cybersecurity threats, which, as noted by the WEF, are growing in prevalence and in disruptive potential alike. The post World Economic Forum: Cyberthreats rising in prominence in […]

LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Dridex redux, with FTP serving the nasties
Smut site fingered as ‘source’ of a million US net neutrality comments
Meltdown/Spectre week three: World still knee-deep in something nasty
China flaunts quantum key distribution in-SPAAACE by securing videoconference
Sweatcoin App Pays You Cryptocurrency To Get Fit
Hacker Infects Gas Pumps with Code to Cheat Customers