Menu

Monthly Archives: February 2018

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Salon website gives you a choice: turn off your ad blocker or let us mine cryptocurrencies
How To Keep Your New Online Business Safe
Google is bringing AMP to email
Would you allow Facebook into your home?
UK Government announces tool to detect and block extremist videos
Blockchain Hardened devices: Can they restore privacy with security by design?

These developments show that security technology is now keeping up, or outpacing other technological and regulatory developments. Thus, while users’ wants often continue to trump their appreciation of risk, the industry has responded and in many cases gotten ahead of popular demand. The post Blockchain Hardened devices: Can they restore privacy with security by design? […]

Did the NSA really use Twitter to send coded messages to a Russian?

LinuxSecurity.com: An update that fixes one vulnerability is now available.

Facebook’s privacy settings are illegal, says court
Beware the ‘celebrities’ offering you free cryptocoins on Twitter
How a Low-Level Apple Employee Leaked Some of the iPhone’s Most Sensitive Code
Linux Meltdown patch: ‘Up to 800 percent CPU overhead’, Netflix tests show
Correctly integrating containers
UK ICO, USCourts.gov… Thousands of websites hijacked by hidden crypto-mining code after popular pl
UK Home Sec Amber Rudd unveils extremism blocking tool
The strange case of the data breach that stayed online for a month
Equifax hack worse than previously thought: Biz kissed goodbye to card expiry dates, tax IDs etc
Browsealoud plugin hacked to mine Monero on 4,000 Govt websites

LinuxSecurity.com: A request smuggling vulnerability was discovered in pound that may allow attackers to send a specially crafted http request to a web server or reverse proxy while pound may see a different set of requests. This facilitates several possible exploitations, such as partial cache

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

‘Olympic Destroyer’ Malware Behind Winter Olympics Cyberattack, Researchers Say

LinuxSecurity.com: CVE-2017-6419 CVE-2017-11423

LinuxSecurity.com: Mikhail Klementev, Ronnie Goodrich and Andrew Krasichkov discovered that missing restrictions in the implementation of the WEBSERVICE function in LibreOffice could result in the disclosure of arbitrary files readable by the user who opens a malformed document.

LinuxSecurity.com: The package sthttpd before version 2.27.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: WavPack could be made to crash if it opened a specially crafted file.

Still not on Windows 10? Fine, sighs Microsoft, here are its antivirus tools for Windows 7, 8.1

In a month where matchmaking is in high demand, we took a look at recent trends around online dating sites using Webroot Brightcloud Threat Intelligence Platform. What did we find? Valentine’s Day sends cybercriminals on the prowl, and not for a soulmate. On average, visits to dating websites increase by 53 percent in the month […]

LinuxSecurity.com: Mikhail Klementev, Ronnie Goodrich and Andrew Krasichkov discovered that missing restrictions in the implementation of the WEBSERVICE function in LibreOffice could result in the disclosure of arbitrary files readable by the user who opens a malformed document.

Romance Scams Drive Necurs Botnet Activity in Run Up to Valentine’s Day
BitGrail cryptocurrency exchange hacked; $160 million in Nano stolen

Risk Level: Very Low. Type: Trojan.

U.K. and U.S. Government Websites Among Thousands Infected by Cryptocurrency Miner
Until last week, you could pwn KDE Linux desktop with a USB stick
See that over Heathrow? It’s not an airliner – it’s a Predator drone
Washington State Marijuana Tracking System Hacked to Steal Route Data
US and UK government websites hijacked to mine cryptocurrency on visitors’ machines

If undetected by a user’s security solution or content- or ad-blocker, the script ran in the background unbeknown to the user until the webpage was closed. A number of the affected websites, including that of the ICO, were also offline for hours in the aftermath of the attack. The post US and UK government websites […]

Google-Nest merger reawakens privacy worries
Uh-oh. How just inserting a USB drive can pwn a Linux box
Cryakl ransomware antidote released after servers seized
You have five months to switch your website to HTTPS
Facebook is not testing a dislike button, except for the one it’s testing

LinuxSecurity.com: An update that fixes four vulnerabilities is now available.

Managing open-source mobile security and privacy for activists worldwide | Salted Hash Ep 18
All HTTP websites to soon be marked as ‘not secure’ by Google Chrome

LinuxSecurity.com: It was discovered that there was an input validation vulnerability in the librsvg renderer library that could result in data being leaked to remote attackers via a specially-crafted file.

LinuxSecurity.com: Chris Navarrete from Fortinet’s FortiGuard Labs discovered that Audacity, a multi-track audio editor, contains a vulnerability such that a .wav file with a crafted FORMATCHUNK structure (many channels) can result in

If you haven’t already killed Lotus Notes, IBM just gave you the perfect reason to do it now, fast
Government websites hijacked by cryptomining plugin

LinuxSecurity.com: Multiple vulnerabilities have been found in VirtualBox, the worst of which could allow an attacker to take control of VirtualBox.

Winter Olympics website downed by cyber attack

LinuxSecurity.com: Jonas Klempel discovered that, when parsing the AIA-Extension field of a client certificate, Apache Tomcat Native did not correctly handle fields longer than 127 bytes. The result of the parsing error was to skip the

security update

Turns out Equifax breach was way bigger than initially thought
UK ICO, USCourts.gov… Thousands of websites hijacked by hidden crypto-mining code after popular plugin hacked
Apple’ iBoot Baseband Code for Various iPhone Models Leaked on GitHub

security update

Have federal nuclear supercomputer? GO CRYPTOMINING!

LinuxSecurity.com: It was discovered that the uwsgi_expand_path function in utils.c in Unbit uWSGI, an application container server, has a stack-based buffer overflow via a large directory length that can cause a denial-of-service (application crash) or stack corruption.

Cyber Attack Disrupts Winter Olympics Website During Opening Ceremony

security update

LinuxSecurity.com: Meh Chang discovered a buffer overflow flaw in a utility function used in the SMTP listener of Exim, a mail transport agent. A remote attacker can take advantage of this flaw to cause a denial of service, or potentially the execution of arbitrary code via a specially crafted

LinuxSecurity.com: Meh Chang discovered a buffer overflow flaw in a utility function used in the SMTP listener of Exim, a mail transport agent. A remote attacker can take advantage of this flaw to cause a denial of service, or potentially the execution of arbitrary code via a specially crafted

LinuxSecurity.com: Security fix for CVE-2017-15698

LinuxSecurity.com: PostgreSQL could be made to expose sensitive information.

LinuxSecurity.com: The package clamav before version 0.99.3-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.

LinuxSecurity.com: An update that solves 9 vulnerabilities and has 70 fixes is now available.

Russian scientists caught using nuclear facility supercomputer to mine Bitcoin
Why Linux is better than Windows or macOS for security
Hackers Get Linux Running On Switch And Claim Nintendo Can’t Patch The Exploit
Dark Web’s largest cybercrime group indicted after stealing $530M
NSA code backported, crims cuffed, leaky AWS S3 buckets, and more

LinuxSecurity.com: Lalith Rallabhandi discovered that OmniAuth, a Ruby library for implementing multi-provider authentication in web applications, mishandled and leaked sensitive information. An attacker with access to the callback environment, such as in the case of a crafted web

LinuxSecurity.com: The package plasma-workspace before version 5.12.0-1 is vulnerable to arbitrary command execution.

LinuxSecurity.com: The package plasma-workspace before version 5.12.0-1 is vulnerable to arbitrary command execution.

LinuxSecurity.com: The package go-pie before version 1.9.4-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package go before version 1.9.4-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: An update that solves 9 vulnerabilities and has 44 fixes is now available.

LinuxSecurity.com: An update that fixes four vulnerabilities is now available.

Russian nuclear scientists arrested for allegedly hijacking supercomputer to mine Bitcoins
Ruskie boffins blasted for using nuke bomb lab’s supercomputer to mine crypto-rubles

Type: Vulnerability. Microsoft Internet Information Services is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Adobe Flash Player is prone to an unspecified remote code-execution vulnerability; fixes are available.

Cisco Confirms Critical Firewall Software Bug Is Under Attack

LinuxSecurity.com: Mailman could be made to run arbitrary code.

Lenovo Warns Critical WiFi Vulnerability Impacts Dozens of ThinkPad Models

Risk Level: Very Low. Type: Trojan.