Menu

Monthly Archives: March 2018

LinuxSecurity.com: Cure53 discovered that in SimpleSAMLphp, in rare circumstances an invalid signature on the SAML 2.0 HTTP Redirect binding could be considered valid.

Beware the fake Facebook sirens that flirt you into sextortion
City of Atlanta computers held hostage in ransomware attack

City officials confirm that Atlanta is dealing with a cyberattack that has locked down some internal systems and is holding them hostage using ransomware The post City of Atlanta computers held hostage in ransomware attack appeared first on WeLiveSecurity

Taipan – Web Application Security Scanner
Is Application Security Dead?
Firefox in 2018: We’ll tackle bad ads, breach alerts, autoplay video, says Mozilla
GitHub: Our dependency scan has found four million security flaws in public repos
Microsoft to re-enforce March patch that owns Windows over RDP
Your code is RUBBISH, says GitHub. Good thing we’re here to save you

The Cyber News Rundown brings you the latest happenings in cybersecurity news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst and a guy with a passion for all things security. Any questions? Just ask. Zenis Ransomware Makes Resolution Problematic for Victims Researchers recently discovered a new ransomware variant named Zenis that […]

‘R2D2’ stops disk-wipe malware before it executes evil commands
Mozilla pulls ads from Facebook after spat over privacy controls
Reflection of a QR code on PoS scanner used to own mobile payments

LinuxSecurity.com: An update that solves 8 vulnerabilities and has four fixes is now available.

LinuxSecurity.com: Charles Duffy discovered that the Commandline class in the utilities for the Plexus framework performs insufficient quoting of double-encoded strings, which could result in the execution of arbitrary shell commands.

LinuxSecurity.com: Alfred Farrugia and Sandro Gauci discovered an off-by-one heap overflow in the Kamailio SIP server which could result in denial of service and potentially the execution of arbitrary code.

City of Atlanta’s IT gear thoroughly pwned by ransomware nasty

LinuxSecurity.com: Several vulnerabilities have been discovered in the ISC DHCP client, relay and server. The Common Vulnerabilities and Exposures project identifies the following issues:

LinuxSecurity.com: Huzaifa Sidhpurwala discovered that an out-of-bounds memory write in the codebook parsing code of the Libtremor multimedia library could result in the execution of arbitrary code if a malformed Vorbis file is opened.

Hackers leave ransom note after wiping out MongoDB in 13 seconds
US watchdog: Scam scammers scamming scammed in scam scam

security update

LinuxSecurity.com: Several vulnerabilities were discovered in PolarSSL, a lightweight crypto and SSL/TLS library, that allowed a remote attacker to either cause a denial-of-service by application crash, or execute arbitrary code.

Drupal Forewarns ‘Highly Critical’ Bug to be Patched Next Week
Did hackers lead warplanes to Syrian hospital after targeting British surgeon’s computer?
New whistleblower says Facebook turned a blind eye to covert data harvesting
The Pirate Bay is Down Again for the 3rd Time in a Week
Apple To Fix Glitch Allowing Siri To Read Hidden Messages Out Loud
Teen Hacks Ledger Hardware Cryptocurrency Wallet
How Siri leaks your private iPhone messages, and how to stop her
Glupteba is no longer part of Windigo

Latest ESET research strongly suggests that Glupteba is no longer tied to the infamous Operation Windigo. The post Glupteba is no longer part of Windigo appeared first on WeLiveSecurity

Mozilla stops Facebook advertising, demands privacy changes
Troubled Watchkeeper drones miss crucial UK flight safety certificate
Travel site Orbitz warns data breach may have exposed 880,000 payment card details
The password to your IoT device is just a Google search away
880,000 payment cards affected in travel company data breach
How 11 open source projects got their names
AMD promises firmware fixes for security processor bugs
A “tamper-proof” currency wallet just got backdoored by a 15-year-old
Top 7 Remote Access Apps For Linux
F-35B Block 4 software upgrades will cost Britain £345m

LinuxSecurity.com: An update is now available for Red Hat JBoss BPM Suite. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

LinuxSecurity.com: An update is now available for Red Hat JBoss BRMS. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Holy sweat! Wearables have THREE attack surfaces
Internet Society: Cryptocurrency probably not an identity system
What ends with X and won’t sue security researchers?

LinuxSecurity.com: The package lib32-libvorbis before version 1.3.6-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.

Smashing Security #070: Facebook and Cambridge Diabolica

LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may lead to arbitrary code execution.

LinuxSecurity.com: Gentoo’s collectd package contains multiple vulnerabilities, the worst of which may allow local attackers to escalate privileges.

Vivaldi browser puts DuckDuckGo as default search engine for private windows
Netflix Opens Public Bug Bounty Program with $15K Payout Cap

LinuxSecurity.com: An update that solves 8 vulnerabilities and has four fixes is now available.

US mulls drafting gray-haired hackers during times of crisis
The Pirate Bay is down again but its Dark Web domain is up

security update

Zuckerberg Breaks Silence: ‘We Made Mistakes’ Regarding Cambridge Analytica Debacle
Facebook Fallout Continues as Politicians Call For Legal Action

LinuxSecurity.com: Various issues were discovered in exempi, a library to parse XMP metadata that may cause a denial-of-service or may have other unspecified impact via crafted files.

LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0549

LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0549

LinuxSecurity.com: An update for collectd is now available for RHEV 4.X RHEV-H and Agents for RHEL-7 and RHEV Engine version 4.1. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Since inception in late 2016, the TrickBot banking trojan has continually undergone updates and changes in attempts to stay one step ahead of defenders. While TrickBot has not always been the stealthiest trojan, its authors have remained consistent in the use of new distribution vectors and development of new features for their product. On March […]

Risk Level: Very Low. Type: Trojan.

WhatsApp Co-Founder Urges Users to Delete Their Facebook Accounts
Orbitz Warns 880,000 Payment Cards Suspected Stolen
UK surgeon suspects his PC was hacked to target Syrian hospital
Pirate websites expose users to more malware, study finds

The research confirmed that the more time the users spent on pirate sites the higher the likelihood that some type of malware would compromise their computers. The post Pirate websites expose users to more malware, study finds appeared first on WeLiveSecurity

Bitcoin’s blockchain tainted with links to child abuse imagery
Symantec cert holdout sites told: Those Google Chrome warnings are not a good look
Hackers pwn Edge, Firefox, Safari, macOS, & VirtualBox at Pwn2Own 2018

LinuxSecurity.com: An update for rh-mariadb101-mariadb and rh-mariadb101-galera is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Police ask Google for location data to narrow suspect lists
Bomb hoax sent to 400 schools blamed on warring Minecraft gamers
Easily Fund Open Source Projects With These Platforms
Administrator’s Password Bad Practice
Creaking Chromebooks getting Meltdown protection soon
Commonwealth Games are just the ticket for Facebook
CTS who? AMD brushes off chipset security bugs with firmware patches
Now that’s a bad trip: 880k credit cards ‘likely’ stolen by Orbitz hackers
Experts Call Facebook’s Latest Controversy a Social Media ‘Breach Of Trust’
AMD Acknowledges Vulnerabilities, Will Roll Out Patches In Coming Weeks
Facebook fallout: How to protect your data
Security – it shouldn’t just be the jewel in your crown, but your partners and suppliers too
FBI raids home of spy sat techie over leak of secret comms source code on Facebook
Hackers steal banking & personal data of 800,000 Orbitz customers

In light of the publicity, panic, and lingering despair around Spectre and Meltdown, I thought this might be a good time to clear up the differences between vulnerabilities, exploits, and malware. Neither Spectre nor Meltdown are exploits or malware. They are vulnerabilities. Vulnerabilities don’t hurt people, exploits and malware do. To understand this distinction, witness […]

LinuxSecurity.com: Paramiko could be made to run programs if it received speciallycrafted network traffic.

LinuxSecurity.com: Paramiko could be made to run programs if it received speciallycrafted network traffic.

Telegram Ordered to Hand Over Encryption Keys to Russian Authorities

LinuxSecurity.com: This update upgrades Firefox to version 52.7.2 ESR. * Mozilla: Vorbis audio processing out of bounds write (MFSA 2018-08) (CVE-2018-5146) SL6 x86_64 firefox-52.7.2-1.el6_9.x86_64.rpm firefox-debuginfo-52.7.2-1.el6_9.x86_64.rpm firefox-52.7.2-1.el6_9.i686.rpm firefox-debuginfo-52.7.2-1.el6_9.i686.rpm i386 firefox-52.7.2-1.el6_9.i686.rpm firefox-debuginfo-52.7.2-1.el6 [More…]

IBM Developing World’s Tiniest Computer Smaller than a Grain of Salt
Nine years on, Firefox’s master password is still insecure
Programs Controlling ICS Robotics Are ‘Wide Open’ to Vulnerabilities
Apple burns the HSTS super cookie
US spy lab wants to geolocate any video or photo taken outdoors
Fake Amazon ad ranks top on Google search results
Cambridge Analytica controversy: Was there a Facebook data breach?
Adrian Lamo, ‘Homeless Hacker’ Who Turned in Chelsea Manning, Dead at 37
Cryptographic crumpling: The encryption ‘middle ground’ for government surveillance