Menu

Monthly Archives: November 2018

LinuxSecurity.com: Among others, Andre Heinicke from gpg4win.org found several issues of nsis, a tool for creating quick and user friendly installers for Microsoft Windows operating systems.

LinuxSecurity.com: Multiple vulnerabilities have been discovered in the libtiff library and the included tools, which may result in denial of service or the execution of arbitrary code if malformed image files are processed.

It’s ‘nyet’ again, yet again, for Kaspersky: Appeal against US govt ban snubbed by Washington DC court

LinuxSecurity.com: Several local side channel attacks and a denial of service via large Diffie-Hellman parameters were discovered in OpenSSL, a Secure Sockets Layer toolkit.

It’s nearly 2019, and your network can get pwned through an oscilloscope
Podcast: Breaking Down the Magecart Threat (Part Two)

security update

Marriott Starwood data breach: 5 defensive steps travelers should take now

Defensive steps for Marriott Starwood guests worried their personal information may have been compromised by the massive data breach The post Marriott Starwood data breach: 5 defensive steps travelers should take now appeared first on WeLiveSecurity

Bing Warns VLC Media Player Site is ‘Suspicious’ in Likely False-Positive Gaff
Magecart fiends punch card-skimming code in Sotheby’s Home website
Marriott’s massive data breach – here’s what you need to know
Cyberattacks on financial sector worries Americans most

A recent survey carried out by ESET has revealed that Americans are worried most about cyberattacks on the financial sector, listing it above attacks against hospitals, voting systems, or energy supply companies The post Cyberattacks on financial sector worries Americans most appeared first on WeLiveSecurity

Newsmaker Interview: Katie Moussouris on Improving Bug Bounty Programs
Little FYI: Wi-Fi calling services on AT&T, T-Mobile US, Verizon are insecure, say boffins
2014 Marriott Data Breach Exposed, 500M Guests Impacted

Reading Time: ~2 min.USPS Website Leaves Personal Data Available to Anyone Within the last week, The U.S. Postal Service (USPS) has been working to resolve a vulnerability that allowed any authenticated user to view and modify the personal information for any of the other 60 million users. Fortunately, USPS was quick to fix the vulnerability […]

Busted! DOJ exposes huge ad-fraud operation, eight charged
Marriott warns of hack. 500 million Starwood hotel guests’ personal data could be exposed.
Marriott’s Starwood hotels mega-hack: Half a BILLION guests’ deets exposed over 4 years
Prisoners allegedly posed as underage girls in $560K sextortion scam
57m Americans’ details leaked online by another misconfigured server
Dell suffers security breach, reset customer passwords (but didn’t tell customers why until now)
Encryption is the best way to protect payment card transaction data
Driver loses his car to hackers. TWICE.
Q: If Pesky Pepper had a peek at patient papers, at how many patient papers did Pesky Pepper peek? A: 231

LinuxSecurity.com: A SQL injection in PostgreSQL may allow attackers to execute arbitrary SQL statements.

LinuxSecurity.com: Multiple vulnerabilities have been found in libsndfile, the worst of which might allow remote attackers to cause a Denial of Service condition. [More…]

Support whizz ‘fixes’ screeching laptop with a single click… by closing ‘malware-y’ browser tab

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

Here are another 45,000 reasons to patch Windows systems against old NSA exploits

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes three vulnerabilities is now available.

LinuxSecurity.com: An update that fixes three vulnerabilities is now available.

LinuxSecurity.com: An update that solves one vulnerability and has two fixes is now available.

LinuxSecurity.com: Multiple security vulnerabilities were found in libarchive, a multi-format archive and compression library. Heap-based buffer over-reads, NULL pointer dereferences and out-of-bounds reads allow remote attackers to cause a denial-of-service (application crash) via

GCHQ pushes for ‘virtual crocodile clips’ on chat apps – the ability to silently slip into private encrypted comms

LinuxSecurity.com: An update for ruby is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

LinuxSecurity.com: Multiple vulnerabilities were discovered in the implementation of the Perl programming language. The Common Vulnerabilities and Exposures project identifies the following problems:

Big Blue shoos Db2 blues before rogue staff turn the screws in hijack ruse (translation: patch your IBM databases)
Critical Zoom Flaw Lets Hackers Hijack Conference Meetings

LinuxSecurity.com: Several security vulnerabilities were discovered in Ghostscript, an interpreter for the PostScript language, which could result in denial of service, the creation of files or the execution of arbitrary code if a malformed Postscript file is processed (despite the dSAFER sandbox being

LinuxSecurity.com: The package samba before version 4.9.3-1 is vulnerable to multiple issues including denial of service and access restriction bypass.

LinuxSecurity.com: The package powerdns-recursor before version 4.1.8-1 is vulnerable to denial of service.

Cisco Patches Critical Bug in License Management Tool
Healthcare billing biz AccuDoc ‘fesses up to breach that blabbed 2.65m people’s data
Hackers Breach Dunkin’ Donuts Accounts in Credential Stuffing Attack
US charges Iranian hackers for SamSam ransomware attacks
GCHQ opens kimono for infosec world to ogle its vuln disclosure process
US indicts two over SamSam ransomware attacks

The hacking and extortion scheme took place over a 34-month period with the SamSam ransomware affecting over 200 organizations in the US and Canada The post US indicts two over SamSam ransomware attacks appeared first on WeLiveSecurity

Massage app exposes users
Google’s “deceitful” location tracking is against the law, say 7 EU groups
Sorry, we haven’t ACLU what happened in sealed ‘Facebook decryption’ case, but let’s find out
Smashing Security #106: Google Maps, Fed phishing, and Grinch bots
Distributing Malware By Becoming an Admin on an Open-Source Project
Pegasus gov’t spyware used to target colleague of slain drug cartel journalist
Facial recognition traffic camera mistakes bus for famous woman

LinuxSecurity.com: An update for rh-ruby25-ruby is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for rh-ruby24-ruby is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Microsoft’s Office 365 MFA security crashes for second time

LinuxSecurity.com: An update for rh-ruby23-ruby is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Symantec comes out in swinging in bitter legal battle over security bug audit conspiracy claims
Oh my chord! Sennheiser hits bum note with major HTTPS certificate cock-up
Dell Warns of Attempted Breach on Network

LinuxSecurity.com: Multiple vulnerabilities have been found in RPM, the worst of which could allow a remote attacker to escalate privileges.

LinuxSecurity.com: Multiple vulnerabilities have been found in OpenSSL, the worst of which may lead to a Denial of Service condition.

What the Dell? Customer passwords reset after miscreants break into Big Mike’s IT emporium
Microsoft Warns of Two Apps That Expose Private Keys
WhamWham, bambam, no thank you, SamSam: Iranians accused by the Feds of orchestrating ransomware outbreak

LinuxSecurity.com: Buffer overflows in URL auth code if there is a “mount” definition that enables URL authentication. A malicious client could send long HTTP headers, leading to a buffer overflow and potential remote code execution (CVE-2018-18820).

LinuxSecurity.com: The SingleDocParser::HandleNode function in yaml-cpp (aka LibYaml-C++) 0.5.1 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file. (CVE-2017-5950)

security update

security update

ThreatList: Cryptominers Dominate Malware Growth in 2018
Iranian hackers charged in the US for SamSam ransomware attacks
FBI Sinkholes $38M Global Ad Fraud Operation
Germany proposes security guidelines for routers, but not everybody is happy
School district fails to reclaim $120,000 wired by bank to scammer
The Nature of Mass Exploitation Campaigns
US told to quit sharing data with human rights-violating surveillance regime. Which one, you ask? That’d be the UK
JavaScript library used for sneak attack on Copay Bitcoin wallet
It’s a patch bonanza as Microsoft showers its OS platforms with update love
Social media scraping app Predictim banned by Facebook and Twitter
Facebook bug resurrects ghostly messages from the past
‘Grinch bots’ are ruining holiday shopping. Lawmakers hit back
Uber fined ?900,000 by UK, Dutch privacy regulators over 2016 data breach
EU Voters Worried About Election Hacking and Disinformation

LinuxSecurity.com: USN-3804-1 introduced a regression in OpenJDK.

Hot fuzz: Bug detectives whip up smarter version of classic AFL fuzzer to hunt code vulnerabilities
3ve Offline: Countless Windows PCs using 1.7m IP addresses hacked to ‘view’ up to 12 billion adverts a day

LinuxSecurity.com: Several security issues were fixed in Git.

Pegasus Spyware Targets Investigative Journalists in Mexico

LinuxSecurity.com: Several vulnerabilities were discovered in Ghostscript, the GPL PostScript/PDF interpreter, which may result in denial of service or the execution of arbitrary code if a malformed Postscript file is processed (despite the -dSAFER sandbox being enabled).

Reading Time: ~4 min.At Webroot, we stay ahead of cybersecurity trends in order to keep our customers up-to-date and secure. As the end of the year approaches, our team of experts has gathered their top cybersecurity predictions for 2019. What threats and changes should you brace for? General Data Protection Regulation Penalties “A large US-based […]

3ve – Major online ad fraud operation disrupted

International law enforcement swoops on fake ad viewing outfit The post 3ve – Major online ad fraud operation disrupted appeared first on WeLiveSecurity

LinuxSecurity.com: Several security issues were fixed in Samba.

Cisco Re-Issues Patch For High-Severity WebEx Flaw
Cheetah Mobile Blames SDKs for Rampant Ad Fraud in Its Android Apps

LinuxSecurity.com: USN-3816-1 caused a regression in systemd-tmpfiles.