Menu

Monthly Archives: November 2018

Adobe Fixes Acrobat and Reader Flaw With Publicly-Available PoC
Facebook Messenger to offer Unsend feature to delete sent messages
Attackers exploit flaw in GDPR-themed WordPress plugin to hijack websites

The campaign’s goals aren’t immediately clear, as the malefactors don’t appear to be leveraging the hijacked websites for further nefarious purposes The post Attackers exploit flaw in GDPR-themed WordPress plugin to hijack websites appeared first on WeLiveSecurity

Google and Cloudfare traffic diverted to China… do we need to panic?
Podcast: IoT Firms Face a ‘Tidal Wave’ of Lawsuits, Attorney Explains
Target and other high profile Twitter accounts exploited for cryptocurrency scams
WordPress GDPR compliance plugin hacked
DEA and ICE hiding cameras in streetlights and traffic barrels

LinuxSecurity.com: Several security issues were fixed in ClamAV.

FIDO2: The Passwordless web is coming, says OneSpan
Post-WannaCry: Only 3% of companies are prepared for new types of cyberattacks
IoT security and Linux: Why IncludeOS thinks it has the edge
Does wiping your iPhone count as destroying evidence?

LinuxSecurity.com: A security update is now available for Red Hat JBoss BRMS 5.3.1. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Between you, me and that dodgy-looking USB: A little bit of paranoia never hurt anyone

LinuxSecurity.com: An update for httpd24-httpd, httpd24-nghttp2, and httpd24-curl is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: Several vulnerabilities have been discovered in the firmware for Broadcom BCM43xx wifi chips that may lead to a privilege escalation or loss of confidentiality.

Scare Force: Pakistan military hit by Operation Shaheen malware
Emotet Campaign Ramps Up with Mass Email Harvesting Module

LinuxSecurity.com: CVE-2018-18025 Fix for heap-based buffer over-read which can result in a denial of service via a crafted file.

security update

U.S. Chip Cards Are Being Compromised in the Millions
How to fit all of Shakespeare in one tweet (and why not to do it!)
Malware-Laced App Lurked on Google Play For a Year
Unable to remember his password, man sent letter bomb to Bitcoin exchange
New Boom in Facial Recognition Tech Prompts Privacy Alarms
Cathay Pacific hack: Airline admits techies fought off cyber-siege for months
Malware of the 90s: Remembering the Michelangelo and Melissa viruses

A look back at two of the most damaging malicious codes of the 1990s The post Malware of the 90s: Remembering the Michelangelo and Melissa viruses appeared first on WeLiveSecurity

Headmaster fired over cryptocoin mining on the school’s dime
Google’s data charts path to avoiding malware on Android

How much higher are the odds that your device will be exposed to malware if you download apps from outside Google Play or if you use one of Android’s older versions? Google has the numbers The post Google’s data charts path to avoiding malware on Android appeared first on WeLiveSecurity

Botnet pwns 100,000 routers using ancient security flaw

LinuxSecurity.com: gettext could be made to execute arbitrary code if it received a specially crafted message.

Terrorists told to hijack social media accounts to spread propaganda
Microsoft mistake leaves Windows 10 users fuming

LinuxSecurity.com: It was discovered that there was a potential SSH passphrase disclosure vulnerability in the ansible configuration management system, The “User” module leaked data that was passed as a parameter to the

LinuxSecurity.com: An update for rh-git29-git is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: Multiple security issues have been found in Thunderbird: Multiple memory safety errors and use-after-frees may lead to the execution of arbitrary code or denial of service.

LinuxSecurity.com: Dulwich, when an SSH subprocess is used, allowed remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname (CVE-2017-16228). References:

LinuxSecurity.com: An issue was discovered in LibTIFF 4.0.9. There is a NULL pointer dereference in the function LZWDecode in the file tif_lzw.c. (CVE-2018-18661) References:

LinuxSecurity.com: An out-of-bounds read during parsing of a malformed manifest entry (CVE-2018-17983). References: – https://bugs.mageia.org/show_bug.cgi?id=23763

LinuxSecurity.com: It was discovered that opencc contained an out of bounds pointer in BinaryDict.cpp which could lead to segment fault and a Denial of Service (CVE-2018-16982). References:

LinuxSecurity.com: It was found that inventory variables are loaded from current working directory when running ad-hoc command which are under attacker’s control, allowing to run arbitrary code as a result (CVE-2018-10874). It was found that ansible.cfg is being read from the current working

LinuxSecurity.com: A NULL pointer dereference in modules/ModuleState.cpp:ModuleState::setup() allows for denial of service via crafted file (CVE-2018-13440). A Heap-based buffer overflow was found in Expand3To4Module::run when running sfconvert (CVE-2018-17095).

LinuxSecurity.com: A flaw was found in iniparser version prior to 4.1. A stack buffer underflow in the function iniparser_load() in iniparser.c file which can be triggered by parsing a file that containing a zero-byte. This vulnerability may allow an attacker to cause a Denial of Service (DoS).

LinuxSecurity.com: The package systemd before version 239.300-1 is vulnerable to multiple issues including arbitrary code execution and privilege escalation.

security update

LinuxSecurity.com: Several vulnerabilities were discovered in Ghostscript, the GPL PostScript/PDF interpreter, which may result in denial of service, disclosure of existence and size of arbitrary files, or the execution of arbitrary code if a malformed Postscript file is processed (despite the

Pakistan Banks Not Breached, but Probably Skimmed
Meaner, more violent Stuxnet variant reportedly hits Iran
Ransomware Still the Top Malware Threat During 2018 According to Europol
Zero-day in popular WordPress plugin exploited in the wild to take over sites
Income, tax and immigration data stolen in Healthcare.gov breach

LinuxSecurity.com: The package lib32-curl before version 7.62.0-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package lib32-libcurl-compat before version 7.62.0-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package lib32-libcurl-gnutls before version 7.62.0-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package libcurl-gnutls before version 7.62.0-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package libcurl-compat before version 7.62.0-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: Multiple security issues have been found in Thunderbird: Multiple memory safety errors may lead to the execution of arbitrary code or denial of service.

LinuxSecurity.com: The package curl before version 7.62.0-1 is vulnerable to multiple issues including arbitrary code execution and information disclosure.

Oracle’s VirtualBox vulnerability leaked by disgruntled researcher
Dharma Ransomware Hits Altus Baytown Hospital’s Systems
Irony meters explode as WordPress GDPR tool hacked, cell network hack shenanigans, crypto-backdoors, etc…

LinuxSecurity.com: A vulnerability in Icecast might allow remote attackers to execute arbitrary code.

LinuxSecurity.com: Okular is vulnerable to a directory traversal attack.

LinuxSecurity.com: A vulnerability in Pango could result in a Denial of Service condition.

LinuxSecurity.com: Multiple vulnerabilities have been found in libde265, the worst of which allows remote attackers to execute arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in PHProjekt due to embedded Zend Framework, the worst of which could allow attackers to remotely execute arbitrary commands. [More…]

LinuxSecurity.com: An update that fixes 7 vulnerabilities is now available.

LinuxSecurity.com: An update that solves 13 vulnerabilities and has one errata is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that contains security fixes can now be installed.

LinuxSecurity.com: An update that solves three vulnerabilities and has one errata is now available.

LinuxSecurity.com: An update that fixes three vulnerabilities is now available.

LinuxSecurity.com: An update that solves three vulnerabilities and has one errata is now available.

security update

Lawsuits Aim Billions in Fines at Equifax and Ad-Targeting Companies
I found a security hole in Steam that gave me every game’s license keys and all I got was this… oh nice: $20,000
Recently-Patched Adobe ColdFusion Flaw Exploited By APT

security update

Google’s secret to a healthy phone? Remote-controlling your apps
Oops: Cisco accidentally leaked in-house Dirty COW exploit code with biz conf call software

LinuxSecurity.com: It was discovered that there was a denial of service (DoS) vulnerability in the nginx web/proxy server. As there was no validation for the size of a 64-bit atom in an MP4 file,

LinuxSecurity.com: An update is now available for Red Hat JBoss Enterprise Application Platform 7.1 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update is now available for Red Hat JBoss Enterprise Application Platform 7.1 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

ThreatList: Google Play Nine Times Safer Than Third-Party App Stores
Threatpost News Wrap Podcast for Nov. 9
Embracing the Cybersecurity ‘Grey Space’

Reading Time: ~2 min.Data Breach Nabs HSBC Account Info HSBC has been monitoring some unauthorized access occurring over a ten-day period on their customer’s online accounts. During this time, attackers used credentials that were likely part of prior breaches to access numerous accounts. HSBC worked quickly to disable online access to any accounts that showed […]

Tasty news bytes from networking land: Route security, Cisco cert death, ETSI and more
Chinese headmaster fired after setting up his own secret cryptomining rig at school
Emotet launches major new spam campaign

The recent spike in Emotet activity shows that it remains an active threat The post Emotet launches major new spam campaign appeared first on WeLiveSecurity

Learn the tricks of the cyber criminals’ trade at SANS Dublin training event

LinuxSecurity.com: An update for thunderbird is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

LinuxSecurity.com: An update for thunderbird is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

LinuxSecurity.com: An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 7 Supplementary. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which

Sent a photo to the wrong person? Facebook Messenger to let you unsend it
Canada Post leaked personal data, orders of thousands of cannabis smokers
HSBC Bank in U.S. suffers data breach
Privacy International Files GDPR Complaints