Menu

Monthly Archives: January 2019

She will lock you out, livin’ la Vidar loca: Enterprising crims breed ransomware, file thief into hybrid nasty
Zerodium Raises Zero-Day Payout Ceiling to $2M
ThreatList: Container Security Lags Amidst DevOps Enthusiasm

LinuxSecurity.com: A NULL pointer dereference flaw was found in the way dcraw processed images. An attacker could potentially use this flaw to crash dcraw by tricking it into processing crafted images (CVE-2018-5801). References:

LinuxSecurity.com: A flaw was found in libao. The _tokenize_matrix function in audio_out.c in Xiph.Org libao 1.2.0 can cause a denial of service(memory corruption) via a crafted mp3 file (CVE-2017-11548). References:

LinuxSecurity.com: NULL pointer dereference in the function aubio_source_avcodec_readframe which may lead to DoS when playing a crafted audio file (CVE-2017-17554). A crash in aubio_pitch_set_unit (CVE-2018-14522).

Risk Level: Very Low.

Snowden’s Attorney Urges Canada to Take in Whistleblower Helpers (Part Two)
Earn $2,000,000 by remotely jailbreaking an iPhone
unCAPTCHA AI Cracks Google reCAPTCHAs with 90% Accuracy
EU offers bug bounties on popular open source software

The program with a prize pool of almost US$1 million aims to leverage the ‘power of the crowd’ in order to prevent another Heartbleed The post EU offers bug bounties on popular open source software appeared first on WeLiveSecurity

Skype Glitch Allowed Android Authentication Bypass

Reading Time: ~3 min. SMBs are overconfident about their cybersecurity posture. A survey of SMBs conducted by 451 Research found that in the preceding 24 months, 71% of respondents experienced a breach or attack that resulted in operational disruption, reputational damage, significant financial losses or regulatory penalties. At the same time, 49% of the SMBs […]

No Android passcode? No problem! Skype unlocked it for you

LinuxSecurity.com: This is the final notification for the retirement of Red Hat Enterprise Linux 6.6 Telco Update Service (TUS). This notification applies only to those customers subscribed to the Telco Update Service (TUS) channel for Red Hat Enterprise Linux 6.6.

Podcast: Beware These Top Security Threats in 2019
Hacker doxes hundreds of German politicians
Major US newspapers crippled by Ryuk ransomware attack
Marriott Sheds New Light on Massive Breach
Singapore Airlines data breach affects 284 accounts, exposes travel details
Update now! Adobe Acrobat and Reader have critical flaws
Monday review – the hot stories of the new year

LinuxSecurity.com: It was discovered that there was a content-spoofing vulnerability in the default 404 pages in the Django web development framework. For more information, please see:

Dark Overlord hackers publish first batch of “secret” 9/11 files
Irish tram system website hacked; held for 1 BTC ransom
How to Turn Your IT Skills into a Business
Google fixes critical vulnerability in Chrome for Android after 3 years
Abine Blur Password Manager exposed data of 2.4M users
Hackers play PewDiePie ad on thousands of hacked Chromecasts & Smart TVs
EU launches Bug Bounty program for 14 free open-source products
Dark Overlord hackers vow to leak 9/11 related data stolen from law firm

LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2019:0022

Singapore Airlines customer logs into account, sees stranger’s personal data
Town of Salem Data Breach Exposes 7.6 Million Gamers’ Accounts

LinuxSecurity.com: This release (4.3.1) contains bug fixes only: – Fix checkspell detected typos (#531) – Heap overflow packet2tree and get_l2len (#530) This is Tcpreplay suite 4.3.0 This release contains several bug fixes and enhancements: – Fix maxOS TOS checksum failure (#524) – TCP sequence edits seeding (#514) – Fix issues identifed by Codacy (#493) – […]

LinuxSecurity.com: This release (4.3.1) contains bug fixes only: – Fix checkspell detected typos (#531) – Heap overflow packet2tree and get_l2len (#530) This is Tcpreplay suite 4.3.0 This release contains several bug fixes and enhancements: – Fix maxOS TOS checksum failure (#524) – TCP sequence edits seeding (#514) – Fix issues identifed by Codacy (#493) – […]

LinuxSecurity.com: Since version 1.19 Wget stores the URL and in certain cases the ‘Referer’ URL within extended attributes (xattrs) of the file system – by default. This includes username + password and other credentials or private data *if* those have been used within the URLs. Anyone with read access to

The Advantages of a More Secure and Safer Blockchain

LinuxSecurity.com: Several vulnerabilities were discovered in libextractor which may lead to denial of service or memory disclosure if a malformed OLE file is processed (CVE-2018-20430, CVE-2018-20431). References:

LinuxSecurity.com: Use-after-free vulnerability in Decoder.cpp in libpgf before 6.15.32 (CVE-2015-6673). References: – https://bugs.mageia.org/show_bug.cgi?id=24101

LinuxSecurity.com: Potential object injection vulnerability (CVE-2018-19296). References: – https://bugs.mageia.org/show_bug.cgi?id=24055 – https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/DAZQPUD7WZXMJ2KIQY5P2I2UI545YPYO/

LinuxSecurity.com: Eyal Itkin discovered FreeRDP incorrectly handled certain stream encodings. A malicious server could use this issue to cause FreeRDP to crash, resulting in a denial of service, or possibly execute arbitrary code (CVE-2018-8784, CVE-2018-8785).

LinuxSecurity.com: A vulnerability was in found in PowerDNS Recursor. The issue is a memory leak occurring while parsing some malformed records, due to the fact that some memory is allocated parsing a record and is not always properly released if the record is not valid. It allows a malicious auth server to cause a denial […]

LinuxSecurity.com: A vulnerability was in found in PowerDNS Authoritative Server. The issue is a memory leak occurring while parsing some malformed records, due to the fact that some memory is allocated parsing a record and is not always properly released if the record is not valid. It allows an authorized user to cause a denial […]

LinuxSecurity.com: A flaw was found in units. units_cur doesn’t sanitize downloaded data. This allows a maliciously intended server to execute arbitrary code remotely on the client (rhbz#1598913). References:

LinuxSecurity.com: Florian Stuelpner discovered that Samba is vulnerable to infinite query recursion caused by CNAME loops, resulting in denial of service (CVE-2018-14629). Alex MacCuish discovered that a user with a valid certificate or smart

LinuxSecurity.com: An update that fixes 5 vulnerabilities is now available.

MobSTSPY Android spyware found in legit looking apps on Play Store
LA Times knocked out, HackerOne slips up and – amazingly – router security still sucks
New side-channel leak: Boffins bash operating system page caches until they spill secrets
Fake ‘U’s! Phishing creeps use homebrew fonts as message ciphers to evade filters
Stormy times ahead for IBM-owned Weather Channel app: LA sues over location data slurp
Weather Channel App in a Deluge of Legal Trouble for Data Misuse
Marriott: Good news. Hackers only took 383 million booking records … and 5.3m unencrypted passport numbers
Facebook hoaxes – harmless fun or security risk? [VIDEO]
Personal data of German political elite dumped online

The vast trove of data was released online and disseminated via Twitter over the span of four weeks – without anybody really noticing The post Personal data of German political elite dumped online appeared first on WeLiveSecurity

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that solves 6 vulnerabilities and has three fixes is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that solves 13 vulnerabilities and has three fixes is now available.

LinuxSecurity.com: An update that solves 11 vulnerabilities and has one errata is now available.

LinuxSecurity.com: An update that fixes four vulnerabilities is now available.

LinuxSecurity.com: An update that fixes three vulnerabilities is now available.

LinuxSecurity.com: An update that solves 9 vulnerabilities and has four fixes is now available.

LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available.

LinuxSecurity.com: An update that solves four vulnerabilities and has 17 fixes is now available.

LinuxSecurity.com: An update that fixes 5 vulnerabilities is now available.

LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available.

Marriott Revises Breach Scope to 383M Records
Phishing Tactic Hides Tracks with Custom Fonts
Wide-Ranging German Doxxing Incident Hits Hundreds of Politicians
Town of Salem hack exposes details of 7.6 million gamers
Germany hacked: Angela Merkel’s colleagues among mass data dump victims

Reading Time: ~2 min. American Newspapers Shutdown After Ransomware Attack Nearly all news publications owned by Tribune Publishing suffered disruptions in printing or distribution after the publisher was hit by a ransomware attack. Many of the papers across the country were delivered incomplete or hours or days late. Even some papers that had been sold […]

Don’t fall victim to the Chromecast hackers – here’s what to do
Vein authentication beaten by wax hand and photograph
Adobe Fixes Two Critical Acrobat and Reader Flaws
German politicians suffer massive hack of personal details and private communications
EU to offer nearly $1m in bug bounties for open-source software
Can’t unlock an Android phone? No problem, just take a Skype call: App allows passcode bypass
A Dozen Flaws in Popular Mac Clean-Up Software Allow Local Root Access

LinuxSecurity.com: An update that fixes 8 vulnerabilities is now available.

Hope you’re over that New Year’s hangover – there’s an Adobe PDF app patch to install
Pewdiepie fanboi printer, Chromecast haxxx0r retreats, says they’re ‘afraid of being caught’

LinuxSecurity.com: An update for rh-perl524-perl is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for rh-perl526-perl and rh-perl526-perl-Module-CoreList is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Dual Data Leaks of Blur, Town of Salem Impact Millions
MobSTSPY Info-Stealing Trojan Goes Global Via Google Play
Snowden’s Attorney Talks Govt Harrassment of Whistleblower Helpers (Part One)
TheHackerGiraffe says he’s retired from hacking smart TVs to promote PewDiePie
Um, I’m not that Gary, American man tells Ryanair after being sent other Gary’s flight itinerary
What is threat cumulativity and what does it mean for digital security?

A reflection on how acknowledging the cumulative nature of cyber-threats and understanding its implications can benefit our digital security The post What is threat cumulativity and what does it mean for digital security? appeared first on WeLiveSecurity

Hackers Hijack Smart TVs to Promote PewDiePie
US newspapers battle ransomware
Hackers demand ransom from Dublin’s tram system, after Luas website defaced
Dark Overlord hackers release alleged 9/11 lawsuit documents
Did you #DeleteFacebook? Shady players can still exploit your data
Vietnam’s New Cyber Law Threatens Free Speech
Hackers Target North Korean Defectors