Reading Time: ~2 min. Hackers Breach Private Keys to Steal Cryptocurrency A possible coding error allowed hackers to compromise at least 732 unique, improperly secured private keys used in the Ethereum blockchain. By exploiting a vulnerability, hackers have successfully stolen 38,000 Ethereum coins so far, translating to over $54 million in stolen funds, though the […]
An update that fixes two vulnerabilities is now available.
An update that solves three vulnerabilities and has four fixes is now available.
In the recently uploaded systemd security update (215-17+deb8u12 via DLA-1762-1), a regression was discovered in the fix for CVE-2017-18078.
An update that solves two vulnerabilities and has three fixes is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has 5 fixes is now available.
On the good news front, the FBI notes the success of its newly-established team in recovering some of the funds lost in BEC scams The post BEC fraud losses almost doubled last year appeared first on WeLiveSecurity
An update that solves 13 vulnerabilities and has one errata is now available.
An update that solves one vulnerability and has four fixes is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
It was discovered that there was a path traversal vulnerability in the “mercurial” distributed revision version control system. Symbolic links and subrepositories could be used defeat Mercurial’s
Reading Time: ~3 min. Public concern about online privacy and security is rising, and not without reason. High-profile data breaches make headlines almost daily and tax season predictably increases instances of one of the most common types of identity theft, the fraudulent filings for tax returns known as tax-related identity theft. As a result, more than half of global internet users are more concerned about their safety than […]
An update that solves two vulnerabilities and has four fixes is now available.
An update that fixes one vulnerability is now available.
The notorious six-digit string continues to ‘reign supreme’ among the most-hacked passwords The post Over 23 million breached accounts used ‘123456’ as password appeared first on WeLiveSecurity
Bind could be made to consume resources if it received specially crafted network traffic.
tcpflow could be made to crash or expose sensitive information over the network if it opened a specially crafted file or received specially crafted network traffic.
Several security issues were fixed in PHP.
Updated Red Hat AMQ Clients 2.3.1 packages are now available. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Reading Time: ~4 min. These are the places your digital tracks can be dug up. With a little sleuthing. Experts have warned for years of the risks of using public computers such as those found in libraries, hotels, and airline lounges. Many warnings focused on the potential for hackers to plant keystroke loggers, or intercept […]
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that solves four vulnerabilities and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has 24 fixes is now available.
An update that fixes three vulnerabilities is now available.
An update that solves one vulnerability and has 23 fixes is now available.
The package dovecot before version 2.3.5.2-1 is vulnerable to denial of service.
The package flashplugin before version 32.0.0.171-1 is vulnerable to multiple issues including arbitrary code execution and information disclosure.
The package jenkins before version 2.172-1 is vulnerable to multiple issues including access restriction bypass and cross-site scripting.
The package ghostscript before version 9.27-1 is vulnerable to sandbox escape.
Marcus Hutchins, who is best known for his inadvertent role in blunting the WannaCryptor outbreak two years ago, may now face a stretch behind bars The post WannaCryptor ‘accidental hero’ pleads guilty to malware charges appeared first on WeLiveSecurity
AdvanceCOMP could be made to run arbitrary code if it opened a specially crafted file.
A security update is now available for Red Hat Single Sign-On 7.2 from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Security updates for Red Hat Single Sign-On 7.2.7 packages are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Security updates for Red Hat Single Sign-On 7.2.7 packages are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
An update that fixes 6 vulnerabilities is now available.
Reading Time: ~5 min. From Landline Hacking to Cryptojacking By its very nature, cybercrime must evolve to survive. Not only are cybersecurity experts constantly working to close hacking loopholes and prevent zero-day events, but technology itself is always evolving. This means cybercriminals are constantly creating new attacks to fit new trends, while tweaking existing attacks to avoid detection. To understand how cybercrime might evolve […]
Several security issues were fixed in PHP.
An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
An update for kernel-alt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
An update for ovmf is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Cedric Buissart discovered two vulnerabilities in Ghostscript, the GPL PostScript/PDF interpreter, which could result in bypass of file system restrictions of the dSAFER sandbox.
Several security issues were fixed in PHP.
Several security issues were fixed in Pacemaker.
