Menu

Monthly Archives: March 2020

Brave comes out on top in browser privacy study

By contrast, two web browsers share identifiers that are tied to the device hardware and so persist even across fresh installs The post Brave comes out on top in browser privacy study appeared first on WeLiveSecurity

GCHQ’s infosec arm has 3 simple tips to secure those insecure smart home gadgets
Apple removes Clearview AI iPhone app from App Store
Digital piggy bank sevice broken into by cybercrooks

An update that solves one vulnerability and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

Huge flaw found in how facial features are measured from images
GoodRx stops sharing personal medical data with Google, Facebook
Have I Been S0ld? No, trusted security website HIBP off the table, will remain independent

Rake could be made run arbitrary commands it received a specially crafted file.

DoppelPaymer Ransomware Used to Steal Data from Supplier to SpaceX, Tesla

An update for kpatch-patch is now available for Red Hat Enterprise Linux 7.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for Red Hat build of Eclipse Vert.x. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each

Nvidia patches severe flaws affecting GeForce, Quadro NVS and Tesla
Maersk prepares to lay off the Maidenhead staffers who rescued it from NotPetya super-pwnage
XSS plugin vulnerabilities plague WordPress users
5 reasons to consider a career in cybersecurity

From competitive salaries to ever-evolving job descriptions, there are myriad reasons why a cybersecurity career could be right for you The post 5 reasons to consider a career in cybersecurity appeared first on WeLiveSecurity

NetSupport Manager RAT Spread via Bogus NortonLifeLock Docs
Gamer Alert: Serious Nvidia Flaw Plagues Graphics Driver
Forrester: Keeping Smart Cities Safe From Hacks
Voice assistant devices can be manipulated with ultrasonic waves
Wi-Fi kit spilling data with bad crypto – Huawei, eh? No, it’s Cisco. US giant patches Krook spy-hole bug in network gear

An update that fixes two vulnerabilities is now available.

An update that solves 10 vulnerabilities and has two fixes is now available.

An update that fixes two vulnerabilities is now available.

TrickBot Adds ActiveX Control, Hides Dropper in Images
Walgreens Mobile App Leaks Prescription Data
DoppelPaymer ransomware hits SpaceX, Tesla & Boeing’s parts manufacturer
RSA 2020 – Is your machine learning/quantum computer lying to you?

And how would you know if the algorithm was tampered with? The post RSA 2020 – Is your machine learning/quantum computer lying to you? appeared first on WeLiveSecurity

Delicious irony: Credit rating builder Loqbox lets customer details and card numbers slip after ‘sophisticated attack’
Siri and Google Assistant hacked in new ultrasonic attack
Let’s Encrypt issues one billionth free certificate
Ironpie robot vacuum can suck up your privacy
Fresh phish! Stripe scam baked and delivered in under an hour
Facebook sues data analytics firm OneAudience over malicious SDK

Several security issues were fixed in libarchive.

An update that fixes 8 vulnerabilities is now available.

An update that solves two vulnerabilities and has two fixes is now available.

An issue has been found in libapache2-mod-auth-openidc, an OpenID Connect authentication module for Apache. Due to insufficient validatation of URLs an Open Redirect vulnerability

An issues has been found in firebird2.5, an RDBMS based on InterBase 6.0. As UDFs can be used for a remote authenticated code execution (as user firebird), UDFs have been disabled in the default configuration