Menu

Monthly Archives: April 2020

security update

IBM == Insecure Business Machines: No-auth remote root exec exploit in Data Risk Manager drops after Big Blue snubs bug report
RCE Exploit Released for IBM Data Risk Manager
At last – a use for all those phishing emails you’ve been getting!
Work from home: Should your digital assistant be on or off?

Being at your beck and call is central to the “personality” of your digital friend, but there are situations when the device could use some time off The post Work from home: Should your digital assistant be on or off? appeared first on WeLiveSecurity

Hey there! Are you using WhatsApp? Your account may be hackable

Can someone take control of your WhatsApp account by just knowing your phone number? We ran a small test to find out. The post Hey there! Are you using WhatsApp? Your account may be hackable appeared first on WeLiveSecurity

Hacker returns $25 million after their IP address is exposed
Frippin’ heck: Watch out, chin-stroking prog rock fans. King Crimson distributor Burning Shed says it’s been hacked
Nintendo accounts are being hacked for fraudulent transactions
Oil and Gas Firms Targeted With Agent Tesla Spyware
Deepfakes and AI: Fighting Cybersecurity Fire with Fire

An update for git is now available for Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Cyberattackers Ramp Up to 1.5M COVID-19 Emails Per Day

An update for java-11-openjdk is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Something a bit phishy in your inbox? You can now email suspected frauds straight to Blighty’s web takedown cops

Reading Time: ~ 4 min. “One of the things about working in internet technology is nothing lasts forever… [Students] come to me and they say, ‘I want to do something that has an impact 20, 50, or 100 years from now.’ I say well maybe you should compose music because none of this technology stuff […]

The package webkit2gtk before version 2.28.1-1 is vulnerable to arbitrary code execution.

Facebook to alert us if we’ve been exposed to fake coronavirus news

An update that fixes one vulnerability is now available.

An update that fixes two vulnerabilities is now available.

Bernd Edlinger discovered that malformed data passed to the SSL_check_chain() function during or after a TLS 1.3 handshake could cause a NULL dereference, resulting in denial of service.

Typosquatting RubyGems laced with Bitcoin-nabbing malware have been downloaded thousands of times
Weeks before US oil contract prices went negative, a spear-phishing crew went after oil firms. What did they get?
Google productises its own not-a-VPN secure remote access tool
Bad news: Cognizant hit by ransomware gang. Worse: It’s Maze, which leaks victims’ data online after non-payment

security update

security update

CFAA latest: Supremes to tackle old chestnut of what ‘authorized use’ of a computer really means in America
Mootbot Botnet Targets Fiber Routers with Dual Zero-Days
Maze Ransomware Attack Hits Cognizant
Dark web scammers selling ventilators & MP3 files to kill Coronavirus
Foxit PDF Reader, PhantomPDF Open to Remote Code Execution

The package openvpn before version 2.4.9-1 is vulnerable to denial of service.

What Type of Home Security System Should You Get?
Bitcoin Stealers Hide in 700+ Ruby Developer Libraries
Maze ransomware hits US giant Cognizant
Hackers drain $25 million in assets from dForce
Fan vibrations can be used to transmit data from air-gapped machines
Prioritize alerts and jump-start your investigations with Recorded Future’s free browser extension. Sign up now.
IT services giant Cognizant hit by Maze ransomware attack
New sextortion scam: “High level of risk. Your account has been hacked.”
Bot creates millions of fake eyeballs to rip off smart-TV advertisers
Tor Project loses a third of staff in coronavirus cuts: Unlucky 13 out as nonprofit hacks back to core ops
Monday review – the hot 13 stories of the week

An update that fixes one vulnerability is now available.

Ministry of Defence lowers supplier infosec standards thanks to COVID-19 outbreak
Contact-tracing or contact sport? Defections and accusations emerge among European COVID-chasing app efforts
Hackers selling 267 million Facebook records on hacker forum

It was discovered that there was a path-traversal issue in Apache Shiro, a security framework for the Java programming language. A specially-crafted request could cause an authentication bypass.

An update that fixes 26 vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

Fraud & hacking guides are the most sold item on dark web
Fake Coronavirus apps hit Android & iOS users with spyware, adware
Busted: Man streamed “worst child abuse content ever seen”

fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file’s parent is a symlink to a directory outside of the

Following CVEs were reported against the jackson-databind source package :

Following CVEs were reported against the awl source package: CVE-2020-11728

DHS Urges Pulse Secure VPN Users To Update Passwords

security update

Fixes CVE-2020-1730

Security fix for CVE-2020-5260 From the upstream [release notes](https://www.kernel.org/pub/software/scm/git/docs/RelNotes/2.17.4.txt): > With a crafted URL that contains a newline in it, the credential > helper machinery can be fooled to give credential information for > a wrong host. The attack has been made impossible by forbidding > a newline character in any value

Bugfix release from Google for 80.0.3987.162. —- Update to 80.0.3987.162. Fixes the following CVEs: * CVE-2020-6450 * CVE-2020-6451 * CVE-2020-6452

Attacks on Linksys Routers Trigger Mass Password Reset
Critical bug in Google Chrome – get your update now

Reading Time: ~ 2 min. Florida City Sees Lasting Effects of Ransomware Attack Nearly three weeks after the City of Jupiter, Florida suffered a ransomware attack that took many of their internal systems offline, the city has yet to return to normal. City officials announced they would be working to rebuild their systems from backups, […]

Hackers use typosquatting to trojanize 700 libraries in Ruby Repository
That critical VMware vuln allowed anyone on your network to create new admin users, no creds needed
Zoom Bombing Attack Hits U.S. Government Meeting
Hackers Update Age-Old Excel 4.0 Macro Attack
Google declares war on Android fleeceware scamming users through sneaky subscriptions
Google: We’ve blocked 126 million COVID-19 phishing scams in the last week
I’ve sent my worst enemies to Earworm Island
US offers up to $5m reward for information on North Korean hackers
GitHub users targeted by Sawfish phishing campaign

An update that solves two vulnerabilities and has one errata is now available.

Europe publishes draft rules for coronavirus contact-tracing app development, on a relaxed schedule
India says ‘Zoom is a not a safe platform’ and bans government users

New openvpn packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue.

Poorly Secured Docker Image Comes Under Rapid Attack
You’re a botnet, you’ve got a zero-day, so where do you go? After fiber, because that’s where the bandwidth is
New PoetRAT Hits Energy Sector With Data-Stealing Tools

With a crafted URL that contains a newline in it, the credential helper machinery can be fooled to give credential information for a wrong host. The attack has been made impossible by forbidding a newline character in any value passed via the credential protocol (CVE-2020-5260).

Chromium-browser 81.0.4044.92 fixes security issues: Multiple flaws were found in the way Chromium 80.0.3987.149 processes various types of web content, where loading a web page containing malicious content could cause Chromium to crash, execute arbitrary code,

Hackers steal 10 TB of data in ransomware attack on energy giant

– New Firefox and NSS upstream update – More info at https://www.mozilla.org/en- US/firefox/75.0/releasenotes/

– New Firefox and NSS upstream update – More info at https://www.mozilla.org/en- US/firefox/75.0/releasenotes/

Cisco IP Phone Harbors Critical RCE Flaw
Authorities bust multi-million online Coronavirus face mask scam
TikTok announces “Family Pairing” – bust your moves but cap the risk
Govt minister’s Zoom webinar hijacked to display porn
A Zoom zero-day exploit is up for sale for $500,000
Streaming TV Fraudsters Steal Millions of Ad Dollars in ‘ICEBUCKET’ Attack
Alleged Zoom Zero-Days for Windows, MacOS for Sale, Report
49 crypto-wallet pickpocketing browser extensions booted from the Chrome web store

Reading Time: ~ 3 min. One of the most notable findings to come from the Webroot 2020 Threat Report was the significant rise in the number of active phishing sites over 2019—a 640% rise, to be exact. This reflects a year-over-year rise in active phishing sites, but it’s important to keep this (dangerous) threat in […]

Bad news: So much of your personal data has been hacked that lesson manuals on how to use it are the latest hot property
49 malicious Chrome extensions caught pickpocketing crypto wallets
‘Double Extortion’ Ransomware Attacks Spike
Password security is critical in a remote work environment – see where businesses are putting themselves at risk
Update now! Windows zero-day flaws fixed in Patch Tuesday