Menu

Monthly Archives: July 2020

Damian Poddebniak and Fabian Ising discovered a response injection vulnerability in Evolution data server, which could enable MITM attacks.

LokiBot Redux Attacks Massive List of Common Android Apps
Twitter says hack of key staff led to celebrity, politician, biz account hijack mega-spree

An update for java-1.8.0-openjdk is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for java-1.8.0-openjdk is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Report: CIA runs secret cyberwar with little oversight after Trump gave the OK, say US government officials
Twitter limits tweeting as prominent accounts spam out cryptocoin scams
Twitter Confirms it was Hacked in an Unprecedented Cryptocurrency Scam
Twitter mass hacking: Bill Gates, Elon Musk, Jeff Bezos, Mike Bloomberg, Biden, Obama, more hijacked to peddle Bitcoin scam
Prominent & verified Twitter accounts hacked to run crypto scam
If Microsoft 365 security is so great, why do its customers keep getting hacked?
Is it Patch Blues-day for Outlook? Microsoft’s email client breaks worldwide, leaves everyone stumped
17-year-old “wormable” SigRed vulnerability found in Windows servers
Brazil’s Banking Trojans Go Global
Patch now! SIGRED – the wormable hole in your Windows servers
Welcome Chat as a secure messaging app? Nothing could be further from the truth

ESET research uncovers a malicious operation that both spies on victims and leaks their data The post Welcome Chat as a secure messaging app? Nothing could be further from the truth appeared first on WeLiveSecurity

Database of Indonesian store Bhinneka dumped with 1 million+ accounts
Database with 271 million Wattpad accounts leaked on hacker forum

An update that solves 5 vulnerabilities and has one errata is now available.

An update that fixes 5 vulnerabilities is now available.

Several security issues were fixed in libvpx.

The TLS 1.2 Deadline is Looming, Do You Have Your Act Together?

kernel: powerpc: incomplete Spectre-RSB mitigation leads to information exposure (CVE-2019-18660) SL6 x86_64 kernel-2.6.32-754.31.1.el6.x86_64.rpm kernel-debug-2.6.32-754.31.1.el6.x86_64.rpm kernel-debug-debuginfo-2.6.32-754.31.1.el6.i686.rpm kernel-debug-debuginfo-2.6.32-754.31.1.el6.x86_64.rpm kernel-debug-devel-2.6.32-754.31.1.el6.i686.rpm kernel-debug-devel-2.6.3 [More…]

An update for .NET Core 3.1 is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which

“Secure in your thoughts” – malware memories and brain passwords in the Stroke of Genius podcast
Cambridge student rebuilds Polish Enigma-code-breaking box that paved the way for Turing … and Victory!

Multiple security issues were discovered in Python, an interactive high-level object-oriented language. CVE-2018-20406

Citrix denies dark web claim of network compromise and ransomware attack
Old-school security hole perfect for worms and remote hijackings found lurking in Windows Server DNS code
Microsoft Tackles 123 Fixes for July Patch Tuesday
So kind of SAP NetWeaver to hand out admin accounts to anyone who can reach it. You’ll want to patch this
Critical DNS Bug Opens Windows Servers to Infrastructure Hijacking
Citrix allegedly hacked exposing database with 2000,000 users
Adobe Discloses Critical Code-Execution Bugs in July Update
142 million MGM customers’ data sold on dark web marketplace
DMARC Adoption Spikes, Higher Ed Remains Behind
Leaked Details of 142 Million MGM Hotel Guests Found for Sale Online
RATicate malware gang goes commercial
Most Companies Are Ignoring Your Most Vulnerable Endpoint…and It’s Not the Laptop
Burn baby burn, infosec inferno: Just 21% of security pros haven’t considered quitting their current job
Leaked Details of 142 Million MGM Hotel Guests Found for Sale on Dark Web
Critical SAP Bug Allows Full Enterprise System Takeover

Several security issues were fixed in WebKitGTK.

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

An update for thunderbird is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Collabera hacked: IT staffing’n’services giant hit by ransomware, employee personal data stolen
Guilty: Russian miscreant who hacked LinkedIn, Dropbox, Formspring, stole 200-million-plus account records

security update

Man convicted for identity theft & fraud against US Military, veterans

Reading Time: ~ 4 min. Prior to the outbreak of the novel coronavirus, Webroot’s annual Threat Report highlighted a 640% increase in active phishing sites on the web. However difficult it may be to believe (or easy, depending on your outlook), things have gotten even worse since.   From fake anti-malware sites named for the […]

Zoom patches zero‑day flaw in Windows client

The vulnerability exposed Zoom users running Windows 7 or earlier OS versions to remote attacks The post Zoom patches zero‑day flaw in Windows client appeared first on WeLiveSecurity

TrickBot Sample Accidentally Warns Victims They’re Infected
Secret Service Creates Cyber Fraud Task Forces
Man who lived luxury lifestyle after hacking LinkedIn and Dropbox is found guilty
Millions of LiveAuctioneers passwords offered for sale following data breach
Digicert revokes a raft of web security certificates
Hacker steals databases from breach monitoring site; sells them online
Sueball locked, loaded and pointed at LinkedIn over iOS privacy naughtiness

An update is now available for Red Hat OpenShift Container Platform 4.5. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

A ‘New Age’ of Sophisticated Business Email Compromise is Coming
The Enemy Within: How Insider Threats Are Changing
How CARTA Strategies for Web Applications are Met with Indusface AppTrana Solution

An update for machine-config-daemon and openshift is now available for Red Hat OpenShift Container Platform 4.5. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

dbus: denial of service via file descriptor leak (CVE-2020-12049) SL7 x86_64 dbus-1.10.24-14.el7_8.x86_64.rpm dbus-debuginfo-1.10.24-14.el7_8.i686.rpm dbus-debuginfo-1.10.24-14.el7_8.x86_64.rpm dbus-libs-1.10.24-14.el7_8.i686.rpm dbus-libs-1.10.24-14.el7_8.x86_64.rpm dbus-x11-1.10.24-14.el7_8.x86_64.rpm dbus-devel-1.10.24-14.el7_8.i686.rpm dbus-devel-1.10.24- [More…]

Better get Grandpa off Windows 7 because zero-day bug in Zoom allows remote code execution on vintage OS
Monday review – the hot stories of the week

An update that fixes four vulnerabilities is now available.

An update that fixes one vulnerability is now available.

Trump reveals US cyber-attack on Russian election-misdirection troll farms

The previous update for chromium released as DSA 4714-2 contained a flaw in the service worker implementation. This problem causes the browser to crash when a connection error occurs. Updated chromium packages are now available that correct this issue.

How to make your IT security go beyond your network – and make people your perimeter
LiveAuctioneers security breach puts users at risk

Update to 2.28.3: * Fix kinetic scrolling with async scrolling. * Fix web process hangs on large GitHub pages. * Bubblewrap sandbox should not attempt to bind empty paths. * Fix threading issues in the media player. * Fix several crashes and rendering issues. * Security fixes: CVE-2020-9802, CVE-2020-9803, CVE-2020-9805, CVE-2020-9806, CVE-2020-9807, CVE-2020-9843, CVE-2020-9850,

The 5.7.8 stable kernel update contains a number of important fixes across the tree.

Update to 2.53.3 The database format of the stored passwords and certificates in the user profile are now changed. SeaMonkey should perform the changes hiddenly at the first run, just asking for the master password (if used). To avoid a hypothetical data loss, it is recommended to backup user profile before the update, or even […]

Kasa camera flaw allows enumerating usernames for credential stuffing
An email banning our staff from using TikTok? Haha, funny story about that, we didn’t mean it – Amazon
Popular TP-Link Family of Kasa Security Cams Vulnerable to Attack
‘Zoom account suspended’ phishing scam aims at Office 365 credentials

This update applies a proposed fix for CVE-2018-12983.

This update applies a proposed fix for CVE-2018-12983.

Backport patches for CVE-2020-15306, CVE-2020-15305, CVE-2020-15304

Security fix

This update applies a proposed fix for CVE-2018-12983.

This update applies a proposed fix for CVE-2018-12983.

Google Bans Stalkerware Ads – With a Loophole
New smishing scam spreads fake TikTok App loaded with malware

Reading Time: ~ 2 min. Ragnar locker Attacks Portuguese Energy Producer It was recently confirmed that Energias de Portugal (EDP), one of the largest energy producers in the world, has fallen victim to the Ragnar Locker ransomware variant. The original attack took place in April but was only discovered in May after nearly three weeks […]

Billions of stolen passwords for sale on the dark web

While logins to music and video streaming services sell for less than ten dollars each, domain admin access is being offered for US$120,000 The post Billions of stolen passwords for sale on the dark web appeared first on WeLiveSecurity

More evil: A deep look at Evilnum and its toolset

ESET research gives a detailed picture of the operations of the Evilnum group and its toolkit deployed in attacks against carefully chosen targets in the fintech sector The post More evil: A deep look at Evilnum and its toolset appeared first on WeLiveSecurity

Smartwatch Hack Could Trick Dementia Patients into Overdosing
New variant of Joker malware found in Android apps on Play Store
Tony Blair tells Russian infosec conference that cross-border infosec policies need more gov intervention
Google’s ad ban won’t stop stalkerware apps from promoting themselves

Updated mbedtls packages fix security vulnerabilities Fix a side channel vulnerability in modular exponentiation that could reveal an RSA private key used in a secure enclave.

Updated mediawiki packages fix security vulnerability: In MediaWiki before 1.31.8, private wikis behind a caching server using the img_auth.php image authorization security feature may have had their files cached publicly, so any unauthorized user could view them. This

Advisory text to describe the update. Wrap lines at ~75 chars. A stack-based buffer over-read exists in FoFiTrueType::dumpString in fofi/FoFiTrueType.cc in Xpdf 4.01.01. It can, for example, be triggered by sending crafted TrueType data in a PDF document to the pdftops tool.