Menu

Monthly Archives: January 2021

An update is now available for Red Hat Ceph Storage 4.2. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Kaspersky Lab autopsies evidence on SolarWinds hack
How I found a bug in YouTube that let me watch private videos I wasn’t allowed to, says compsci student

An update for kernel is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Ubiquiti iniquity: Wi-Fi box slinger warns hackers may have peeked at customers’ personal information
That’s it. It’s over. It’s really over. From today, Adobe Flash Player no longer works. We’re free. We can just leave
Russia-linked postcard was “sent to FireEye’s CEO after cybersecurity firm uncovered hack”
Donald Trump’s presidency ended today, claims altered US State Department website
Aliens and UFOs: A Final Frontier for Social Engineers
Millions of Social Profiles Leaked by Chinese Data-Scrapers
Researcher Builds Parler Archive Amid Amazon Suspension
SolarWinds Hack Potentially Linked to Turla APT
Thou shalt not hack indiscriminately, High Court of England tells Britain’s spy agencies
Unauthorised RAC staffer harvested customer details then sold them to accident claims management company
Google Titan security keys hacked by French researchers

An update that fixes 13 vulnerabilities is now available.

An update that fixes 13 vulnerabilities is now available.

SolarWinds takes a leaf out of Zoom’s book, hires A-Team of Stamos and Krebs to sort out its security woes

This update upgrades Firefox to version 78.6.1 ESR. * Mozilla: Use-after-free write when handling a malicious COOKIE-ECHO SCTP chunk (CVE-2020-16044) SL7 x86_64 firefox-78.6.1-1.el7_9.x86_64.rpm firefox-debuginfo-78.6.1-1.el7_9.x86_64.rpm firefox-78.6.1-1.el7_9.i686.rpm – Scientific Linux Development Team

Ransomware gangs scavenge for sensitive data by targeting top executives

An update that solves 6 vulnerabilities and has 58 fixes is now available.

A flaw was discovered in coturn, a TURN and STUN server for VoIP. By default coturn does not allow peers on the loopback addresses (127.x.x.x and ::1). A remote attacker can bypass the protection via a specially crafted request using a peer address of ‘0.0.0.0’ and trick

An update that contains security fixes can now be installed.

security update

A Linux Admin’s Getting Started Guide to Improving PHP Security>

An update that fixes 13 vulnerabilities is now available.

An update that fixes 13 vulnerabilities is now available.

Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code.

A use-after-free in Mozilla Firefox’s SCTP handling may allow remote code execution.

A buffer overflow in ipmitool might allow remote attacker(s) to execute arbitrary code.

Multiple vulnerabilities have been found in Firejail, the worst of which could result in the arbitrary execution of code.

Malicious Software Infrastructure Easier to Get and Deploy Than Ever
A Look Ahead at 2021: SolarWinds Fallout and Shifting CISO Budgets

security update

security update

Ryuk Rakes in $150M in Ransom Payments

New Firefox version (84.0.2) which fixes security / stability issues.

US courts system fears SolarWinds snafu could have let state hackers poke about in sealed case documents
SolarWinds Hires Chris Krebs, Alex Stamos in Wake of Hack
Red Hat snaps up Kubernetes security specialist StackRox
FBI Warns of Egregor Attacks on Businesses Worldwide

A malicious peer could have modified a COOKIE-ECHO chunk in a SCTP packet in a way that potentially resulted in a use-after-free. We presume that with enough effort it could have been exploited to run arbitrary code. (CVE-2020-16044).

It was discovered that mingw-binutils and binutils suffered from two vulnerabilites which might lead to DoS. Null Pointer Dereference in debug_get_real_type could result in DoS (CVE-2020-16598).

XSS was discovered in SquirrelMail through 1.4.22. Due to improper handling of RCDATA and RAWTEXT type elements, the built-in sanitization mechanism can be bypassed. Malicious script content from HTML e-mail can be executed within the application context via crafted use of (for example) a NOEMBED, NOFRAMES, NOSCRIPT, or TEXTAREA element ().

Busybox contains a Missing SSL certificate validation vulnerability in The “busybox wget” applet that can result in arbitrary code execution. This attack appear to be exploitable via Simply download any file over HTTPS using “busybox wget https://compromised-domain.com/important-file”. ().

The container suse/sle15 was updated. The following patches have been included in this update:

It was discovered that Dovecot incorrectly handled certain imap hibernation commands. A remote authenticated attacker could possibly use this issue to access other users’ email (CVE-2020-24386). Innokentii Sennovskiy discovered that Dovecot incorrectly handled MIME

How good are you at scoring security vulnerabilities, really? Boffins seek infosec pros to take rating skill survey
Bugs in Firefox, Chrome, Edge Allow Remote System Hijacking
Biden to Appoint Cybersecurity Advisor to NSC – Report
Nvidia Warns Windows Gamers of High-Severity Graphics Driver Flaws

security update

Fired Healthcare Exec Stalls Critical PPE Shipment for Months
Threatpost Poll: Weigh in on Ransomware Security
WhatsApp updates privacy policy to enable sharing more data with Facebook

Many users have until February 8 to accept the new rules – or else lose access to the app The post WhatsApp updates privacy policy to enable sharing more data with Facebook appeared first on WeLiveSecurity

New Year, New Ransomware: Babuk Locker Targets Large Corporations
Data stolen from Hackney Council posted on dark web by ransomware gang
Intel wheels out new face authentication product that works a lot like Apple’s FaceID
Facebook’s Mandatory Data-Sharing Rules for WhatsApp Spark Ire
What happens when a Chrome extension with 2m+ users changes hands, raises red flags, doesn’t document updates? Let’s find out

An update is now available for Red Hat support for Spring Boot. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each

JetBrains’ build automation software eyed as possible enabler of SolarWinds hack

There was an integer overflow vulnerability concerning the length of websocket frames received via a websocket connection. An attacker could use this flaw to cause a denial of service attack on an HTTP Server allowing websocket connections.

NSA Urges SysAdmins to Replace Obsolete TLS Protocols
United States Congress stormed by violent followers of defeated president, Biden win confirmation halted
It’s Not the Trump Sex Tape, It’s a RAT
Feds Issue Recommendations for Maritime Cybersecurity

Security fix for CVE-2020-13482

Backport patches for CVE-2020-35493, CVE-2020-35494, CVE-2020-35495, CVE-2020-35496.

Security fix for CVE-2020-13482.

Several security vulnerabilities were addressed in pacemaker, a cluster resource manager. CVE-2018-16877

The update for minidlna released as DSA 4806-1 introduced a regression when purging the package. Updated minidlna packages are now available to correct this issue.

ImageMagick: Shell injection via PDF password could result in arbitrary code execution (CVE-2020-29599) SL7 x86_64 ImageMagick-6.9.10.68-5.el7_9.i686.rpm ImageMagick-6.9.10.68-5.el7_9.x86_64.rpm ImageMagick-c++-6.9.10.68-5.el7_9.i686.rpm ImageMagick-c++-6.9.10.68-5.el7_9.x86_64.rpm ImageMagick-debuginfo-6.9.10.68-5.el7_9.i686.rpm ImageMagick-debuginfo-6.9.10.68-5.el7 [More…]

Are security and connectivity on your 2021 to do list, yes? Here’s what to do first
Zyxel hardcoded admin password found – patch now!
Cybercriminals Ramp Up Exploits Against Serious Zyxel Flaw
Ill-conceived Donald Trump sex video malware attack attempts to install RAT on Windows PCs
Feds Pinpoint Russia as ‘Likely’ Culprit Behind SolarWinds Attack
Ransomware today: What’s new and how to protect your organization – a free webinar
Elite security intelligence at zero cost – use Recorded Future Express!

An update for openvswitch2.11, ovn2.11, redhat-release-virtualization-host, and redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 and Red Hat Virtualization Engine 4.3. Red Hat Product Security has rated this update as having a security impact

Trump administration bans eight Chinese apps
Ah, right on time: Hacker-slammed SolarWinds sued by angry shareholders
RCE ‘Bug’ Found and Disputed in Popular PHP Scripting Framework
Cyberattacks on Healthcare Spike 45% Since November
Blackberry Cylance’s consumer antivirus product won’t work with macOS Big Sur until end of January

security update

Stolen employee credentials put leading gaming firms at risk

It’s hardly fun and games for top gaming companies and their customers as half a million employee credentials turn up for sale on the dark web The post Stolen employee credentials put leading gaming firms at risk appeared first on WeLiveSecurity

Telegram Triangulation Pinpoints Users’ Exact Locations
Google Warns of Critical Android Remote Code Execution Bug

LibreOffice slideshow aborts with stack smashing in cairo’s composite_boxes. For Debian 9 stretch, this problem has been fixed in version

One month after ransomware attack, Metro Vancouver’s transit system still not up to speed
Bug? No, Telegram exposing its users’ precise location is a feature working as ‘expected’
Major Gaming Companies Hit with Ransomware Linked to APT27
ElectroRAT Drains Cryptocurrency Wallet Funds of Thousands
Chrome browser has a New Year’s resolution: HTTPS by default
Data from August Breach of Amazon Partner Juspay Dumped Online
T-Mobile suffers its fourth hack in less than three years – still “takes the security of your information very seriously”
Scotland waves £15m for low-code partner to help with social security overhaul as technical debt mounts
Think you’re hot stuff when it comes to infosec? Prove it