Menu

Monthly Archives: October 2021

security update

security update

Several security vulnerabilities have been discovered in OpenCV, the Open Computer Vision Library. Buffer overflows, NULL pointer dereferences and out-of-bounds write errors may lead to a denial-of-service or other unspecified impact.

An update that fixes 16 vulnerabilities is now available.

Europol announces “targeting” of 12 suspects in ransomware attacks

security update

An issue has been found in cups, the Common UNIX Printing System. Due to an input validation issue a malicious application might be allowed to read restricted memory.

Update to 2.34.1: * Update user agent browser versions. * Fix a crash with GTK >= 3.24.30. * Fix a crash when loading videos on reddit. * Fix file type detection when application calls g_desktop_app_info_set_as_default_for_extension() passing html. * Security fixes: CVE-2021-42762

Fix for CVE-2021-41990 and CVE-2021-41991

# New in release OpenJDK 11.0.13 (2021-10-19): Live versions of these release notes can be found at: * https://bitly.com/openjdk11013 * https://builds.shipilev.net/backports-monitor/release-notes-11.0.13.txt ## Security fixes – JDK-8163326, CVE-2021-35550: Update the default enabled cipher suites preference – JDK-8254967, CVE-2021-35565:

Shrootless: Microsoft found a way to evade Apple’s SIP macOS filesystem protection
5 tips for parents for a cybersecure Halloween

What are some of the key dangers faced by children online and how can you help protect them from the ghosts, ghouls and goblins creeping on the internet? The post 5 tips for parents for a cybersecure Halloween appeared first on WeLiveSecurity

Dark HunTOR: 150 arrested, $31 million seized in major dark web bust

The police sting spanned three continents and involved crackdowns in nine countries The post Dark HunTOR: 150 arrested, $31 million seized in major dark web bust appeared first on WeLiveSecurity

Wslink: Unique and undocumented malicious loader that runs as a server

There are no code, functionality or operational similarities to suggest that this is a tool from a known threat actor The post Wslink: Unique and undocumented malicious loader that runs as a server appeared first on WeLiveSecurity

Could “Unbreakable” Oracle Linux be the Logical Enterprise-Ready CentOS Replacement?>
Google Chrome is Abused to Deliver Malware as ‘Legit’ Win 10 App
Data-breached Guntrader website calls in liquidators, is reborn as Guntrader 2 Ltd
UK data watchdog calls for end-to-end encryption across video chat apps by default
Microsoft documents “SHROOTLESS” hack patched in latest Apple updates
Teenager made Bitcoin fortune after promoting scam website with Google ad

This update includes the changes in tzdata 2021e for the Perl bindings. For the list of changes, see DLA-2797-1. For Debian 9 stretch, this problem has been fixed in version

This update includes the changes in tzdata 2021e. Notable changes are: – – Fiji suspends DST for the 2021/2022 season.

A security vulnerability was discovered in gpsd, the Global Positioning System daemon. A stack-based buffer overflow may allow remote attackers to execute arbitrary code via traffic on port 2947/TCP or crafted JSON inputs.

Feds cuff Russian said to be developer of ‘Trickbot’ ransomware

The container suse/sle15 was updated. The following patches have been included in this update:

India’s Supreme Court starts probe into use of Pegasus spyware

security update

security update

Microsoft Edge finally arrives on Linux – “Official” build lands in repos
All Sectors Are Now Prey as Cyber Threats Expand Targeting
Suspected REvil Gang Insider Identified
Yet again, Cream Finance skimmed by crooks: $130m in crypto assets stolen

Two issues have been found in jbig2dec, a JBIG2 decoder library. One issue is related to an overflow with a crafted image file. The other is related to a NULL pointer dereference.

The following vulnerabilities have been discovered in the wpewebkit web engine: CVE-2021-30846

REvil gang member identified living luxury lifestyle in Russia, says German media
EU’s Green Pass Vaccination ID Private Key Leaked
FBI warns of Ranzy Locker ransomware threat, as over 30 companies hit
Cyberattack Cripples Iranian Fuel Distribution Network
Free decryption tools for AtomSilo, Babuk, and LockFire ransomware released by Avast
S3 Ep56: Cryptotrading rodent, ransomware hackback, and a Docusign phish [Podcast]

Bind could be made to consume resources if it received specially crafted network traffic.

Grief Ransomware Targets NRA

Red Hat OpenShift Container Platform release 3.11.542 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Good Grief! Ransomware gang has only gone and pwned the NRA – or so it claims
Smashing Security podcast #249: Devious licks, Netflix, and sensitive hackers
If your hair isn’t already gray, 2022’s security threats will get it there, warn infosec duo

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

Apple ships Monterey with security updates, fixes 0-day in Watch and TV products, updates iDevices
WordPress Plugin Bug Lets Subscribers Wipe Sites
NPM packages disguised as Roblox API code caught carrying ransomware
Ransomware Attacks Are Evolving. Your Security Strategy Should, Too
Teen Rakes in $2.74M Worth of Bitcoin in Phishing Scam
Adobe’s Surprise Security Bulletin Dominated by Critical Patches
Putting cybersecurity first: Why secure‑by‑design must be the norm

Organizations that aim to pull ahead of the competition need to develop a strong security culture from top to bottom The post Putting cybersecurity first: Why secure‑by‑design must be the norm appeared first on WeLiveSecurity

War-Driving Technique Allows Wi-Fi Password-Cracking at Scale
Apple Patches Critical iOS Bugs; One Under Attack
Tesla reverses “Full self-driving” beta update after sudden braking reports
Cyber Attack Cripples Iranian Fuel Distribution Network

One security issue has been discovered in mosquitto: MQTT message broker. A null dereference vulnerability was found which could lead to crashes for applications using the library.

An update that fixes two vulnerabilities is now available.

An update that solves two vulnerabilities, contains one feature and has one errata is now available.

An update that fixes 5 vulnerabilities is now available.

Do host firewalls matter in cloud deployments?
Lead Cloud-Native Security Analytics Engineer Shares Top Tips for Securing the Enterprise >

It was discovered that Qt incorrectly handled certain XBM image files. If a user or automated system were tricked into opening a specially crafted PPM file, a remote attacker could cause Qt to crash, resulting in a denial of service. (CVE-2020-17507)

It was discovered that openCryptoki incorrectly handled certain EC keys. An attacker could possibly use this issue to cause a invalid curve attack. References: – https://bugs.mageia.org/show_bug.cgi?id=29328

Warehouse belonging to Chinese payment terminal manufacturer raided by FBI
Protonmail celebrates Swiss court victory exempting it from telco data retention laws
Singaporean minister touts internet ‘kill switch’ that finds kids reading net nasties and cuts ’em off ASAP
China Telecom booted out of USA as Feds worry it could disrupt or spy on local networks
SquirrelWaffle Loader Malspams, Packing Qakbot, Cobalt Strike
Public Clouds & Shared Responsibility: Lessons from Vulnerability Disclosure

security update

security update

These couldn’t wait for Patch Tuesday: Adobe issues bonus fixes for 92 security holes in 14 products
Lazarus Attackers Turn to the IT Supply Chain
Why the Next-Generation of Application Security Is Needed
Banking scam uses Docusign phish to thieve 2FA codes
Attackers Hijack Craigslist Emails to Bypass Security, Deliver Malware
Mozilla Firefox Blocks Malicious Add-Ons Installed by 455K Users

An update is now available for Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Millions of Android Users Scammed in SMS Fraud Driven by Tik-Tok Ads

Red Hat OpenShift Container Platform release 4.9.4 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.9.

Matrix for the masses platform Element One goes live: $5 a month with WhatsApp, Signal, Telegram bridges

An update that fixes 16 vulnerabilities is now available.

An update that fixes 5 vulnerabilities is now available.

Ransomware gang outraged at “bandit-mugging behavior of the United States” after REvil group pushed offline

Several security issues were fixed in libslirp.

Apport could be made to create files as the administrator.

DDoSers take weekend off only to resume campaign against UK’s Voipfone on Monday
Man who “scraped and sold 178 million users’ data” is sued by Facebook
GCHQ director outlines plan to ‘go after’ links between ransomware crims and state actors
If you’re using this hijacked NPM library anywhere in your software stack, read this
Defending Assets You Don’t Know About, Against Cyberattacks
Groove Calls for Cyberattacks on US as REvil Payback
BQE Web Suite Billing App Rigged to Inflict Ransomware
SolarWinds APT Targets Tech Resellers in Latest Supply-Chain Cyberattacks