Menu

Monthly Archives: November 2021

As the holiday season draws near, shoppers are eagerly searching for gifts online. Unfortunately, this time of year brings as much cybercrime as it does holiday cheer. Especially during the holidays, cybercriminals are eager to exploit and compromise your personal data. Even businesses large and small are not immune to the dark forces at work. […]

Attackers Will Flock to Crypto Wallets, Linux in 2022: Podcast
Apple sues ‘amoral 21st century mercenaries’ NSO for infecting iPhones with Pegasus spyware
Zero-day proof-of-concept exploit lands for Windows make-me-admin vulnerability
FBI, CISA urge organizations to be on guard for attacks during holidays

Threat actors have previously timed ransomware and other attacks to coincide with holidays and weekends The post FBI, CISA urge organizations to be on guard for attacks during holidays appeared first on WeLiveSecurity

Crypto for cryptographers! Infosec types revolt against use of ancient abbreviation by Bitcoin and NFT devotees
What to do if you receive a data breach notice

Receiving a breach notification doesn’t mean you’re doomed – here’s what you should consider doing in the hours and days after learning that your personal data has been exposed The post What to do if you receive a data breach notice appeared first on WeLiveSecurity

Check your patches – public exploit now out for critical Exchange bug
Common Cloud Misconfigurations Exploited in Minutes, Report

Several security issues were fixed in FreeRDP.

UK Ministry of Justice secures HVAC systems ‘protected’ by passwordless Wi-Fi after Register tipoff

Release of OpenShift Serverless Client kn 1.19.0 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Release of OpenShift Serverless 1.19.0 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Red Hat Integration Camel Extensions for Quarkus 2.2 is now GA. The purpose of this text-only errata is to inform you about the security issues fixed since the tech preview 2 release. Red Hat Product Security has rated this update as having a security impact

An update for kernel is now available for Red Hat Enterprise Linux 7.3 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for rpm is now available for Red Hat Enterprise Linux 7.6 Advanced Update Support, Red Hat Enterprise Linux 7.6 Telco Extended Update Support, and Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions.

GoDaddy hack exposes accounts of 1.2 million customers
Infosec bods: After more than a year, Sky gets round to squashing hijacking bug in 6m home broadband routers
Indian bank smacks down allegation it exposed 180 million customers’ accounts
GoDaddy admits to password breach: check your Managed WordPress site!
GoDaddy’s Latest Breach Affects 1.2M Customers
On the trail of Russia’s $100 million Evil Corp hacking gang
SSL keys, sFTP passwords and more exposed after someone broke into GoDaddy Managed WordPress using ‘compromised password’
Online Merchants: Prevent Fraudsters from Becoming Holiday Grinches
Attackers Hijack Email Threads Using ProxyLogon/ProxyShell Flaws
Imunify360 Bug Leaves Linux Web Servers Open to Code Execution, Takeover
Ecommerce platforms (cough, Magento) need patching before Black Friday, warns UK’s National Cyber Security Centre

Vulnerability reigns supreme On Oct. 26, we co-hosted a live virtual event, Blackpoint ReCON, with partner Blackpoint Cyber. The event brought together industry experts and IT professionals to discuss how security professionals can continue to navigate the modern threat landscape through a pragmatic MDR approach. During the event, we learned how the increase in ransomware […]

Turbine maker Vestas Wind Systems admits to cyber incident, refuses to confirm if ransomware is at play
Black Friday and Cyber Monday – here’s what you REALLY need to do!
Lead Microsoft Engineer Kevin Sheldrake Brings Sysmon to Linux>

Two issues have been found in libmodbus, a library for the Modbus protocol. Both issues are related to out of bound reads, which could result in a

Nigeria’s central bank digital currency is ‘same Naira, more possibilities’ – if you count government snooping
GitHub will require 2FA for some NPM registry users

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

LibreOffice could incorrectly validate document signatures.

A tiny typo in an automated email to thousands of customers turns out to be a big problem for legal
After four bans, TikTok finally passes the Pakistan challenge
Amazon India execs charged after sellers allegedly use site to smuggle marijuana

Header injection via default_mimetype / default_charset mbstring may use pointer from some previous request Unexpected behavior with arrays and JIT Special character is breaking the path in xml function (CVE-2021-21707) XMLReader::getParserProperty may throw with a valid property

IPPUSB dissector crash (CVE-2021-39920). Modbus dissector crash (CVE-2021-39921). C12.22 dissector crash (CVE-2021-39922). PNRP dissector large loop (wnpa-sec-2021-11). Bluetooth DHT dissector large loop (CVE-2021-39924).

Updated rust packages fix security vulnerability This update mitigates a security concern in the Unicode standard, affecting source code containing “bidirectional override” Unicode codepoints: in some cases the use of those codepoints could lead to the reviewed code being

The chromium-browser-stable package has been updated to 96.0.4664.45 version that fixes multiples security vulnerabilities. For changes from 94.0.4606.71 (released on September 30, 2021) to the 96.0.4664.45 version, see referenced advisories.

An update that contains security fixes can now be installed.

The security update of Salt, a remote execution manager, to fix CVE-2021-21996 introduced a regression in salt/fileclient.py which raised an unexpected exception and made file.managed states fail.

An authenticated remote attacker can execute arbitrary code in Firebird, a relational database based on InterBase 6.0, by executing a malformed SQL statement. The only known solution is to disable external UDF libraries from being loaded. In order to achieve this,

The container bci/openjdk was updated. The following patches have been included in this update:

The container bci/openjdk-devel was updated. The following patches have been included in this update:

jQuery UI 1.13.0

Upstream announcement: [WordPress 5.8.2 Security and Maintenance Release](https://wordpress.org/news/2021/11/wordpress-5-8-2-security-and- maintenance-release/)

jQuery UI 1.13.0

Iranians Charged in Cyberattacks Against U.S. 2020 Election
6M Sky Routers Left Exposed to Attack for Nearly 1.5 Years
US Government declassifies data to foster would‑be defenders

US Government declassifies cybersecurity subjects they want you to learn about, and is hoping to pay you to learn them The post US Government declassifies data to foster would‑be defenders appeared first on WeLiveSecurity

‘My bank account was in a shambles’: The ordeal of an identity theft victim

A victim of identity theft tells us how criminals used his identity to commit fraud and what it took to put his life back in order The post ‘My bank account was in a shambles’: The ordeal of an identity theft victim appeared first on WeLiveSecurity

Beware Monzo phishing scams via SMS
Boffins say they can spot a hidden spy cam with just a smartphone
California Pizza Kitchen Serves Up Employee SSNs in Data Breach
Implementing ANSSI security recommendations for RHEL 7 and 8
Security is the Achilles’ heel of multicloud

An update that fixes 16 vulnerabilities is now available.

An update that fixes 16 vulnerabilities is now available.

Defending critical infrastructure: The status quo isn’t working

Multiple security vulnerabilities have been discovered in Salt, a powerful remote execution manager, that allow for local privilege escalation on a minion, server side template injection attacks, insufficient checks for eauth credentials, shell and command injections or incorrect validation of SSL

The package chromium before version 96.0.4664.45-1 is vulnerable to multiple issues including arbitrary code execution, access restriction bypass, content spoofing, information disclosure, same-origin policy bypass, sandbox escape and denial of service.

The package opera before version 81.0.4196.54-1 is vulnerable to multiple issues including arbitrary code execution, insufficient validation and access restriction bypass.

The package kubectl-ingress-nginx before version 1.0.4-1 is vulnerable to information disclosure.

Web trust dies in darkness: Hidden Certificate Authorities undermine public crypto infrastructure

security update

Canadian teen nabbed in $36.5M crypto heist – possibly the biggest haul yet by a single individual
Boffins find way to use a standard smartphone to find hidden spy cams
Github cookie leakage – thousands of Firefox cookie files uploaded by mistake
A quick guide to modern cryptography
Ransomware Phishing Emails Sneak Through SEGs
Thousands of Firefox users accidentally commit login cookies on GitHub
3 Top Tools for Defending Against Phishing Attacks
FBI: FatPipe VPN Zero-Day Exploited by APT for 6 Months
S3 Ep59: Emotet, an FBI hoax, Samba bugs, and a hijackable suitcase [Podcast]
The UK pushes for better supply chain cyber security
Spear-Phishing Campaign Exploits Glitch Platform to Steal Credentials
What’s the biggest threat to your best-laid plans? Events, dear boy. Events
How to Choose the Right DDoS Protection Solution
Smashing Security podcast #252: Hotel hacks, workplace spies, and the FBI
Getting started with Red Hat Insights and OpenSCAP for compliance reporting

An update that fixes 12 vulnerabilities is now available.

An update for devtoolset-11-annobin is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for devtoolset-11-binutils is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Several security issues were fixed in Mailman.

Singaporean regulator punishes biggest-ever data breach: Almost 5.9 million hotel customers’ info exposed
Fake Ransomware Infection Hits WordPress Sites
Netflix Bait: Phishers Target Streamers with Fake Service Signups

rpki-client 7.5 untrusted input: – Fail repository synchronisation after 15min runtime. – Limit the number of repositories per TAL. – Don’t allow `DOCTYPE` definitions in RRDP XML files. – Fix detection of HTTP redirect loops. * Limit the number of concurrent `rsync` processes. * Fix `CRLF` in TAL files.

Security fix for CVE-2021-3927 and CVE-2021-3928

Cybercriminals are looking forward to 2022, so you need to plan your response now
Exchange, Fortinet Flaws Being Exploited by Iranian APT, CISA Warns
Apple’s Privacy Protection feature – watch out if you have a Watch!
Strategic web compromises in the Middle East with a pinch of Candiru

ESET researchers have discovered strategic web compromise (aka watering hole) attacks against high‑profile websites in the Middle East The post Strategic web compromises in the Middle East with a pinch of Candiru appeared first on WeLiveSecurity