Menu

Monthly Archives: January 2022

Destructive Wiper Targeting Ukraine Aimed at Eroding Trust, Experts Say
Sniff those Ukrainian emails a little more carefully, advises Uncle Sam in wake of Belarusian digital vandalism
Faker NPM package back on track after malicious coding incident
Box 2FA Bypass Opens User Accounts to Attack
Vulnerabilities and censorship tools among hot new features in Beijing’s Olympics app
DoNot Go! Do not respawn!

ESET researchers take a deep look into recent attacks carried out by Donot Team throughout 2020 and 2021, targeting government and military entities in several South Asian countries The post DoNot Go! Do not respawn! appeared first on WeLiveSecurity

Beijing Olympics App Flaws Allow Man-in-the-Middle Attacks
US mergers doubled in 2021 so FTC and DoJ seek new guidelines to stop illegal ones

An update for kernel is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Updated Satellite 6.10 packages that fix several bugs are now available for Red Hat Satellite. 2. Relevant releases/architectures: Red Hat Satellite 6.10 – noarch, x86_64

Red Hat OpenShift Container Platform release 4.7.41 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.7.

An update for kernel is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for kernel-rt is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Cloned Dept. of Labor Site Hawks Fake Government Contracts

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Nine-year-old kids are launching DDoS attacks against schools
Will 2022 Be the Year of the Software Bill of Materials?
Crypto.com acknowledges ‘unauthorized activity’ on servers, maintains no funds have been lost
The Log4j Vulnerability Puts Pressure on the Security World
Cybercriminals Actively Target VMware vSphere with Cryptominers
Suse open sources NeuVector container security platform
Serious Security: Apple Safari leaks private data via database API – what you need to know
‘White Rabbit’ Ransomware May Be FIN8’s Latest Tool
International police shut down 15 server infrastructures as part of VPNLab.net’s takedown
Social media in the workplace: Cybersecurity dos and don’ts for employees

Do you often take to social media to broadcast details about your job, employer or coworkers? Think before you share – less may be more. The post Social media in the workplace: Cybersecurity dos and don’ts for employees appeared first on WeLiveSecurity

Critical ManageEngine Desktop Server Bug Opens Orgs to Malware
More contractor pain: Parasol’s sister firms, SJD Accountancy and Nixon Williams, confirm cyberattack
Organizations Face a ‘Losing Battle’ Against Vulnerabilities
Singapore monetary authority threatens action on bank over widespread phishing scam

httpd: mod_lua: Possible buffer overflow when parsing multipart content (CVE-2021-44790) * httpd: mod_session: Heap overflow via a crafted SessionHeader value (CVE-2021-26691) * httpd: NULL pointer dereference via malformed requests (CVE-2021-34798) * httpd: Out-of-bounds write in ap_escape_quotes() via malicious input (CVE-2021-39275) For more details about the security issue(s), includin [More…]

Why global DDoS protection is essential for Anycast networks

This kernel-linus update is based on upstream 5.15.15 and fixes atleast the following security issues: A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A

This kernel update is based on upstream 5.15.15 and fixes atleast the following security issues: A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A

Microsoft patches the patch that broke VPNs, Hyper-V, and left servers in boot loops

Upstream details at : https://access.redhat.com/errata/RHSA-2022:0162

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

security update

security update

Successfully recovering from disruption or disaster is one of an IT administrator’s most critical duties. Whether it’s restoring servers or rescuing lost data, failure to complete a successful recovery can spell doom for a company. But mastering the recovery process happens before disaster strikes. This is especially true for large datasets. Our breakdown is here […]

Bug in WebKit’s IndexedDB implementation makes Safari 15 leak Google account info… and more

New expat packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.

Ukraine blames Belarus for PC-wiping ‘ransomware’ that has no recovery method and nukes target boxen
Romance scammer who targeted 670 women gets 28 months in jail
Pulling Back the Curtain: About LinuxSecurity.com>
Umbrella company Parasol Group confirms cyber attack as ‘root cause’ of prolonged network outage

An update that fixes 24 vulnerabilities is now available.

Several security issues were fixed in Pillow.

An update for httpd is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

A bad day in the office for the REvil ransomware gang, as Russia arrests 14 members
Data-wiping malware hitting Ukrainian computers displays fake ransom demand

Update to 1.12.3 Fixes these two security issues: * CVE-2021-43860 or https://github.com/flatpak/flatpak/security/advisories/GHSA-qpjc-vq3c-572j * CVE-2022-21682 or https://github.com/flatpak/flatpak/security/advisories/GHSA-8ch7-5j3h-g4fx Full release notes: https://github.com/flatpak/flatpak/releases/tag/1.12.3

It was discovered that sphinxsearch, a fast standalone full-text SQL search engine, could allow arbitrary files to be read by abusing a configuration option.

North Korea pulled in $400m in cryptocurrency heists last year – report

Multiple security issues were discovered in Thunderbird, which could result in denial of service or the execution of arbitrary code. For Debian 9 stretch, these problems have been fixed in version

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, information disclosure, denial of service or spoofing.

security update

security update

Security fix for CVE-2021-4122

– kombu 5.2.3: https://github.com/celery/kombu/blob/master/Changelog.rst#523 – celery 5.2.3: https://github.com/celery/celery/blob/master/Changelog.rst#523

– kombu 5.2.3: https://github.com/celery/kombu/blob/master/Changelog.rst#523 – celery 5.2.3: https://github.com/celery/celery/blob/master/Changelog.rst#523

Update to 0.9.6, see https://github.com/uriparser/uriparser/blob/uriparser-0.9.6/ChangeLog for details.

Network Intrusion Detection Using Snort>

CPAN 2.28 allows Signature Verification Bypass. (CVE-2020-16156) References: – https://bugs.mageia.org/show_bug.cgi?id=29878 – https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/

This update provides Mbed TLS 2.16.12, with a number of bug fixes and a security fix. Mbed TLS has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure. (CVE-2021-44732)

A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp. (CVE-2021-3997) References:

CWE-122 Heap-based Buffer Overflow (CVE-2021-4136) CWE-125 Out-of-bounds Read (CVE-2021-4166) CWE-416 Use After Free (CVE-2021-4173) CWE-416 Use After Free (CVE-2021-4187)

Buffer overflow vulnerability in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp. (CVE-2021-40985) References:

Russia starts playing by the rules: FSB busts 14 REvil ransomware suspects

security update

The 5.15.14 stable kernel update contains a number of important fixes across the tree.

Serious Security: Linux full-disk encryption bug fixed – patch now!
Top Illicit Carding Marketplace UniCC Abruptly Shuts Down  
Making loyalty pay: How to keep your loyalty rewards safe from scammers

Is loyalty fraud on your radar? Here’s why your hard-earned reward points and air miles may be easy pickings for cybercriminals. The post Making loyalty pay: How to keep your loyalty rewards safe from scammers appeared first on WeLiveSecurity

Real Big Phish: Mobile Phishing & Managing User Fallibility
Critical Cisco Contact Center Bug Threatens Customer-Service Havoc
Multi-day IT systems outage whacks umbrella biz Parasol Group amid fears of a cyber attack
‘Be Afraid:’ Massive Cyberattack Downs Ukrainian Gov’t Sites
Talking cyber on the ManageEngine Insights podcast
Ukraine shrugs off mass govt website defacement as world turns to stare at Russia
REvil ransomware crew allegedly busted in Russia, says FSB
Russian Security Takes Down REvil Ransomware Gang
Three Plugins with Same Bug Put 84K WordPress Sites at Risk
Adobe Cloud Abused to Steal Office 365, Gmail Credentials

kernel: perf_event_parse_addr_filter memory (CVE-2020-25704) * kernel: fuse: fuse_do_getattr() calls make_bad_inode() in inappropriate situations (CVE-2020-36322) * kernel: Heap buffer overflow in firedtv driver (CVE-2021-42739) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * [More…]

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

An update for samba is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for ansible-runner for Red Hat Ansible Automation Platform 2.0 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Visibility, immutability, security … a revolutionary approach to fighting off ransomware
Microsoft Yanks Buggy Windows Server Updates
Federal Communications Commission proposed stricter rules on how telco carriers should report data breaches
North Korean APTs Stole ~$400M in Crypto in 2021
Orca Security tells AWS fail tale with a happy ending

Security fix for CVE-2021-46059, CVE-2022-0158, CVE-2022-0156

security update

security update

Security fix for CVE-2021-41500. Upstream notes for version 1.2.7 read: “Bug fixes, Python 3.10 compatibility”.

Continuous security and compliance for hybrid cloud, the Red Hat way
US Military Ties Prolific MuddyWater Cyberespionage APT to Iran
Cryptocurrency scams: What to know and how to protect yourself

As you attempt to strike it rich in the digital gold rush, make sure you know how to recognize various schemes that want to part you from your digital coins The post Cryptocurrency scams: What to know and how to protect yourself appeared first on WeLiveSecurity