Menu

Monthly Archives: February 2023

ZeroLock: How to Defend Against Ransomware on Linux
Learn the art of malicious compliance: doing exactly what you were asked, even when it’s wrong

The container sles-15-sp4-chost-byos-v20230210-arm64 was updated. The following patches have been included in this update:

Red Hat OpenShift Container Platform release 4.9.55 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which

China’s spy balloon barrage earns six of its companies a spot on US entity list

Update to 110.0.5481.77. Fixes the following security issues: CVE-2023-0696 CVE-2023-0697 CVE-2023-0698 CVE-2023-0699 CVE-2023-0700 CVE-2023-0701 CVE-2023-0702 CVE-2023-0703 CVE-2023-0704 CVE-2023-0705 CVE-2023-25193

The newest upstream commit Security fixes for CVE-2023-0433, CVE-2022-47024

Fix a possible DOS involving the Qt SQL ODBC driver plugin.

The container suse/sle-micro/5.4/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.3/toolbox was updated. The following patches have been included in this update:

xwayland 22.1.8 – Security fix for CVE-2023-0494

security update

Key findings from the latest ESET Threat Report – Week in security with Tony Anscombe

What is behind the drop in ransomware and what should still be done for containing the ransomware scourge? The post Key findings from the latest ESET Threat Report – Week in security with Tony Anscombe appeared first on WeLiveSecurity

The container suse/manager/4.3/proxy-tftpd was updated. The following patches have been included in this update:

The container suse/manager/4.3/proxy-ssh was updated. The following patches have been included in this update:

The container suse/manager/4.3/proxy-squid was updated. The following patches have been included in this update:

The container suse/manager/4.3/proxy-salt-broker was updated. The following patches have been included in this update:

The container suse/manager/4.3/proxy-httpd was updated. The following patches have been included in this update:

The container suse/manager/4.3/proxy-httpd was updated. The following patches have been included in this update:

Ransomware crooks steal 3m+ patients’ medical records, personal info
Reddit admits it was hacked and data stolen, says “Don’t panic”
Alexa, who else is listening?

Your smart speaker is designed to listen, but could it be eavesdropping too? The post Alexa, who else is listening? appeared first on WeLiveSecurity

Dallas Central Appraisal District paid $170,000 to ransomware attackers
Hard drugs actively sold on Twitter in plain sight. Twitter says it doesn’t breach its safety policies
Urgent OpenSSL Security Advisory: High-Severity Address Type Confusion Vuln Fixed
Securing open source development: A supply chain perspective
3 reasons not to repatriate cloud-based apps and data sets
US, UK slap sanctions on Russians linked to Conti, Ryuk, Trickbot malware
US teases more China tech sanctions, this time to deflate balloon-makers

This update fixes multiple file format validation vulnerabilities that could result in memory access violations such as buffer overflows and floating point exceptions. It also fixes a regression in hcom parsing introduced when fixing CVE-2017-11358.

Australian government gives made-in-China CCTV cams the boot
Romance scammers’ favorite lies cost victims $1.3B last year
Reddit reveals security incident that looks more SNAFU than TIFU

Add upstream fix for CVE-2022-47021

Add upstream fix for CVE-2022-47021

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

security update

security update

security update

S3 Ep121: Can you get hacked and then prosecuted for it? [Audio + Text]
ESET Threat Report T3 2022

A view of the T3 2022 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts The post ESET Threat Report T3 2022 appeared first on WeLiveSecurity

Bungling Optus scammer was no criminal mastermind
Smashing Security podcast #308: Jail after VPN fail, criminal messaging apps, and wolf-crying watches

The container suse/sle15 was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/ruby was updated. The following patches have been included in this update:

The container suse/rmt-server was updated. The following patches have been included in this update:

The container suse/rmt-nginx was updated. The following patches have been included in this update:

Codebreakers decipher Mary, Queen of Scots’ secret letters 436 years after her execution
Uncle Sam wants to strip the IoS out of IoT with light crypto
Among the thousands of ESXiArgs ransomware victims? FBI and CISA to the rescue

security update

security update

security update

VMWare user? Worried about “ESXi ransomware”? Check your patches now!
Into the void: Your tech and security in digital darkness

No internet, perfect security? Two ESET researchers perform a thought experiment where they consider the implications of being plunged into digital darkness. The post Into the void: Your tech and security in digital darkness appeared first on WeLiveSecurity

Scammers steal $4 million in crypto during face-to-face meeting

Helmut Grohne discovered a flaw in Heimdal, an implementation of Kerberos 5 that aims to be compatible with MIT Kerberos. The backports of fixes for CVE-2022-3437 accidentally inverted important memory comparisons in the arcfour-hmac-md5 and rc4-hmac integrity check

This release fixes various issues in shim bootloader and updates it to a supported version. Older versions of the shim may eventually be blocked by Secure Boot, so it is strongly advised for Secure Boot enabled systems to upgrade to this newer version to keep the system bootable.

I discovered a flaw in Heimdal, an implementation of Kerberos 5 that aims to be compatible with MIT Kerberos. The backports of fixes for CVE-2022-3437 accidentally inverted important memory comparisons in the arcfour-hmac-md5 and rc4-hmac integrity check handlers for gssapi,

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.4/toolbox was updated. The following patches have been included in this update:

Suspect in Finnish psychotherapy center blackmail hack arrested

An update that fixes two vulnerabilities is now available.

OpenSSL fixes High Severity data-stealing bug – patch now!
Online safety laws: What’s in store for children’s digital playgrounds?

As children’s safety and privacy online becomes a matter of increasing urgency, lawmakers around the world push ahead on new regulations in the digital realm The post Online safety laws: What’s in store for children’s digital playgrounds? appeared first on WeLiveSecurity

History of Malware on Linux and What’s Being Done to Stop It

Red Hat OpenShift Container Platform release 4.11.26 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

The container bci/python was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

Eurocops shut down Exclu encrypted messaging app, arrest dozens

Jan-Niklas Sohn, working with Trend Micro Zero Day Initiative, discovered a vulnerability in the X.Org X server. A potential use after free mighty result in local privilege escalation if

It was discovered that there were a number of issues in graphite-web, a tool provide realtime graphing of system statistics etc. A series of cross-site scripting (XSS) vulnerabilties existed that

NULL pointer dereferences in op_get_data() and op_open1() in opusfile.c (CVE-2022-47021) References: – https://bugs.mageia.org/show_bug.cgi?id=31505

Embarrassment as US cyber ambassador’s Twitter account is hacked
Here’s a list of proxy IPs to help block KillNet’s DDoS bots

security update

Ikeda Soji reported that libhtml-stripscripts-perl, a Perl module for removing scripts from HTML, is prone to a regular expression denial of service, due to catastrophic backtracking for HTML content with specially crafted style attributes.

How to remove yourself from the internet and from people search sites
Tracers in the Dark: The Global Hunt for the Crime Lords of Crypto
Ex-Ubiquiti worker pleads guilty to data theft, extortion, and smear plot
Finnish psychotherapy extortion suspect arrested in France
Hackers hit Vesuvius, UK engineering company shuts down affected systems
Keeping unstructured data safe and sound
The tech leader’s guide to 2023

EditorConfig Core C could be made to crash or run programs if it received specially crafted input.

Trust, not tech, is holding back a safer internet
School laptop auction devolves into extortion allegation
Ransomware scum launch wave of attacks on critical, but old, VMWare ESXi vuln

Several security issues were fixed in Thunderbird.

USN-5825-1 caused some minor regressions in PAM.

USN-5816-1 caused some minor regressions in Firefox.

Have we learnt nothing from SolarWinds supply chain attacks? Not yet it appears

Security fix for CVE-2022-4510

# New in release [OpenJDK 8u362](https://bit.ly/openjdk8u362) (2023-01-17) ## CVEs Fixed – CVE-2023-21830 – CVE-2023-21843 ## Security Fixes – JDK-8285021: Improve CORBA communication – JDK-8286496: Improve Thread labels – JDK-8288516: Enhance font creation – JDK-8289350: Better media supports – JDK-8293554: Enhanced DH Key Exchanges – JDK-8293598: Enhance InetAddress

# New in release [OpenJDK 11.0.18](https://bit.ly/openjdk11018) (2023-01-17) ## CVEs Fixed – CVE-2023-21835 – CVE-2023-21843 ## Security Fixes – JDK-8286070: Improve UTF8 representation – JDK-8286496: Improve Thread labels – JDK-8287411: Enhance DTLS performance – JDK-8288516: Enhance font creation – JDK-8289350: Better media supports – JDK-8293554: Enhanced DH Key Exchanges

# New in release [OpenJDK 17.0.6](https://bit.ly/openjdk1706) (2023-01-17) ## CVEs Fixed – CVE-2023-21835 – CVE-2023-21843 ## Security Fixes – JDK-8286070: Improve UTF8 representation – JDK-8286496: Improve Thread labels – JDK-8287411: Enhance DTLS performance – JDK-8288516: Enhance font creation – JDK-8289350: Better media supports – JDK-8293554: Enhanced DH Key Exchanges