Menu

Monthly Archives: May 2023

Feds, you’ll need a warrant for that cellphone border search
Smashing Security podcast #324: .ZIP domains, AI lies, and did social media inflame a riot?
Barracuda Email Security Gateways bitten by data thieves
Hacking forum hacked, user database leaked online
Criminals spent 10 days in US dental insurer’s systems extracting data of 9 million
XFS bug in Linux kernel 6.3.3 coincides with SGI code comeback
When the popular safeguarding tool is anything but

Several security issues were fixed in libvirt.

Linux Container Security Primer
Thinking straight in the SoC: How AI erases cognitive bias
Venezuela pays people to tweet state propaganda and deepfake videos

The container bci/python was updated. The following patches have been included in this update:

The container bci/php-apache was updated. The following patches have been included in this update:

The container bci/nodejs was updated. The following patches have been included in this update:

The container bci/nodejs was updated. The following patches have been included in this update:

The container suse/registry was updated. The following patches have been included in this update:

Hacked DJ’s Twitter account costs cryptocurrency investors $170,000

security update

1. This crypto-coin is called Jimbo. 2. $8m was stolen from its devs in flash loan attack
90+ orgs tell Slack to stop slacking when it comes to full encryption
Pegasus-pusher NSO gets new owner keen on the commercial spyware biz
Serious Security: Verification is vital – examining an OAUTH login bug
Frontegg launches entitlements engine to streamline access authorization

LuaTeX (TeX Live) could be made to run programs as your login if it compiled a specially crafted TeX file.

Email Phishing Using Kali Linux

hawk could be made to crash if it opened a specially crafted file.

nth-check could be made to crash if it opened a specially crafted file.

Disaster recovery in the cloud

Jhead could be made to crash if it opened a specially crafted file.

The container bci/openjdk-devel was updated. The following patches have been included in this update:

Multiple vulnerabilities have been found in Apache Tomcat, the worst of which could result in denial of service.

security update

Multiple vulnerabilities were found in sssd, a set of daemons to manage access to remote directories and authentication mechanisms, which could lead to privilege escalation.

Several security issues were fixed in Sudo.

Protect your business network with PureDome

Jhead could be made to crash if it opened a specially crafted file.

Linux PTP could be made to crash, run arbitrary code, or expose sensitive information if it received specially crafted input.

New York county still dealing with ransomware eight months after attack

Update bottles to 51.6 and release final dependency vkbasalt-cli

Update bottles to 51.6 and release final dependency vkbasalt-cli

security update

security update

An update that fixes 43 vulnerabilities is now available.

Update to 1.19.1. Fixes CVE-2023-32067, CVE-2023-31130, CVE-2023-31147, CVE-2023-31124

Update to 0.10.5 (CVE-2023-1667 CVE-2023-2283)

Cross-site scripting (XSS) vulnerabilities were found in rainloop, a web-based email client, which could lead to information disclosure including passphrase leak.

security update

security update

Several vulnerabilities were discovered in libraw, a library for reading RAW files obtained from digital photo cameras, which may result in denial of service or the execution of arbitrary code if specially crafted files are processed.

How an innocuous app morphed into a trojan – Week in security with Tony Anscombe

ESET research uncovers an Android app that initially had no harmful features but months later turned into a spying tool The post How an innocuous app morphed into a trojan – Week in security with Tony Anscombe appeared first on WeLiveSecurity

It was discovered that sysstat, a system performance tools for Linux, incompletely fixed CVE-2022-39377 (as published in DLA-3188-1), which could lead to crashes and possibly remote code execution.

Jose Gomez discovered that the Catalog API endpoint in the Docker registry implementation did not sufficiently enforce limits, which could result in denial of service.

Buffer Overflow vulnerabilities were found in libraw, a raw image decoder library, which could lead to application crash or privilege escalation.

– Update the sequoia-openpgp crate to version 1.16.0. – Update the nettle crate to version 7.3.0. – Update the nettle-sys crate to version 2.2.0. – Update the buffered-reader crate to version 1.2.0. Version 1.16.0 of the sequoia-openpgp crate fixes some issues in parsing code, which could lead to attempted out-of- bounds accesses that result in […]

– Update the sequoia-openpgp crate to version 1.16.0. – Update the nettle crate to version 7.3.0. – Update the nettle-sys crate to version 2.2.0. – Update the buffered-reader crate to version 1.2.0. Version 1.16.0 of the sequoia-openpgp crate fixes some issues in parsing code, which could lead to attempted out-of- bounds accesses that result in […]

– Update the sequoia-openpgp crate to version 1.16.0. – Update the nettle crate to version 7.3.0. – Update the nettle-sys crate to version 2.2.0. – Update the buffered-reader crate to version 1.2.0. Version 1.16.0 of the sequoia-openpgp crate fixes some issues in parsing code, which could lead to attempted out-of- bounds accesses that result in […]

Alien versus Predator? No, this Android spyware works together
US govt pushes spyware to other countries? Senator Wyden would like a word
Shedding light on AceCryptor and its operation

ESET researchers reveal details about a prevalent cryptor, operating as a cryptor-as-a-service used by tens of malware families The post Shedding light on AceCryptor and its operation appeared first on WeLiveSecurity

An issue has been found in sniproxy, a transparent TLS and HTTP layer 4 proxy with SNI support. Due to bad handling of wildcard backend hosts, a crafted HTTP or TLS packet might lead to remote arbitrary code execution.

Improving supply chain resiliency with Red Hat Trusted Software Supply Chain

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux Cloud Native Environment 1.6 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Careless IT security worker exploited ransomware attack against his employer, but failed to cover his tracks
BlackByte ransomware crew lists city of Augusta after cyber ‘incident’
It’s 2023 and Sri Lanka doesn’t have a cyber security authority
Spotted: Suspected Russian malware designed to disrupt Euro, Asia energy grids
S3 Ep136: Navigating a manic malware maelstrom
So the FBI ‘persistently’ abused its snoop powers. What’s to worry about?
Sorry scammer, I’m not cancelling my McAfee Antivirus subscription

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

The container bci/bci-init was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

Confidential Containers on Azure with OpenShift: A technical deep dive
Facial recog system used by Met Police shows racial bias at low thresholds
Smashing Security podcast #323: Botched Bitcoin blackmail, iSpoof, and Meta’s billion dollar data bungle
Five Eyes and Microsoft accuse China of attacking US infrastructure again
This legit Android app turned into mic-snooping malware – and Google missed it

security update

Philly Inquirer says Cuba ransomware gang’s data leak claims are fake news
Ransomware tales: The MitM attack that really had a Man in the Middle

An update for sudo is now available for Red Hat Enterprise Linux 7.7 Advanced Update Support, Red Hat Enterprise Linux 7.7 Telco Extended Update Support, and Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions.

An update for devtoolset-12-binutils is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

JSON Schema could be made to crash or run programs if it opened specially crafted input.

USN-6074-2 caused some minor regressions in Firefox.

Several security issues were fixed in GNU binutils.

Several security issues were fixed in xmldom.

Digital security for the self‑employed: Staying safe without an IT team to help

Nobody wants to spend their time dealing with the fallout of a security incident instead of building up their business The post Digital security for the self‑employed: Staying safe without an IT team to help appeared first on WeLiveSecurity

IT security analyst admits hijacking cyber attack to pocket ransom payments
US bans North Korean outsourcer and its feisty freelancers

security update

Apria Healthcare says potentially 2M people caught up in IT security breach
PyPI open-source code repository deals with manic malware maelstrom
Dish confirms 300,000 people’s data was exposed in February’s attack