Menu

Category Archives: All

Everything

Several security issues were fixed in the Linux kernel.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Lloyd’s to exclude certain nation-state attacks from cyber insurance policies

security update

Twitter savaged by former security boss Mudge in whistleblower complaint
Smartphone gyroscopes threaten air-gapped systems, researcher finds
Hackers demand $10 million from Paris hospital after ransomware attack
Bitcoin ATMs leeched by attackers who created fake admin accounts
Firewall Bug Under Active Attack Triggers CISA Warning
Getting started with Red Hat Insights malware detection
Black Hat USA 2022 & DEF CON 30: Highlights, Key Findings & Notable Trends

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

patchlevel 213 Security fixes for CVE-2022-2819, CVE-2022-2816, CVE-2022-2817

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

Microsoft finds critical hole in operating system that for once isn’t Windows
If you haven’t patched Zimbra holes by now, assume you’re toast
Novant Health admits leak of 1.3m patients’ info to Facebook
Hiding a phishing attack behind the AWS cloud

security update

Warning over Java libraries and deserialization security weaknesses
LockBit gang hit by DDoS attack after threatening to leak Entrust ransomware data
Laptop denial-of-service via music: the 1980s R&B song with a CVE!
Fake Reservation Links Prey on Weary Travelers
Mac users urged to update Zoom, after security patch released for previously-flawed security patch

An update that solves one vulnerability and has two fixes is now available.

Several security issues were fixed in Libxslt.

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Security is hard and won’t get much easier
Zoom patches make-me-root security flaw, patches patch
NSO Group CEO steps down, 100 employees let go too

New vim packages are available for Slackware 15.0 and -current to fix a security issue.

Multiple vulnerabilities have been discovered in Apache Tomcat, the worst of which could result in denial of service.

Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution.

A vulnerability has been found in libcroco which could result in denial of service.

Google and Apple both release patches against zero‑day vulnerabilities – Week in security with Tony Anscombe

Zero-day vulnerabilities are super active and Google and Apple are acting to patch these vulnerabilities, some of which seen on-the-wild. The post Google and Apple both release patches against zero‑day vulnerabilities – Week in security with Tony Anscombe appeared first on WeLiveSecurity

KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB.

An update that fixes three vulnerabilities is now available.

The container sles-15-sp3-chost-byos-v20220818-x86-64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp3-chost-byos-v20220818-hvm-ssd-x86_64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp3-chost-byos-v20220818-x86_64-gen2 was updated. The following patches have been included in this update:

Code execution via malicious map file (CVE-2021-43518) References: – https://bugs.mageia.org/show_bug.cgi?id=30717 – https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/JIYZ7EVY6NZBM7FQF6GVUARYO6MKSEAT/

Ex-HP finance manager jailed after going on $5m spending spree using company plastic

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

iPhone Users Urged to Update to Patch 2 Zero-Days
Two years on, Apple iOS VPNs still leak IP addresses

The container suse/sles12sp5 was updated. The following patches have been included in this update:

The container suse/sles12sp4 was updated. The following patches have been included in this update:

The truth about that draft law banning Uncle Sam buying insecure software

rsync could be made to crash or run programs if it received specially crafted input.

Keeping the keys to the kingdom secure
Google blocks third record-breaking DDoS attack in as many months
Apple patches double zero-day in browser and kernel – update now!
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
Google Patches Chrome’s Fifth Zero-Day of the Year

PostgreSQL could be made to run programs when creating or updating extensions.

Streamlining IT security operations with Red Hat Insights and Red Hat Satellite
Open-Source VPN Protocols Compared: Why WireGuard is on the Rise!

An update that fixes 14 vulnerabilities is now available.

A command injection vulnerability was found in FreeCAD, a parametric 3D modeler, when importing DWG files with crafted filenames. For Debian 10 buster, this problem has been fixed in version

A step‑by‑step guide to enjoy LinkedIn safely

LinkedIn privacy settings are just as overwhelming as any other social media settings. There’s a lot of menus, a lot buttons to enable, select, accept or reject. To make sure you have control over your information we bring you a step-by-step guide on how to enjoy LinkedIn safely. The post A step‑by‑step guide to enjoy […]

An update that fixes three vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Ransomware attack on UK water company clouded by confusion
Deluge of of entries to Spamhaus blocklists includes ‘various household names’
Janet Jackson music video declared a cybersecurity exploit

security update

security update

Google, Apple squash exploitable browser bugs

security update

security update

security update

security update

Software developer cracks Hyundai car security with Google search
After 7 years, long-term threat DarkTortilla crypter is still evolving

The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-32792

How to stop the evil lurking in the shadows
TikTok wants your trust around US midterm elections data
APT Lazarus Targets Engineers with macOS Malware
Chrome browser gets 11 security fixes with 1 zero-day – update now!

USN-5526-1 introduced a regression in PyJWT.

Kubescape boosts Kubernetes scanning capabilities

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-32792

Mozilla finds 18 of 25 popular reproductive health apps leak data
Russian military uses Chinese drones and bots in combat, over manufacturers’ protests

The container suse/sles12sp4 was updated. The following patches have been included in this update:

RubyGems now requires multi-factor auth for top package maintainers
SEC says brokerage accounts hijacked for $1.3m pump-and-dump scam

Update to yara-4.2.3 —- Update to 4.2.0 —- Update to 4.2.2

Update to yara-4.2.3 —- Update to 4.2.0 —- Update to 4.2.2