Menu

Category Archives: All

Everything

The container caasp/v4/velero-plugin-for-microsoft-azure was updated. The following patches have been included in this update:

The container caasp/v4/velero-plugin-for-gcp was updated. The following patches have been included in this update:

The container caasp/v4/velero-plugin-for-aws was updated. The following patches have been included in this update:

China orders web operators to spring clean its entire internet
Smashing Security podcast #259: Techquilibrium and mediocre linguistic escapades
Update now! Apple pushes out security patches for iPhone and Mac zero-day vulnerabilities
TrickBot Crashes Security Researchers’ Browsers in Latest Upgrade
Apple Fixes 2 Zero-Day Security Bugs, One Exploited in the Wild
Alert: Let’s Encrypt to revoke about 2 million HTTPS certificates in two days
‘Dark Herring’ Billing Malware Swims onto 105M Android Devices

security update

security update

security update

security update

security update

New Year, New Threats: 4 Tips to Activate Your Best Cyber-Defense
Cybercriminals Love Supply-Chain Chaos: Here’s How to Protect Your Inbox
Qualys Research Team Warns of Significant polkit Vulnerability Affecting All Linux Users>
“PwnKit” security bug gets you root on most Linux distros – what to do
Linux Bug in All Major Distros: ‘An Attacker’s Dream Come True’

Phishing attacks sustain historic highs In their latest report, IDG and the pros behind Carbonite + Webroot spoke with 300 global IT professionals to learn the current state of phishing. We learned that 93% of IT executives are still concerned about phishing – and it’s no wonder, as companies averaged 28 attacks each over the […]

Watering hole deploys new macOS malware, DazzleSpy, in Asia

Hong Kong pro-democracy radio station website compromised to serve a Safari exploit that installed cyberespionage malware on site visitors’ Macs The post Watering hole deploys new macOS malware, DazzleSpy, in Asia appeared first on WeLiveSecurity

Threat Actors Blanket Androids with Flubot, Teabot Campaigns

An update for the httpd:2.4 module is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for the parfait:0.5 module is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for the parfait:0.5 module is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for the parfait:0.5 module is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for the parfait:0.5 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for Red Hat Process Automation Manager. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Infosec big dogs break out the bubbly over UK government’s latest cyber strategy emission
Infosec chap: I found a way to hijack your web accounts, turn on your webcam from Safari – and Apple gave me $100k
Linux distros haunted by Polkit-geist for 12+ years: Bug grants root access to any user

If you’ve considered using a virtual private network (VPN) at all, it’s likely to establish a secure connection while working remotely or to connect to public networks. But privacy enthusiasts appreciate the benefits of a VPN even from the comfort of their own homes. Depending on your level of comfort with your internet service provider […]

Cyberattacks on Squid Game Minecraft Tourney Take Down Andorra’s Internet
Ozzy Osbourne NFTs Used to Bite Off Chunk of Crypto Coin
Segway Hit by Magecart Attack Hiding in a Favicon

security update

security update

security update

security update

security update

MacOS Malware ‘DazzleSpy’ Used in Watering-Hole Attacks
Tax scam emails are alive and well as US tax season starts
How I hacked my friend’s PayPal account

Somebody could easily take control of your PayPal account and steal money from you if you’re not careful – here’s how to stay safe from a simple but effective attack The post How I hacked my friend’s PayPal account appeared first on WeLiveSecurity

AdSanity, AccessPress Plugins Open Scads of WordPress Sites to Takeover
Sophos: Log4Shell would have been a catastrophe without the Y2K-esque mobilisation of engineers
BRATA Android Trojan Updated with ‘Kill Switch’ that Wipes Devices

The Qualys Research Labs discovered a local privilege escalation in PolicyKit’s pkexec. Details can be found in the Qualys advisory at

The Qualys Research Labs discovered a local privilege escalation in PolicyKit’s pkexec. Details can be found in the Qualys advisory at

Is Google tracking your location even when you think you’ve turned it off? US states sue over “deception”

Upstream details at : https://access.redhat.com/errata/RHSA-2022:0143

Red Hat OpenShift Container Platform release 3.11.570 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for the httpd:2.4 module is now available for Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8.2 Extended Update Support, and Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact

An update for etcd is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

UK government opens consultation on medic-style register for Brit infosec pros
Yes, your data is special. But do you know how special?
Twitter’s top security staff out after incoming CEO shakes things up

Whether you’re shopping for the latest tech gadgets or checking your work email, your online presence is susceptible to malicious threats. No industry or sector is immune. Even in the early days of 2022, a hospital in Jackson, Florida, experienced a ransomware attack that left medical professionals struggling to access patient records. Attacks like this […]

Linux Servers at Risk of RCE Due to Critical CWP Bugs
MoleRats APT Launches Spy Campaign on Bankers, Politicians, Journalists
Surge in Malicious QR Codes Sparks FBI Alert
Dark Souls 3 Servers Shut Down Due to Critical RCE Bug
Hive View security camera customers left in the dark as some gear goes TITSUP*
Alleged carder gang mastermind and three acolytes under arrest in Russia

The Red Hat Build of OpenJDK 11 (java-11-openjdk) is now available for Windows. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

The Red Hat build of OpenJDK 17 (java-17-openjdk) is now available for portable Linux. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

The Red Hat Build of OpenJDK 11 (java-11-openjdk) is now available for portable Linux. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

The Red Hat build of OpenJDK 17 (java-17-openjdk) is now available for Windows. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for etcd is now available for Red Hat OpenStack Platform 16.2 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for libreswan is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Of hacks and patches
Unusual ‘Donald Trump’ Packer Malware Delivers RATs, Infostealers
Myanmar’s military junta seeks ban on VPNs and digital currency
Australian Prime Minister’s WeChat Shanghaied by Chinese patriots

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.

Update to 2.34.4: * Fix dire [“Safari Leaks”](https://safarileaks.com/) IndexedDB privacy violation. * Make audio tools (like mixers) display the actual name of the application producing sound, instead of a generic one. * Fix several crashes and rendering issues. * Additional security fixes: CVE-2021-30887, CVE-2021-30890, CVE-2021-30934, CVE-2021-30936, CVE-2021-30951,

Fix CVE-2022-23132, CVE-2022-23133, CVE-2022-23134

Fix CVE-2022-23132, CVE-2022-23133, CVE-2022-23134

Several vulnerabilities were discovered in the Go programming language. An attacker could trigger a denial-of-service (DoS) and information leak.

Several vulnerabilities were discovered in the Go programming language. An attacker could trigger a denial-of-service (DoS) and information leak.

Apple preps fix for Safari’s web-history-leaking IndexedDB privacy bug
Rust 1.58.1 fixes dangerous race condition
The Internet’s Most Tempting Targets

The 5.15.16 stable kernel update contains a number of important fixes across the tree.

Security fix for CVE-2021-45931

Merck Awarded $1.4B Insurance Payout over NotPetya Attack

security update

security update

The 5.15.16 stable kernel update contains a number of important fixes across the tree.

An update is now available for OpenShift Logging (5.2.6) Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Arm rages against the insecure chip machine with new Morello architecture
20K WordPress Sites Exposed by Insecure Plugin REST-API
McAfee Bug Can Be Exploited to Gain Windows SYSTEM Privileges
How to know if your email has been hacked

Think your email may have been hacked? Here are the signs to look for, how account takeover attacks commonly occur, and how to recover your account and avoid falling victim again The post How to know if your email has been hacked appeared first on WeLiveSecurity

Cryptocoin broker Crypto.com says 2FA bypass led to $35m theft
Spyware Blitzes Compromise, Cannibalize ICS Networks

Several security issues were fixed in Thunderbird.

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Security fix for CVE-2021-45930

Rebase to version 2.4.3