Menu

Category Archives: All

Everything

Zoom’s $15bn merger with Five9 probed by Uncle Sam for national security risks
Apple tried to patch this security hole in macOS Finder but didn’t consider upper and lowercase characters
Crystal Valley Farm Coop Hit with Ransomware
Predict 21 – the intelligence summit from Recorded Future you cannot afford to miss, October 12-13 2021
Lithuania tells its citizens to throw Xiaomi mobile devices in the bin
Facebook’s Ray-Ban Stories glasses have got a problem
Netgear SOHO Security Bug Allows RCE, Corporate Attacks
Unpatched Apple Zero-Day in macOS Finder Allows Code Execution
European police dismantle cybercrime ring with ties to Italian Mafia

The group used phishing, BEC and other types of attacks to swindle victims out of millions The post European police dismantle cybercrime ring with ties to Italian Mafia appeared first on WeLiveSecurity

How REvil May Have Ripped Off Its Own Affiliates
VMware Warns of Ransomware-Friendly Bug in vCenter Server
TikTok, GitHub, Facebook Join Open-Source Bug Bounty

A security vulnerability has been found in Kaminari, a pagination engine plugin for Rails 3+ and other modern frameworks, that would allow an attacker to inject arbitrary code into pages with pagination links.

Several security issues were fixed in WebKitGTK.

Microsoft Exchange Autodiscover protocol found leaking hundreds of thousands of credentials
VMware patch bulletin warns: “This needs your immediate attention.”

SQL parse could be made to denial of service if it received a specially crafted regular expression.

Red Hat Insights and the delivery of a new security recommendation

IBM s390x systems could be made to crash or run programs as an administrator.

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sles12sp5 was updated. The following patches have been included in this update:

Break out your emergency change process and patch this ransomware-friendly bug ASAP, says VMware
Database containing personal info on 106m people who traveled to Thailand found open to the internet – report

security update

Suex to be you: Feds sanction cryptocurrency exchange for handling payments from 8+ ransomware variants
Epik Confirms Hack, Gigabytes of Data on Offer
Hackers Are Going ‘Deep-Sea Phishing,’ So What Can You Do About It?
iOS 15 includes Face ID fix for security bypass using fake heads
Turla APT Plants Novel Backdoor In Wake of Afghan Unrest
BlackMatter Strikes Iowa Farmers Cooperative, Demands $5.9M Ransom
46% of On-Prem Databases Globally Contain Vulnerabilities: Is Yours Safe?
Fix network printing or keep Windows secure? Admins would rather disable PrintNightmare patch

Update to 2.32.4: * Do not append .asc extension to downloaded text/plain files. * Fix several crashes and rendering issues. * Fix CVE-2021-30858

– CVE-2021-22947 – STARTTLS protocol injection via MITM – CVE-2021-22946 – protocol downgrade required TLS bypassed – CVE-2021-22945 – use-after-free and double-free in MQTT sending

Backport patch for CVE-2021-23437.

Backport patch for CVE-2021-23437.

UK Ministry of Defence apologises after Afghan interpreters’ personal data exposed in email blunder

Backport patch for CVE-2021-23437.

Backport patch for CVE-2021-23437.

106 arrests as police dismantle Mafia-linked online crime gang
Mafia works remotely, too, it seems: 100+ people suspected of phishing, SIM swapping, email fraud cuffed
You’ve trained at the cutting edge, here’s how to keep your DFIR skills razor sharp
Amazon Driver-Surveillance Cameras Roll Out, Sparking Debate
Apache OpenOffice can be hijacked by malicious documents, fix still in beta

security update

Europol Breaks Open Extensive Mafia Cybercrime Ring
Payment API Bungling Exposes Millions of Users’ Payment Data
Ransomware recovery: Start getting back up before you’re even hit
“Back to basics” as courier scammers skip fake fees and missed deliveries
Bring Your APIs Out of the Shadows to Protect Your Business

Rebase with Security fix for CVE-2021-3781

Rebuild for dovecot 2.3.16 —- Rebuild for dovecot 2.3.16

– fix disclosure of HTTP auth credentials via SNI data (CVE-2021-38165)

An update for rh-ruby27-ruby is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Tick, tick, tick … TikTok China just limited kids to 40 minutes’ use each day

An update that solves one vulnerability and has one errata is now available.

Two vulnerabilities were discovered in the Nextcloud desktop client, which could result in information disclosure. For the oldstable distribution (buster), these problems have been fixed

The legacy 1.0 version of OpenSSL, a cryptography library for secure communication, fails to validate alternate trust chains in some conditions. In particular this breaks connecting to servers that use Let’s Encrypt certificates, starting 2021-10-01.

Multiple vulnerabilities were discovered in nettle, a low level cryptographic library, which could result in denial of service (remote crash in RSA decryption via specially crafted ciphertext, crash on ECDSA signature verification) or incorrect verification of ECDSA signatures.

Yes, of course there’s now malware for Windows Subsystem for Linux

GnuTLS, a portable cryptography library, fails to validate alternate trust chains in some conditions. In particular this breaks connecting to servers that use Let’s Encrypt certificates, starting 2021-10-01.

Porn Problem: Adult Ads Persist on US Gov’t, Military Sites
Something phishy: Tech recruiters jabbed by fake COVID-19 Passport scam
Ditch the Alert Cannon: Modernizing IDS is a Security Must-Do
Is it OK to use stolen data? What if it’s scientific research in the public interest?
AT&T Phone-Unlocking Malware Ring Costs Carrier $200M
Free decryptor for past REvil ransomware victims released
Microsoft MSHTML Flaw Exploited by Ryuk Ransomware Gang
Applying DevSecOps practices to Kubernetes: security analysis and remediation

Update to 2.2.17

Upstream annoucement: [WordPress 5.8.1 Security and Maintenance Release](https://wordpress.org/news/2021/09/wordpress-5-8-1-security-and- maintenance-release/)

Another race in XENMAPSPACE_grant_table handling [XSA-384, CVE-2021-28701] bugfix for XSA-380

Fake Walmart press release causes cryptocurrency price surge
WTF? Microsoft makes fixing deadly OMIGOD flaws on Azure your job

The container caasp/v4.5/kube-scheduler was updated. The following patches have been included in this update:

The container caasp/v4.5/kube-proxy was updated. The following patches have been included in this update:

The container caasp/v4.5/kube-controller-manager was updated. The following patches have been included in this update:

CISA, FBI: State-Backed APTs May Be Exploiting Critical Zoho Bug
Aviation-themed phishing campaign pushed off-the-shelf RATs into inboxes for 5 years
Airline Credential-Theft Takes Off in Widening Campaign
Hack yourself before someone else does it for you
Microsoft Patch Tuesday fixes actively exploited zero‑day and 85 other flaws

The most recent Patch Tuesday includes a fix for the previously disclosed and actively exploited remote code execution flaw in MSHTML. The post Microsoft Patch Tuesday fixes actively exploited zero‑day and 85 other flaws appeared first on WeLiveSecurity

OMIGOD, an exploitable hole in Microsoft open source code!
Ransomware-hit law firm secures High Court judgment against unknown criminals

Several security issues were fixed in Python.

Several security issues were fixed in Qt.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Libgcrypt could be made to expose sensitive information.

Financial Cybercrime: Following Cryptocurrency via Public Ledgers
REvil/Sodinokibi Ransomware Universal Decryptor Key Is Out
DDoS Attacks: A Flourishing Business for Cybercrooks – Podcast
Computer and data scientists should be as highly regarded as ‘warriors’ says top UK cybergeneral
HP Omen Hub Exposes Millions of Gamers to Cyberattack
Azure Zero-Day Flaws Highlight Lurking Supply-Chain Risk

An update that solves one vulnerability and has three fixes is now available.

De-identify, re-identify: Anonymised data’s dirty little secret
It’s time to delete that hunter2 password from your Microsoft account, says IT giant
This is AUKUS for China – US, UK, Australia reveal defence tech-sharing pact
Smashing Security podcast #243: Breaking news, Apple zero-clicks, and bad blood