Menu

Category Archives: All

Everything

FritzFrog Botnet Attacks Millions of SSH Servers
Warn your staff about phone spear phishing attacks, as reports rise
Ritz London clients scammed after apparent data breach

Armed with personal data stolen from the hotel’s dining reservation system, fraudsters trick guests into handing over their credit card details The post Ritz London clients scammed after apparent data breach appeared first on WeLiveSecurity

Bletchley Park visitors warned of data breach after Blackbaud ransomware attack

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Several security issues were fixed in QEMU.

Airline DMARC Policies Lag, Opening Flyers to Email Fraud
The Sounds a Key Make Can Produce 3D-Printed Replica

An update that fixes two vulnerabilities is now available.

An update for rh-mysql80-mysql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Floating COVID incubation tank becomes data-leaking ransomware rustbucket: Carnival admits crims made off with personal data booty
Pretty wild that a malicious mailto: link might attach your secret keys and files from your PC to an outgoing message
US senators: WikiLeaks ‘likely knew it was assisting Russian intelligence influence effort’ in 2016 Dem email leak
Researchers Warn of Active Malware Campaign Using HTML Smuggling
Large Orgs Plagued with Bugs, Face Giant Patch Backlogs
US liquor giant hit by ransomware – what the rest of us can do to help
Attack of the Instagram clones

Could your social media account be spoofed, why would anybody do it, and what can you do to avoid having a doppelgänger? The post Attack of the Instagram clones appeared first on WeLiveSecurity

CVE-2020-12100: Receiving mail with deeply nested MIME parts leads to resource exhaustion as Dovecot attempts to parse it. CVE-2020-12673: Dovecot’s NTLM implementation does not correctly check message buffer size, which leads to reading past allocation which can lead to crash. CVE-2020-12674: Dovecot’s RPA mechanism implementation accepts zero-length

In radare2 before version 4.5.0, malformed PDB file names in the PDB server path cause shell injection. To trigger the problem it’s required to open the executable in radare2 and run idpd to trigger the download. The shell code will execute, and will create a file called pwned in the current directory (CVE-2020-15121).

It was reported that firejail does not respect the end-of-options separator (“–“), allowing an attacker with control over the command line options of the sandboxed application, to write data to a specified file (CVE-2020-17367). It was reported that firejail when redirecting output via –output or

Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the ‘Cache-Digest’ header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via “H2Push off” will mitigate this vulnerability for unpatched servers (CVE-2020-9490).

An access flaw was found in targetcli, where the /etc/target and underneath backup directory/files were world-readable. This flaw allows a local attacker to access potentially sensitive information such as authentication credentials from the /etc/target/saveconfig.json and backup files. The highest threat from this vulnerability is to confidentiality (CVE-2020-13867).

Servers where the Handler concurrently reads the request body and writes a response can encounter a data race and crash. The httputil.ReverseProxy Handler is affected (CVE-2020-15586). Certain invalid inputs to ReadUvarint or ReadVarint could cause those functions

AWS Cryptojacking Worm Spreads Through the Cloud
TV stations – stop broadcasting your passwords!
Plymouth Passport Office’s pitiful password privacy
Smashing Security podcast #191: We are on the bird
IcedID Trojan Rebooted with New Evasive Tactics

Reading Time: ~ 3 min. Cyber resilience is being put to the test during the coronavirus pandemic. As more and more users work from home, it’s becoming increasingly difficult for IT teams to ensure uniform cyber security on home devices and networks that they don’t own or control. At the same time, cybercriminals are using […]

Cloudops tool integration is more important than the tools themselves
Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers
‘EmoCrash’ Exploit Stoppered Emotet For 6 Months
Jack Daniels, Ritz London Face Cyberattacks

Reading Time: ~ 2 min. Colorado Town Suffers Ransomware Attack The town of Lafayette, Colorado, fell victim to a ransomware attack last week without the capability to recover from the attack without paying a ransom of $45,000 in cryptocurrency. The attack disabled many city services for a number of days until officials determined they would […]

CREST cancels UK infosec accreditation exams after fresh round of ‘cheat sheets’ are leaked online
Cyberattacks Hit Thousands of Canadian Tax, Benefit Accounts

An update that solves 7 vulnerabilities and has two fixes is now available.

An update that fixes one vulnerability is now available.

Software Properties could be made to manipulate the display.

Monday review – catch up on our latest articles and videos

An update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Reply-All storm sparked by student smut sees school system shut down Google Classroom for up to a week
Feds seize ‘largest ever’ haul of crypto-dosh from terrorists – including coins from ‘fake’ pandemic mask web store

An update that solves two vulnerabilities and has 6 fixes is now available.

Several vulnerabilities were fixed in JRuby, a 100% pure-Java implementation of Ruby. CVE-2017-17742

Updated webkit2 packages fix security vulnerabilities: The webkit2 package has been updated to version 2.28.3, fixing several security issues and other bugs.

The znc package has been updated to version 1.8.1, containing several bugfixes and enhancements. See the upstream change logs for details. References: – https://bugs.mageia.org/show_bug.cgi?id=26886

In libEtPan, a mail library, a STARTTLS response injection was discovered that affects IMAP, SMTP, and POP3. For Debian 9 stretch, this problem has been fixed in version

Updated mumble package fixes security vulnerability: OCB2 is known to be broken under certain conditions: https://eprint.iacr.org/2019/311

An update that fixes 14 vulnerabilities is now available.

In HtmlUnit, a GUI-Less browser for Java programs, malicious JavaScript code was able to execute arbitrary Java code on the application. For Debian 9 stretch, this problem has been fixed in version

Several vulnerabilities were discovered in net-snmp, a suite of Simple Network Management Protocol applications, which could lead to privilege escalation.

security update

PoC Exploit Targeting Apache Struts Surfaces on GitHub

Update to latest upstream stable version.

Mac Users Targeted by Spyware Spreading via Xcode Projects

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

Critical Flaws in WordPress Quiz Plugin Allow Site Takeover
Mekotio: These aren’t the security updates you’re looking for…

Another in our occasional series demystifying Latin American banking trojans The post Mekotio: These aren’t the security updates you’re looking for… appeared first on WeLiveSecurity

UPDATE: Canon Ransomware Attack Results in Leaked Data, Report
Microsoft Defender casts a jaundiced eye over Citrix, slams services in quarantine on suspicion of being malware
Instagram Retained Deleted User Data Despite GDPR Rules

Several security issues were fixed in Salt.

Oracle and Salesforce targeted in €10bn GDPR lawsuit backed by profit-making litigation fund

An update that solves one vulnerability and has four fixes is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

CREST: We are investigating NCC Group certification cheat sheet scandal – and not with NCC personnel
Australian government wants power to run cyber-response for businesses under attack
This NSA, FBI security advisory has four words you never want to see together: Fancy Bear Linux rootkit

Patch for CVE-2020-17353

Security fix for CVE-2019-20907, CVE-2020-14422. Provide a versioned pathfix3.7.py command.

NSA, FBI Warn of Linux Malware Used in Espionage Attacks

security update

CactusPete APT Hones Toolset, Resurfaces with New Espionage Targets
Vivaldi composes sweet ad-blocking symphony for users of browser’s Android version
Tor and anonymous browsing – just how safe is it?
What is the cost of a data breach?

The price tag is higher if the incident exposed customer data or if it was the result of a malicious attack, an annual IBM study finds The post What is the cost of a data breach? appeared first on WeLiveSecurity

Zoom Faces More Legal Challenges Over End-to-End Encryption
New Global Threat Landscape Report Reveals ‘Unprecedented’ Cyberattacks
ReVoLTE Attack Allows Hackers to Listen in on Mobile Calls
High-Severity TinyMCE Cross-Site Scripting Flaw Fixed

An update that contains security fixes can now be installed.

An update that solves one vulnerability and has three fixes is now available.

An update that solves two vulnerabilities and has 6 fixes is now available.

An update that fixes 5 vulnerabilities is now available.

Several security issues were fixed in Apache HTTP Server.

An update that fixes 6 vulnerabilities is now available.

Amazon Alexa ‘One-Click’ Attack Can Divulge Personal Data
You weren’t hacked because you lacked space-age network defenses. Nor because cyber-gurus picked on you. It’s far simpler than that
Twitter working to fix issue with 2FA feature

An apparent glitch is preventing a number of users from signing into their accounts The post Twitter working to fix issue with 2FA feature appeared first on WeLiveSecurity

Citrix Warns of Critical Flaws in XenMobile Server

An update that solves two vulnerabilities and has 6 fixes is now available.

An update that fixes two vulnerabilities is now available.

An update that contains security fixes can now be installed.