Menu

Category Archives: Security

Articles about security

Closing the Security Gap: Navigating Modern Technology and Outdated Systems in Linux Security
Fortinet’s week to forget: Critical vulns, disclosure screw-ups, and that toothbrush DDoS attack claim
The ever-present state of cyber security alert

* bsc#1219048 Cross-References: * CVE-2023-50447

Several security issues were fixed in the Linux kernel.

Running Windows 11 and 2022 Server Virtual Machines in Red Hat OpenShift with persistent vTPM
Patch management needs a revolution, part 5: How open source and transparency can force positive change

Multiple denial of service vulnerabilities have been found in libxml2.

* bsc#1210638 Cross-References: * CVE-2023-27043

India to make its digital currency programmable
Crime gang targeted jobseekers across Asia, looted two million email addresses
Uncle Sam sweetens the pot with $15M bounty on Hive ransomware gang members

Upstream version 6.6.14 with many bugfixes and at least the following security fixes: An out-of-bounds read vulnerability was found in smb2_dump_detail in fs/smb/client/smb2ops.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.

fix gcc14 build error and another epub crash use https://github.com/mate-desktop/atril/commit/479e927 use https://github.com/mate-desktop/atril/commit/d901a9d update to 1.26.2 fix security security advisory

FBI: Give us warrantless Section 702 snooping powers – or China wins

https://security-tracker.debian.org/tracker/DSA-5619-1

Fake LastPass lookalike made it into Apple App Store
Round 3! The toothbrush DDoS attack saga continues: Newspaper counters Fortinet’s translation claim in contentious interview
Raspberry Robin devs are buying exploits for faster attacks
US insurance firms sound alarm after 66,000 individuals impacted by SIM swap attack
Surge in deepfake “Face Swap” attacks puts remote identity verification at risk
Cybercrime duo accused of picking $2.5M from Apple’s orchard

* bsc#1218303 Cross-References: * CVE-2023-6704

Tooth be told: Toothbrush DDoS attack claim was lost in translation, says Fortinet

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.

Rust can help make software secure – but it’s no cure-all

Several security issues were fixed in the Linux kernel.

IT suppliers hacked off with Uncle Sam’s demands in aftermath of cyberattacks
Smashing Security podcast #358: Hong Kong hijinks, pig butchers, and poor ransomware gangs

https://security-tracker.debian.org/tracker/DSA-5617-1

Several security issues were fixed in the Linux kernel.

Volt Typhoon not the only Chinese crew lurking in US energy, critical networks
The toothbrush DDoS attack: How misinformation spreads in the cybersecurity world
Half of polled infosec pros say their degree was less than useful for real-world work

* bsc#1216044 * bsc#1217522 * bsc#1218255 Cross-References:

New expat packages are available for Slackware 15.0 and -current to fix security issues.

US says China’s Volt Typhoon is readying destructive cyberattacks
Iran’s cyber operations in Israel a potential prelude to US election interference
Raspberry Pi Pico cracks BitLocker in under a minute
JetBrains urges swift patching of latest critical TeamCity flaw

* bsc#1217522 * bsc#1218255 Cross-References: * CVE-2023-6176

* bsc#1210619 Cross-References: * CVE-2023-1829

Red Hat and RISC-V: To the far edge and beyond
eBPF wrapped 2023
Martin Hellman: We’re playing Russian roulette
The spyware business is booming despite government crackdowns

* bsc#1218255 Cross-References: * CVE-2023-6932

* bsc#1217522 * bsc#1218255 Cross-References: * CVE-2023-6176

* bsc#1210619 * bsc#1218255 Cross-References: * CVE-2023-1829

* bsc#1210619 Cross-References: * CVE-2023-1829

DEF CON is canceled! No, really this time – but the show will go on
Mozilla adds paid-for data-deletion tier to Monitor, its privacy-breach radar
MuleSoft unveils policy development kit for API gateway

https://security-tracker.debian.org/tracker/DSA-5616-1

Verizon says 63K employees’ info fell into the wrong hands – an insider this time
Chinese Coathanger malware hung out to dry by Dutch defense department
EquiLend back in the saddle as ransom payment rumors swirl
Double trouble for Fortinet customers as pair of critical vulns found in FortiSIEM

* bsc#1217522 * bsc#1218255 Cross-References: * CVE-2023-6176

New kids on the ransomware block in 2023: Akira and 8Base lead dozens of newbies

The 6.7.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree.

The 6.7.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree.

QtWebEngine 5.15.16 bugfix update.

The 6.7.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree.

The 6.7.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree.

Google throws $1M at Rust Foundation to build C++ bridges
Ivanti devices hit by wave of exploits for latest security hole
Ignore Uncle Sam’s ‘voluntary’ cybersecurity goals for hospitals at your peril
AnyDesk revokes signing certs, portal passwords after crooks sneak into systems
Lurie Children’s Hospital back to pen and paper after cyberattack

Fixes CVE-2023-52339. No API or ABI changes.

update to 121.0.6167.139 * High CVE-2024-1060: Use after free in Canvas * High CVE-2024-1059: Use after free in WebRTC * High CVE-2024-1077: Use after free in Network

Update to 2.15.1.

Combined update for several fixes as well as security fix for CVE-2023-4001 “` Mon Jan 15 2024 Nicolas Frayer – 2.06-114 grub- core/commands: add flag to only search root dev Resolves: #2223437 Resolves: #2224951 Resolves: #2258096 Resolves: CVE-2023-4001 Sat Jan 13 2024 Hector Martin – 2.06-113 Switch memdisk compression to lzop

Fixes CVE-2023-52339. No API or ABI changes.

Security update for CVE-2024-23334 and CVE-2024-23829 https://github.com/aio- libs/aiohttp/releases/tag/v3.9.2 https://github.com/aio- libs/aiohttp/releases/tag/v3.9.3

SBF likely off the hook for misplaced FTX funds after cops bust SIM swap ring
Red Hat Trusted Artifact Signer with Enterprise Contract: Trustable container images
Accessing Azure blob storage with Red Hat OpenShift sandboxed containers peer-pods

Multiple vulnerabilities have been found in NBD Tools, the worst of which could result in arbitary code execution.

Multiple out-of-bounds read vulnerabilities have been discovered in Wireshark.

Multiple vulnerabilities have been found in OpenSSL, the worst of which could result in denial of service.

Multiple vulnerabilities have been found in Xen, the worst of which can lead to arbitrary code execution.

The updated packages fix security vulnerabilities: A heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when the openlog function was not called, or called with the ident argument set to NULL, and the program

Out of bounds write in ANGLE. (CVE-2024-0741) Failure to update user input timestamp. (CVE-2024-0742) Crash when listing printers on Linux. (CVE-2024-0746)

https://security-tracker.debian.org/tracker/DSA-5615-1

Grandoreiro banking malware disrupted – Week in security with Tony Anscombe

The banking trojan, which targeted mostly Brazil, Mexico and Spain, blocked the victim’s screen, logged keystrokes, simulated mouse and keyboard activity and displayed fake pop-up windows

Researchers remotely exploit devices used to manage safe aircraft landings and takeoffs

Sudo, a program designed to allow a sysadmin to give limited root privileges to users and log root activity, was vulnerable. CVE-2023-7090

Multiple vulnerabilities have been discovered in FreeType, the worst of which can lead to remote code execution.

Multiple vulnerabilities have been discovered in Microsoft Edge, the worst of which could lead to remote code execution.

A vulnerability has been discovered in GNAT Ada Suite which can lead to remote code execution.

Multiple vulnerabilities have been discovered in QtGui which can lead to remote code execution.

A vulnerability has been discovered in SDDM which can lead to privilege escalation.

https://security-tracker.debian.org/tracker/DSA-5614-1

Blackbaud settles with FTC after that IT breach exposed millions of people’s info

https://security-tracker.debian.org/tracker/DSA-5613-1

Critical vulnerability in Mastodon is pounced upon by fast-acting admins
FTC slams Blackbaud for “shoddy security” after hacker stole data belonging to thousands of non-profits and millions of people
China is hacking Wi-Fi routers for attack on US electrical grid and water supplies, FBI warns