Menu

Category Archives: Security

Articles about security

‘PwnKit’ vulnerability exploited in the wild: How Red Hat responded

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

An update that fixes one vulnerability is now available.

U.S. Healthcare Orgs Targeted with Maui Ransomware
Microsoft rolls back default macro blocks in Office without telling anyone
Time to rethink data protection for cloud workloads

security update

Five accused of trying to silence China critics in US
Someone may be ramping up an NPM crypto-mining spree
8 common Facebook Marketplace scams and how to avoid them

Here’s what to watch out for when buying or selling stuff on the online marketplace and how to tell if you’re being scammed The post 8 common Facebook Marketplace scams and how to avoid them appeared first on WeLiveSecurity

The agent of successful cyber security defense
Chromium’s WebRTC zero-day fix arrives in Microsoft Edge
Lockdown Mode: Apple to protect users from targeted spyware attacks
IT reseller giant SHI International knocked offline by cyberattack
Hack Allows Drone Takeover Via ‘ExpressLRS’ Protocol

An update that contains security fixes can now be installed.

An update that fixes two vulnerabilities is now available.

Smashing Security podcast #282: Raising money through ransomware, China’s mega-leak, and hackers for hire

An update that fixes 10 vulnerabilities is now available.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

Several security issues were fixed in NSS.

Tech world may face huge fines if it doesn’t scrub CSAM from encrypted chats
FBI and MI5 bosses: China cheats and steals at massive scale
SANS Institute spells out security in multiple languages
Here today, gone to Maui: That’s your data captured by North Korean ransomware

security update

Social engineering attacks like phishing, baiting and scareware have skyrocketed to take the top spot as the #1 cause of cybersecurity breaches. So what makes social engineering so effective? When cybercriminals use social engineering tactics, they prey on our natural instinct to help one another. And as it turns out, those instincts are so strong […]

Hive ransomware gang rapidly evolves with complex encryption, Rust code
Being hit with a cyber-attack is bad. Not having a recovery plan is worse
Typo-squatting NPM software supply chain attack uncovered
Marriott Hotels admits to third data breach in 4 years
Comprehensive risk-based API protection with AppTrana

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that fixes one vulnerability is now available.

An update that fixes 9 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Human Error Blamed for Leak of 1 Billion Records of Chinese Citizens
Multi-cloud doesn’t have to mean multi problems for data protection
Near-undetectable malware linked to Russia’s Cozy Bear
AstraLocker ransomware reportedly closes doors to pursue cryptojacking
Actual quantum computers don’t exist yet. The cryptography to defeat them may already be here

security update

security update

Pentagon: We’ll pay you if you can find a way to hack us
Cyberattacks: A very real existential threat to organizations

One in five organizations have teetered on the brink of insolvency after a cyberattack. Can your company keep hackers at bay? The post Cyberattacks: A very real existential threat to organizations appeared first on WeLiveSecurity

Calls for bans on Chinese CCTV makers Hikvision, Dahua expand
How to spot your biggest security threat? Just look out for the humans
Latest Cyberattack Against Iran Part of Ongoing Campaign
Germany unveils plan to tackle cyberattacks on satellites
Google Patches Actively Exploited Chrome Bug

GnuPG could allow forged signatures.

OpenSSL could be made to expose sensitive information over the network.

An update that fixes four vulnerabilities is now available.

Which Browser is Best for Online Security?
Deprecated Linux Commands You Should Not Use Anymore (And Their Alternatives)
Cybersecurity Experts Warn of Emerging Threat of “Black Basta” Ransomware
Alibaba’s finance arm open sources its privacy software and a ‘Secure Processing Unit’
Dutch University retrieves Bitcoin ransomware payment and makes a profit

The container suse/sle15 was updated. The following patches have been included in this update:

Billion-record stolen Chinese database for sale on breach forum

The container bci/python was updated. The following patches have been included in this update:

The container bci/nodejs was updated. The following patches have been included in this update:

Google updates Chrome to squash actively exploited WebRTC Zero Day

security update

security update

How To Hide Your IP And Keep From Being Tracked

An update that solves three vulnerabilities and has three fixes is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that fixes one vulnerability is now available.

Several security issues were fixed in PHP.

Official British Army Twitter and YouTube accounts hijacked by NFT scammers
Identity, trust, and their role in modern applications

An update for rh-php73-php is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

British Army Twitter and YouTube feeds hijacked by crypto-promos

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

What to do about inherent security flaws in critical infrastructure?

An update that fixes 5 vulnerabilities is now available.

Watch out for survey scams – Week in security with Tony Anscombe

As scammers continue to ask people to take fake surveys, can you recognize some common telltale signs you’re dealing with a scam? The post Watch out for survey scams – Week in security with Tony Anscombe appeared first on WeLiveSecurity

Phishing scam poses as Canadian tax agency before Canada Day

The lead-up to the Canada Day festivities has brought a tax scam with it The post Phishing scam poses as Canadian tax agency before Canada Day appeared first on WeLiveSecurity

How is Red Hat addressing the demand to develop offerings more securely?
Obsolescence of ATO Pathways
Google location tracking to forget you were ever at that medical clinic

The container suse/sles12sp5 was updated. The following patches have been included in this update:

The container suse/sles12sp4 was updated. The following patches have been included in this update:

The container suse/sles12sp3 was updated. The following patches have been included in this update:

Cyberattack shuts down unemployment, labor websites across the US

An update that fixes four vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes 5 vulnerabilities is now available.

Crypto sleuths pin $100 million Harmony theft on Lazarus Group
FTC warns LGBTQ+ community of extortion scams targeting them on dating apps
AMD held to ransom by gang that claims 450GB of data has been stolen

This update upgrades Thunderbird to version 91.11. * Mozilla: CSP sandbox header without `allow-scripts` can be bypassed via retargeted javascript: URI (CVE-2022-34468) * Mozilla: Use-after-free in nsSHistory (CVE-2022-34470) * Mozilla: A popup window could be resized in a way to overlay the address bar with web content (CVE-2022-34479) * Mozilla: Memory safety bugs fixed in […]