Menu

Category Archives: Security

Articles about security

Looking for good news on COVID-19? That’s exactly what cyber attackers want you to do
Become a security intelligence expert, with these free tools from Recorded Future
Home Depot Confirms Data Breach in Order Confirmation SNAFU
Oracle WebLogic Server RCE Flaw Under Active Attack

An update that fixes one vulnerability is now available.

An update that fixes four vulnerabilities is now available.

An update that solves one vulnerability and has three fixes is now available.

An update that solves one vulnerability and has three fixes is now available.

An update that fixes three vulnerabilities is now available.

Lenovo to slap ThinkShield security standard for laptop line-up on its Motorola mobiles
Bug-Bounty Awards Spike 26% in 2020

Two issues have been found in dompurify.js, an XSS sanitizer for HTML, MathML and SVG. Both issues are related to mXSS issues in SVG- or MATH-elements.

Smashing Security podcast #202: The Wu-Tang Clan are Among Us
Xfinity, McAfee Brands Abused by Parked Domains in Active Campaigns
Can we stop megacorps from using and abusing our data? That ship has sailed, ex-NSA lawyer argues in new book
French services outfit Atos told to pay $855m in trade secret pinching case
Malware never switches off – so why should your security supplier?
NSA: We’ve learned our lesson after foreign spies used one of our crypto backdoors – but we can’t say how exactly
2 More Hospitals Hit by Growing Wave of Ransomware Attacks
Microsoft’s SMBGhost Flaw Still Haunts 108K Windows Systems

security update

‘Copyright Violation’ Notices Lead to Facebook 2FA Bypass
Open Source is Revolutionizing Careers in Cybersecurity – What You Need to Know>
Software engineer leaked UK missile system secrets and refused to hand cops his passwords, Old Bailey told
How the Pandemic is Reshaping the Bug-Bounty Landscape
Russian Espionage Group Updates Custom Malware Suite
Iran-linked APT Targets T20 Summit, Munich Security Conference Attendees
Three steps to data-centric security: Discovery, protection, and control
Election Security: How Mobile Devices Are Shaping the Way We Work, Play and Vote
Experian vows to drag UK’s Information Commissioner’s Office to court after being told off for data-slurping practices
North Korea-Backed Spy Group Poses as Reporters in Spearphishing Attacks, Feds Warn

Updated packages that provide Red Hat JBoss Core Services Pack Apache Server 2.4.37 and fix several bugs, and add various enhancements are now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact

Experts Weigh in on E-Commerce Security Amid Snowballing Threats

Red Hat JBoss Core Services Pack Apache Server 2.4.37 Service Pack 5 zip release for RHEL 6, RHEL 7, RHEL 8 and Microsoft Windows is available. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for openstack-cinder is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for openstack-selinux is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Trump Campaign Website Defaced by Cryptocurrency Scam

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Donald Trump’s website briefly defaced by cryptomining scammers
Trump’s official campaign website vandalized by hackers who ‘had enough of the President’s fake news’
India and USA to share high-quality satellite imagery and more under new pact
Lax Security Exposes Smart-Irrigation Systems to Attack Across the Globe  
Amazon Fires Employee Who Leaked Customer Names, Emails
Zoom finally adds end-to-end encryption for all, for free – though there are caveats
‘Among Us’ players hit by major spam attack

In-game chats were flooded with messages from somebody who tried to coerce players into subscribing to a dubious YouTube channel The post ‘Among Us’ players hit by major spam attack appeared first on WeLiveSecurity

Researchers: LinkedIn, Instagram Vulnerable to Preview-Link RCE Security Woes
Finnish therapy clinic’s CEO fired after despicable data breach and blackmail threats
Brit accused of spying on 772 people via webcam CCTV software tells court he’d end his life if extradited to US
Majority of Microsoft 365 Admins Don’t Enable MFA

An update that fixes one vulnerability is now available.

Amazon fires employee for leaking customer data
Code42 Incydr Series: Secure Data in the Age of Remote Work
Holiday Shopping Craze, COVID-19 Spur Retail Security Storm

An update is now available for Red Hat OpenShift Container Platform 4.6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Google Boots 21 Bogus Gaming Apps from Play Marketplace

Reading Time: ~ 4 min. For the third year running, we’ve examined the year’s biggest cyber threats and ranked them to determine which ones are the absolute worst. Somewhat unsurprisingly, phishing and RDP-related breaches remain the top methods we’ve seen cybercriminals using to launch their attacks. Additionally, while new examples of malware and cybercriminal tactics […]

Several security issues were fixed in Perl.

An update that fixes three vulnerabilities is now available.

An update for jenkins-2-plugins, openshift-clients, podman, runc, and skopeo is now available for Red Hat OpenShift Container Platform 4.6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Brit startup would like to beam 5G connectivity down at you from hydrogen-fuelled drones

An update is now available for Red Hat Satellite 6.8 for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Santander downplays ‘hack’ of PagoFX cash transfer biz, says nothing to worry about
Microsoft IE Browser Death March Hastens

security update

security update

‘Among Us’ Mobile Game Under Siege by Attackers
Containerd Bug Exposes Cloud Account Credentials
Hackers rummaged about in Finnish psychotherapy clinic – now patients extorted with public data dump threats
Vastaamo Breach: Hackers Blackmailing Psychotherapy Patients
Nando’s Hackers Feast on Customer Accounts
Report: UK colleges face testing times with ageing kit, iffy connectivity, and some IT staff supporting 1k+ users

Open Liberty 20.0.0.11 Runtime is now available from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

An update that fixes 16 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes two vulnerabilities is now available.

Sopra Steria confirms it was hit by new strain of Ryuk ransomware, will take weeks to return to normal operations

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes 5 vulnerabilities is now available.

Several vulnerabilities were found in package phpmyadmin. CVE-2019-19617

An update that solves one vulnerability and has two fixes is now available.

Update to freetype 2.10.4 which fixes security flaw CVE-2020-15999.

JavaScript-based address bar spoofing vulns patched in Safari, Yandex, Opera

Reading Time: ~ 5 min. October 21 is Wonder Woman Day. It commemorates Wonder Woman’s first appearance in All Star Comics #8. With the upcoming release of Wonder Woman 1984, we took the opportunity to talk superheroes, superpowers and protecting data with our very own Briana Butler, Engineering Services Manager at Webroot. Q: Wonder Woman […]

U.S. Levies Sanctions Against Russian Research Institution Linked to Triton Malware
IoT Device Takeovers Surge 100 Percent in 2020
Louisiana Calls Out National Guard to Fight Ransomware Surge
Election Security: Beyond Mail-In Voting
Georgia Election Data Hit in Ransomware Attack
Palo Alto Networks threatens to sue security startup for comparison review, says it breaks software EULA
Fraudsters crave loyalty points amid COVID‑19

Scammers even run their own dark-web “travel agencies”, misusing stolen loyalty points and credit card numbers The post Fraudsters crave loyalty points amid COVID‑19 appeared first on WeLiveSecurity

COVID-19 Vaccine-Maker Hit with Cyberattack, Data Breach
EU slaps extra sanctions on Russian spy chief and APT28 malware dev over 2015 Bundestag hack

An update that fixes two vulnerabilities is now available.

An update that solves one vulnerability and has four fixes is now available.

An update that fixes 13 vulnerabilities is now available.

An update that fixes one vulnerability is now available.