Menu

Category Archives: Security

Articles about security

Change your password: Docker suffers breach; 190k users affected
America’s anti-hacking laws are so loose, even Donald Trump Jr broke them. So, what do we do about it?
Malware Infests Popular Pirate Streaming Hardware

security update

MuddyWater APT Hones an Arsenal of Custom Tools
Apple Defends Parental Control App Removal Amid Backlash
Hackers targeting embassies with trojanized version of TeamViewer
5 Cybersecurity Best Practices You Should Be Following Right Now
Docker Hub Hack Affects 190K Accounts

An update that fixes two vulnerabilities is now available.

2 Million IoT Devices Vulnerable to Complete Takeover
Scammer posed as actor Jason Statham to steal from fan
Brit events and info biz Incisive Media admits open server port may have left readers deets exposed

An update that solves one vulnerability and has four fixes is now available.

An update that solves two vulnerabilities and has three fixes is now available.

An update that fixes two vulnerabilities is now available.

An update that solves 11 vulnerabilities and has one errata is now available.

An update for rh-python35-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Evince could be made to expose sensitive information if it receiveda specially crafted file.

GStreamer Base Plugins could be made to crash or run programs if it received specially crafted network traffic.

Several security issues were fixed in MySQL.

Train up to navigate the diverse, chaotic cyber security landscape at SANS Munich

An update that solves one vulnerability and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

Powershell, the Gandcrab infection and the long-forgotten server
Watch: Hackers send explicit messages to riders on hacked e-scooters

An update that fixes 16 vulnerabilities is now available.

An update that fixes 7 vulnerabilities is now available.

An update that fixes four vulnerabilities is now available.

An update that solves 8 vulnerabilities and has one errata is now available.

An update that fixes 8 vulnerabilities is now available.

An update that fixes 6 vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that solves 5 vulnerabilities and has three fixes is now available.

An update that fixes one vulnerability is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that solves one vulnerability and has three fixes is now available.

7 Times Apple Watch Saved Lives

An update that solves one vulnerability and has two fixes is now available.

An update that solves one vulnerability and has one errata is now available.

An update that solves one vulnerability and has one errata is now available.

An update that solves one vulnerability and has one errata is now available.

So, how’s Facebook going to screw us next?
Docker Hub security breach exposes credentials of 190,000 users

A use-after-free vulnerability was discovered in the png_image_free() function in the libpng PNG library, which could lead to denial of service or potentially the execution of arbitrary code if a malformed image is processed.

security update

An update that solves 13 vulnerabilities and has one errata is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Reading Time: ~4 min. Today we chat with Web Analyst Manager Serena Peruzzi. Serena constantly filters through the web to analyze content. Sometimes her position requires looking through difficult material, but other times you can find her traveling, organizing company events, and even gardening!   See how Serena helps build Webroot’s company culture in this Employee […]

Users Urged to Disable WordPress Plugin After Unpatched Flaw Disclosed

Zack Flack found several issues in monit, a utility for monitoring and managing daemons or similar programs.

Hanno Bck discovered that GNOME Evolution is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted HTML email. This issue was mitigated by moving the security

News Wrap: Amazon Echo Privacy, Facebook FTC Fines and Biometrics Regulation
GoDaddy Shutters 14,000 Subdomains Tied to ‘Snake Oil’ Scams
Thousands of firms hit by Beapy malware using NSA hacking tools
Critical Flaws in Sierra Wireless 5G Gateway Allow RCE, Command Injection

Reading Time: ~2 min. Hackers Breach Private Keys to Steal Cryptocurrency A possible coding error allowed hackers to compromise at least 732 unique, improperly secured private keys used in the Ethereum blockchain. By exploiting a vulnerability, hackers have successfully stolen 38,000 Ethereum coins so far, translating to over $54 million in stolen funds, though the […]

An update that fixes two vulnerabilities is now available.

Facial Recognition ‘Consent’ Doesn’t Exist, Threatpost Poll Finds

An update that solves three vulnerabilities and has four fixes is now available.

In the recently uploaded systemd security update (215-17+deb8u12 via DLA-1762-1), a regression was discovered in the fix for CVE-2017-18078.

Thank you, your DNA data will help secure your… oh dear, we’ve lost that too
There’s NordVPN odd about this, right? Infosec types concerned over strange app traffic

An update that solves two vulnerabilities and has three fixes is now available.

An update that fixes one vulnerability is now available.

Zuck it up: Facebook hit with triple whammy of legal probes, action in Canada, US, Ireland
NSA: That ginormous effort to slurp up Americans’ phone records that Snowden exposed? Ehhh, we don’t need that no more
Android-Based Sony Smart-TVs Open to Image Pilfering
Ride-hailing app leaks personal data of millions of Iranians

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has 5 fixes is now available.

Microsoft: Yo dawg, we heard you liked Windows password expiry policies. So we expired your expiry policy
BEC fraud losses almost doubled last year

On the good news front, the FBI notes the success of its newly-established team in recovering some of the funds lost in BEC scams The post BEC fraud losses almost doubled last year appeared first on WeLiveSecurity

Avengers: End Game leaked online soon after releasing in China
Amazon Employees Given ‘Broad Access’ to Personal Alexa Info
Qualcomm Critical Flaw Exposes Private Keys For Android Devices
Operation ShadowHammer: Hackers planted malware code in video games

An update that solves 13 vulnerabilities and has one errata is now available.

An update that solves one vulnerability and has four fixes is now available.

An update that fixes 6 vulnerabilities is now available.

An update that fixes 6 vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

It was discovered that there was a path traversal vulnerability in the “mercurial” distributed revision version control system. Symbolic links and subrepositories could be used defeat Mercurial’s

Hacker could locate thousands of cars and kill their engines remotely via poorly-secured GPS tracking apps

Reading Time: ~3 min. Public concern about online privacy and security is rising, and not without reason. High-profile data breaches make headlines almost daily and tax season predictably increases instances of one of the most common types of identity theft, the fraudulent filings for tax returns known as tax-related identity theft.  As a result, more than half of global internet users are more concerned about their safety than […]

DNSpionage group’s Karkoff malware selectively pick victims

An update that solves two vulnerabilities and has four fixes is now available.

An update that fixes one vulnerability is now available.

It’s your what in a box? Here’s a thing to make your bosses think about malware responses
Smashing Security #125: Pick of the thief!
Over 23 million breached accounts used ‘123456’ as password

The notorious six-digit string continues to ‘reign supreme’ among the most-hacked passwords The post Over 23 million breached accounts used ‘123456’ as password appeared first on WeLiveSecurity

Bind could be made to consume resources if it received specially crafted network traffic.

tcpflow could be made to crash or expose sensitive information over the network if it opened a specially crafted file or received specially crafted network traffic.

Several security issues were fixed in PHP.

Updated Red Hat AMQ Clients 2.3.1 packages are now available. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability