Menu

Category Archives: Security

Articles about security

“Love you” malspam gets a makeover for massive Japan-targeted campaign

ESET researchers have detected a substantial new wave of the “Love you” malspam campaign, updated to target Japan and spread GandCrab 5.1 The post “Love you” malspam gets a makeover for massive Japan-targeted campaign appeared first on WeLiveSecurity

Exposed! Facebook pays teenagers to install app that harvests personal data

Reading Time: ~4 min. Like many technology companies, Webroot is constantly on the hunt for a diverse pool of engineering and technical cybersecurity talent. According to Jon Oltsik, senior principal analyst with Enterprise Security Group, a cybersecurity skills deficit holds the top position for problematic skills in ESG’s annual survey of IT professionals. In fact, the […]

LinuxSecurity.com: New mozilla-firefox packages are available for 14.2 and -current to fix security issues.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Update to mingw-qt5-*-5.11.3, see http://blog.qt.io/blog/2018/12/04/qt-5-11-3-released-important-security-updates/ for details. Update to mingw-sip-4.19.13, see https://www.riverbankcomputing.com/static/Downloads/sip/ChangeLog for details.

LinuxSecurity.com: Security fix for CVE-2019-6706.

You think election meddling is bad now? Buckle up for 2020, US intel chief tells Congress
And it’s go, go, go for class-action lawsuits against Equifax after 148m personal records spilled in that mega-hack
Japan to Hunt Down Citizens’ Insecure IoT Devices
2019 and Beyond: The (Expanded) RSAC Advisory Board Weighs in on What’s Next: Pt. 2
Judge! snuffs! Yahoo!’s attempt! to! settle! 2013! megahack! class-action!
Feds Dismantle Dark Web Credentials Market
Mozilla Firefox 65 Ups the Ante on Privacy with Anti-Tracking Efforts

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Apple takes Group FaceTime offline after discovery of spying bug

The company is rushing to fix a glitch that may let other iPhone users hear and see you – before you answer the call The post Apple takes Group FaceTime offline after discovery of spying bug appeared first on WeLiveSecurity

Hey boffin, take a walk on the wild side: Stuffy academics need to let out their inner black hat
Apple Disables Group FaceTime Following Major Privacy Glitch
Singapore fingers deported fraudster for leak of list of thousands of HIV+ people

Reading Time: ~4 min. It’ll cost you a buck. Just like everyone else’s. The use of a Social Security Number (SSN) as unique identifiers has long been a contentious subject. SSNs were never intended to be used for identification, and their ubiquitous abuse for identification and authentication has lead me to call them “Social Insecurity […]

Hear me out! Thousands tell UK taxman to wipe their voice IDs

Even so, the database has grown to seven million voiceprints amid a controversy that puts the spotlight on the privacy implications of the collection of biometric information The post Hear me out! Thousands tell UK taxman to wipe their voice IDs appeared first on WeLiveSecurity

Mozilla security policy cracks down on creepy web trackers, holds supercookies over fire
The race to lock down industrial control systems | Salted Hash Ep 44
I helped catch Silk Road boss Ross Ulbricht: Undercover agent tells all
Did you know? Monday was Data Privacy Day. Now it’s Tuesday. Back to business as usual!
Q. What do you call an IT admin for 20-plus young children? A. A teacher
Apple races to fix FaceTime bug that lets you spy on someone *before* they pick up your call

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

PSA: Disable FaceTime. Miscreants can snoop on your iPhone, Mac mic before you pick up call

LinuxSecurity.com: Several issues in wireshark, a network traffic analyzer, have been found. Dissectors of – ISAKMP, a Internet Security Association and Key Management Protocol

2019 and Beyond: The (Expanded) RSAC Advisory Board Weighs in on What’s Next

Reading Time: ~4 min. This is the first of a three-part report on the state of three malware categories: miners, ransomware and information stealers. In Webroot’s 2018 mid-term threat report, we outlined how cryptomining, and particularly cryptojacking, had become popular criminal tactics over the first six months of last year. This relatively novel method of cybercrime […]

Dailymotion Fights Ongoing Credential-Stuffing Attack

Risk Level: Very Low. Type: Trojan.

Active Scans Target Vulnerable Cisco Routers for Remote Code-Execution
WordPress Users Urged to Delete Zero-Day-Ridden Plugin
Russia hit by new wave of ransomware spam

Among the increased number of malicious JavaScript email attachments observed in January 2019, ESET researchers have spotted a large wave of ransomware-spreading spam targeting Russian users The post Russia hit by new wave of ransomware spam appeared first on WeLiveSecurity

User of the world’s biggest DDoS-for-hire website? Police say they’re coming after you
Suspected GDPR violations prompt over 95,000 complaints

Eight months after the landmark rules came into effect, data released by the European Commission provides a glimpse into the law’s application The post Suspected GDPR violations prompt over 95,000 complaints appeared first on WeLiveSecurity

Thousands of taxpayers tell HMRC to delete voiceprint data it stored without consent

LinuxSecurity.com: Several issues were discovered in qtbase-opensource-src, a cross-platform C++ application framework, which could lead to denial-of-service via application crash. Additionally, this update fixes a problem affecting vlc, where it would start without a GUI.

LinuxSecurity.com: Multiple vulnerabilities were discovered in coTURN, a TURN and STUN server for VoIP. CVE-2018-4056

Q. What connects the global financial crisis, Ursnif malware, and Coldplay’s Viva la Vida?

security update

security update

LinuxSecurity.com: Tavis Ormandy discovered a vulnerability in Ghostscript, the GPL PostScript/PDF interpreter, which may result in denial of service or the execution of arbitrary code if a malformed Postscript file is processed (despite the -dSAFER sandbox being enabled).

LinuxSecurity.com: The package nasm before version 2.14.02-1 is vulnerable to denial of service.

LinuxSecurity.com: The package haproxy before version 1.9.0-1 is vulnerable to denial of service.

LinuxSecurity.com: The package matrix-synapse before version 0.34.1.1-1 is vulnerable to private key recovery.

LinuxSecurity.com: The package powerdns-recursor before version 4.1.9-1 is vulnerable to multiple issues including insufficient validation and access restriction bypass.

LinuxSecurity.com: The package apache before version 2.4.38-1 is vulnerable to multiple issues including denial of service and insufficient validation.

LinuxSecurity.com: The package go before version 2:1.11.5-1 is vulnerable to private key recovery.

LinuxSecurity.com: The package go before version 2:1.11.5-1 is vulnerable to private key recovery.

Miscreants sweep internet for unpatched Cisco kit, fears over bugged Chinese parts, Roger Stone nabbed…

LinuxSecurity.com: New version 2.6.6. Security fix for CVE-2019-5716, CVE-2019-5717, CVE-2019-5718, CVE-2019-5719

security update

LinuxSecurity.com: krb5, a MIT Kerberos implementation, had several flaws in LDAP DN checking, which could be used to circumvent a DN containership check by supplying special parameters to some calls.

LabKey Vulnerabilities Threaten Medical Research Data
Whats(goes)App must come down… World in shock as Zuck decides to intertwine Facebook, Instagram, WhatsApp
Six Flags fingerprinted my son without consent, says mom. Y’know, this biometric case has teeth, say state supremes…
Threatpost News Wrap Podcast For Jan. 25
Phishing Campaign Delivers Nasty Ransomware, Credential-Theft Two-Punch
SD-WAN admin? Your number came up in Cisco’s latest bug list
Razy Malware Attacks Browser Extensions to Steal Cryptocurrency

Reading Time: ~2 min. Anatova Ransomware Reaches Global Market A new ransomware family, dubbed Anatova by researchers, has been infecting machines across the globe. During encryption, Anatova appears to focus on small files to speed up overall encryption times, but doesn’t append the encrypted files with a new extension. Unexpectedly, this variant demands DASH crypto […]

UK-EU infosec data sharing may not be KO’d by Brexit, reckons ENISA bod
Colorado police encrypt *all* their radio communications, frustrating journalists
Just keep slurping: HMRC adds two million taxpayers’ voices to biometric database
B&Q data leak exposes information on 70,000 thefts from its stores, including names of suspected offenders

LinuxSecurity.com: The PostgreSQL project has release a new minor release of the 9.4 branch. For Debian 8 “Jessie”, this has been uploaded as version

Business payroll compromise – a new way for criminals to steal from your company
Data hackers are like toilet ninjas. This is not a clean crime, you know

LinuxSecurity.com: New Version

You’re an admin! You’re an admin! You’re all admins, thanks to this Microsoft Exchange zero-day and exploit
A picture tells a 1,000 words. Pixels pwn up to 5 million nerds: Crims use steganography to stash bad code in ads
Fighting Fire with Fire: API Automation Risks

LinuxSecurity.com: Ghostscript could be made to crash, access files, or run programs if it opened a specially crafted file.

LinuxSecurity.com: Several security issues were fixed in MySQL.

LinuxSecurity.com: A vulnerability in the HTML_QuickForm package has been found which potentially allows remote code execution. References: – https://bugs.mageia.org/show_bug.cgi?id=24185

LinuxSecurity.com: It was discovered that libcaca incorrectly handled certain images. An attacker could possibly use this issue to cause a denial of service (CVE-2018-20544). It was discovered that libcaca incorrectly handled certain images. An

LinuxSecurity.com: An issue has been found in PowerDNS Recursor where Lua hooks are not properly applied to queries received over TCP in some specific combination of settings, possibly bypassing security policies enforced using Lua (CVE-2019-3806).

Risk Level: Very Low. Type: Trojan.

ThreatList: Credential-Sniffing Phishing Attacks Erupted in 2018
Passwords at risk for users who fall for Eileen’s cousin’s voicemail
Colour us shocked: Google in €50m GDPR fine appeal bombshell
Bit-and-Piece DDoS Method Emerges to Torment ISPs
DarkHydrus Phishery tool spreading malware using Google Drive
Malicious apps deploy Anubis banking trojan using motion detection
World’s favourite open-source PDF interpreter needs patching (again)
Can you spot the phish? Take Google’s test

Everybody loves quizzes. So why not take this one and hone your phish-spotting prowess? The post Can you spot the phish? Take Google’s test appeared first on WeLiveSecurity