Menu

Category Archives: Security

Articles about security

Newsmaker Interview: Derek Manky on ‘Self-Organizing Botnet Swarms’
Fortnite Android App Falls Victim to Man-in-the-Disk Flaw
Google finds flaw in Android Fortnite’ Installer leading to malware installation
You are not alone; The Pirate Bay is down for everyone
T-Mobile data breach: Personal data of 2 million users stolen
Fortnite fury over how Google handled its huge security hole
Why now could be a good time to fortify your Android defenses

Stop us if you’ve heard this before: avoid installing apps from outside Google Play. But what if you’re itching to battle it out in Fortnite? The post Why now could be a good time to fortify your Android defenses appeared first on WeLiveSecurity

US Election Hack Whistleblower Gets Five Years
Cheddar’s Scratch Kitchen Chain Suffers Data Breach
Voting machine maker vows to step up security, Fortnite bribes players to do 2FA – and more

LinuxSecurity.com: An update for rh-postgresql96-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for rh-postgresql10-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes 31 vulnerabilities is now available.

Risk Level: Very Low. Type: Trojan.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that contains security fixes can now be installed.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

99% of Texas Voter Records Exposed
It’s The Season For A Lot Of Interesting Linux / Open-Source Conferences
T-Mobile, AT&T customer account PINs were exposed by website flaws

LinuxSecurity.com: CVE-2018-15501 A potential out-of-bounds read when processing a “ng” smart packet might lead to a Denial of Service.

You can now run Windows 95 on your Mac, Linux and Windows 10 devices
The GDPR Ripple Effect
T-Mobile Hacked – 2 Million Customers’ Personal Data Stolen

LinuxSecurity.com: An update that solves four vulnerabilities and has one errata is now available.

LinuxSecurity.com: An update that fixes four vulnerabilities is now available.

PoC Code Surfaces to Exploit Apache Struts 2 Vulnerability
Now that’s a fortune cookie! Facebook splats $5k command-injection bug in one of its servers
Following Facebook and Twitter, Google Targets Iranian Influence Operation
Mirai Variant Cross-Compiles Attack Code with Aboriginal Linux
Well, can’t get hacked if your PC doesn’t work… McAfee yanks BSoDing Endpoint Security patch

LinuxSecurity.com: Spice could be made to crash if it received specially crafted network traffic.

LinuxSecurity.com: postgresql: Certain host connection parameters defeat client-side security defenses (CVE-2018-10915) SL7 x86_64 postgresql-debuginfo-9.2.24-1.el7_5.i686.rpm postgresql-debuginfo-9.2.24-1.el7_5.x86_64.rpm postgresql-libs-9.2.24-1.el7_5.i686.rpm postgresql-libs-9.2.24-1.el7_5.x86_64.rpm postgresql-9.2.24-1.el7_5.i686.rpm postgresql-9.2.24-1.el7_5.x86_64.rpm postgre [More…]

LinuxSecurity.com: An update for postgresql is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

T-Mobile Alerts 2.3 Million Customers of Data Breach Tied to Leaky API
Uni credential-swiping hack campaign linked to Iranian government
Cross-Site Scripting Flaw in Apache ActiveMQ Threatens Web Visitors

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

Medical records of high school students leaked in ‘appalling’ data breach
Breach exposed details of 2 million T-Mobile US customers – report
Hackers have stolen details of two million T-Mobile customers
Chap asks Facebook for data on his web activity, Facebook says no, now watchdog’s on the case

Reading Time: ~2 min.Dark Tequila Targets Mexican Financial Organizations Over the past 5 years, one malware campaign has been plaguing the financial industries of Mexico: Dark Tequila. While many researchers have been monitoring samples for most of that time, only recently has the entire campaign come into focus, with over 30,000 unique targets in 2018 […]

Back to school soon – for script kiddies as well as normal kids. Hackers peddle cybercrime e-classes via Telegram

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

LinuxSecurity.com: Several security issues were fixed in the Linux kernel.

Wickr gets slicker with fresh network tricker: Privacy-protecting domain fronting alternative emerges
Nork hackers Lazarus brought back to life by AppleJeus to infect Macs for the first time
Cheddar’s Restaurants Bitten By Credit-Card Breach
ThreatList: $1.1M is Lost to Cybercrime Every Minute of Every Day

security update

AdvisorsBot Downloader Emerges in Raft of Malware Campaigns
Winner, Winner, prison dinner: Five years in the clink for NSA leaker
Intel rips up microcode security fix license that banned benchmarking

LinuxSecurity.com: An update for openstack-keystone is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: Pango could be made to crash if it opened a specially crafted file.

LinuxSecurity.com: Several security issues were fixed in Spidermonkey.

LinuxSecurity.com: An update that solves two vulnerabilities and has 21 fixes is now available.

Apache Struts 2 Flaw Uncovered: ‘More Critical Than Equifax Bug’
Recent App Issues Reveal Facebook’s Struggles to Temper Data Privacy Woes
Facebook pulls its VPN from the iOS App Store after data-harvesting accusations
Facebook pulls ‘snoopy’ Onavo VPN from Apple’s App Store after falling foul of rules
Security and Artificial Intelligence: Hype vs. Reality
Google warns businesses of government-backed phishing attacks
Augusta University Health data breach: Private data of over 417,000 individuals exposed
DNC: Highly Publicized ‘Phishing Attempt’ Was Only a Security Test
US Democrats call in Feds: There’s something phishy going on with our voter database
Superdrug targeted by miscreants who claim to have stolen customer data

The retailer says that whatever data the crooks have obtained, they weren’t stolen through a breach of its systems The post Superdrug targeted by miscreants who claim to have stolen customer data appeared first on WeLiveSecurity

Hacker holds the data of 20,000 Superdrug customers to ransom
Hackers Use Public Cloud Features to Breach, Persist In Business Networks
Smashing Security #092: Hacky sack hack hack
Detecting bot attacks | Salted Hash Ep 44
Unencrypted laptop exposes personal details of 37,000 Eir customers, faulty security update blamed
If it doesn’t need to be connected, don’t: Nurse prescribes meds for sickly hospital infosec
Whoa, is it Patch Tuesday already? No, just an unexpected critical Photoshop fix
When something’s weird in your ImageMagick upload, who ya gonna call? Ghostbusters!

Risk Level: Very Low.

Everyone screams patch ASAP – but it takes most organizations a month to update their networks
Apache’s latest SNAFU – Struts normal, all fscked up: Web app framework needs urgent patching
DNC Becomes Latest Target in Series of Election-Season Attacks

LinuxSecurity.com: An update is now available for Red Hat OpenShift Application Runtimes. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

LinuxSecurity.com: An update is now available for Red Hat OpenShift Application Runtimes. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

One-in-two JavaScript project audits by NPM tools sniff out at least one vulnerability…
Unpatched Ghostscript Flaws Allow Remote Takeover of Systems

LinuxSecurity.com: The security update announced as DSA 4279-1 caused regressions on the ARM architectures (boot failures on some systems). Updated packages are now available to correct this issue.

LinuxSecurity.com: An update for openstack-keystone is now available for Red Hat OpenStack Platform 13.0 (Queens). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: mutt: Remote code injection vulnerability to an IMAP mailbox (CVE-2018-14354) * mutt: Remote Code Execution via backquote characters (CVE-2018-14357) * mutt: POP body caching path traversal vulnerability (CVE-2018-14362) SL6 x86_64 mutt-1.5.20-9.20091214hg736b6a.el6.x86_64.rpm mutt-debuginfo-1.5.20-9.20091214hg736b6a.el6.x86_64.rpm i386 mutt-1.5.20-9.20091214hg736b6a.el6.i68 [More…]

LinuxSecurity.com: base-files could be made to hang or overwrite files as the administrator.

Researchers Blame ‘Monolithic’ Linux Code Base for Critical Vulnerabilities
Cisco smells a RAT in Breaking Security’s Remcos PC wrangler
Triout Malware Carries Out Extensive, Targeted Android Surveillance
Misconfigured backup leads to exposure of 50.5 million GOMO Mobile customers
Podcast: Bad Packets Report Founder on Rising Cryptojacking Attacks
New Red Hat Product Security OpenPGP key