Menu

Category Archives: Security

Articles about security

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

LinuxSecurity.com: FreeType could be made to crash if it opened a specially crafted file.

LinuxSecurity.com: An update for httpd24-apr is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for openstack-aodh is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: Joonun Jang discovered that the advzip tool in advancecomp, a collection of recompression utilities, was prone to a heap-based buffer overflow. This might allow an attacker to cause a denial-of-service (application crash) or other unspecified impact via

LinuxSecurity.com: An update for openstack-nova is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for erlang is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for collectd is now available for Red Hat OpenStack Platform 11.0 Operational Tools for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

School Principal Gets 9 Years in Prison for Trading Nude Pictures of Students
Flaw in Telegram Windows App Used for Cryptomining & Backdoor
Patch now! Microsoft fixes over 50 serious security flaws

This week saw the second Tuesday of the month, and everyone who is responsible for protecting Windows computers knows what that means: another bundle of security patches have been released by Microsoft. The post Patch now! Microsoft fixes over 50 serious security flaws appeared first on WeLiveSecurity

Someone hacked this advertising screen to mine Bitcoin
Roses are red, Kaspersky is blue: ‘That ban’s unconstitutional!’ Boo hoo hoo
How safe are you around your smart TV?

Smart TVs afford us the opportunity to use them for purposes that are more commonly associated with computers. In fact, that’s what these TVs have become – internet-connected ‘computers’, much like mobile phones. It would no doubt help if we thought of them as such and treated them accordingly. The post How safe are you […]

From tomorrow, Google Chrome will block crud ads. Here’s how it’ll work
South China waters are red, Brit warships are blue, HMS Sutherland’s sailing there
Maybe Better If You Don’t Read This Story on Public WiFi
Microsoft working to scale Blockchain for grand distributed ID scheme
OpenSSL alpha adds TLS 1.3 support

LinuxSecurity.com: A denial of service vulnerability has been discovered in graphicsmagick, a collection of image processing tools and associated libraries.

Meltdown-and-Spectre-detector comes to Windows Analytics
Roses are red, Windows error screens are blue. It’s 2018, and an email can still pwn you

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Two Nasty Outlook Bugs Fixed in Microsoft’s Feb. Patch Tuesday Update
Hacker extracts customer data from Canadian Telecom Firm after rebuttal
While Western Union wired customers’ money, hackers transferred their personal deets

LinuxSecurity.com: The package exim before version 4.90.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package mpv before version 1:0.27.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: An update that solves 8 vulnerabilities and has 13 fixes is now available.

Shock horror! Telegram messaging app proves insecure yet again!

LinuxSecurity.com: Several security issues were fixed in libvorbis.

Millions of Android Phones Hacked to Mine Monero Coins
Venerable Unicode Technique Used to Deliver Cryptomining Malware Through Telegram

Type: Vulnerability. Multiple CPU Hardware are prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Multiple CPU Hardware are prone to an information-disclosure vulnerability; fixes are available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: Red Hat JBoss Data Grid 7.1.2 is now available for download from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Salon website gives you a choice: turn off your ad blocker or let us mine cryptocurrencies
How To Keep Your New Online Business Safe
Google is bringing AMP to email
UK Government announces tool to detect and block extremist videos
Blockchain Hardened devices: Can they restore privacy with security by design?

These developments show that security technology is now keeping up, or outpacing other technological and regulatory developments. Thus, while users’ wants often continue to trump their appreciation of risk, the industry has responded and in many cases gotten ahead of popular demand. The post Blockchain Hardened devices: Can they restore privacy with security by design? […]

LinuxSecurity.com: An update that fixes one vulnerability is now available.

How a Low-Level Apple Employee Leaked Some of the iPhone’s Most Sensitive Code
Linux Meltdown patch: ‘Up to 800 percent CPU overhead’, Netflix tests show
Correctly integrating containers
UK ICO, USCourts.gov… Thousands of websites hijacked by hidden crypto-mining code after popular pl
UK Home Sec Amber Rudd unveils extremism blocking tool
The strange case of the data breach that stayed online for a month
Equifax hack worse than previously thought: Biz kissed goodbye to card expiry dates, tax IDs etc
Browsealoud plugin hacked to mine Monero on 4,000 Govt websites

LinuxSecurity.com: A request smuggling vulnerability was discovered in pound that may allow attackers to send a specially crafted http request to a web server or reverse proxy while pound may see a different set of requests. This facilitates several possible exploitations, such as partial cache

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

‘Olympic Destroyer’ Malware Behind Winter Olympics Cyberattack, Researchers Say

LinuxSecurity.com: CVE-2017-6419 CVE-2017-11423

LinuxSecurity.com: Mikhail Klementev, Ronnie Goodrich and Andrew Krasichkov discovered that missing restrictions in the implementation of the WEBSERVICE function in LibreOffice could result in the disclosure of arbitrary files readable by the user who opens a malformed document.

LinuxSecurity.com: The package sthttpd before version 2.27.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: WavPack could be made to crash if it opened a specially crafted file.

Still not on Windows 10? Fine, sighs Microsoft, here are its antivirus tools for Windows 7, 8.1

In a month where matchmaking is in high demand, we took a look at recent trends around online dating sites using Webroot Brightcloud Threat Intelligence Platform. What did we find? Valentine’s Day sends cybercriminals on the prowl, and not for a soulmate. On average, visits to dating websites increase by 53 percent in the month […]

LinuxSecurity.com: Mikhail Klementev, Ronnie Goodrich and Andrew Krasichkov discovered that missing restrictions in the implementation of the WEBSERVICE function in LibreOffice could result in the disclosure of arbitrary files readable by the user who opens a malformed document.

Romance Scams Drive Necurs Botnet Activity in Run Up to Valentine’s Day