Menu

Category Archives: Security

Articles about security

14 Million Verizon Customer Records Exposed

security update

security update

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Third Party Exposes 14 Million Verizon Customer Records
New Point-of-Sale Malware LockPoS Hitches Ride with FlokiBot
LeakerLocker Android Ransomware: Pay or Your Data Will Be Leaked
Uber Patches Authentication Bypass Vulnerability on Custom SSO Solution
SAP Patches High-Risk Flaws in SAP POS, Host Agent
Trump Hotels’ Booking System Hacked, Credit Card Data Stolen
Industrial control security practitioners worry about threats … for a reason

Recent research from the SANS Institute confirms that security of industrial control systems is increasingly seen and understood to be a serious issue. The post Industrial control security practitioners worry about threats … for a reason appeared first on WeLiveSecurity

LinuxSecurity.com: This update updates QtWebEngine to the 5.9.1 release, a security and bugfix release from the 5.9 branch. QtWebEngine 5.9.1 is part of the Qt 5.9.1 release, but only the QtWebEngine component is included in this update. The update fixes the following security issues in QtWebEngine 5.9.0: CVE-2017-5070, CVE-2017-5071, CVE-2017-5075, CVE-2017-5076, CVE-2017-5077, CVE-2017-5078,

LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.

Vulnerabilities Expose Oracle OAM 10g to Remote Session Hijacking
Firms that didn’t patch and enabled local admin rights continue to suffer post cyber-attack
Linux Foundation launches Open Security Controller Project
Mingis on Tech: How linguistics can help catch cyberattackers
Trump Hotels customers hit by credit-card stealing hackers. Again.

LinuxSecurity.com: https://github.com/libexpat/libexpat/blob/R_2_2_1/expat/Changes

LinuxSecurity.com: New stable upstream release, primarily includes security fixes for CVE-2017-10794, CVE-2017-10799, CVE-2017-10800 See also http://www.graphicsmagick.org/NEWS.html#july-4-2017

Microsoft issues critical security patches. Have you updated yet?
LDAP & RDP Relay Flaws Found in Windows Security Protocols
Telegram-Controlled Hacking Tool Targets SQL Injection at Scale
Microsoft Patch Tuesday Update Fixes 19 Critical Vulnerabilities
Microsoft Addresses NTLM Bugs That Facilitate Credential Relay Attacks

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Adobe Fixes Six Vulnerabilities in Flash, Connect with July Update
Adobe Flash Player users should update their software NOW

Critical security holes keep being found in Adobe Flash Player. Have you updated yours yet? The post Adobe Flash Player users should update their software NOW appeared first on WeLiveSecurity

Creators of dark web chat room arrested for facilitating child abuse
Avanti Markets’ kiosks hacked; credit card, biometric data stolen
Desperately Seeking Security: 6 Skills Most In Demand
UK’s ICO launches first ever International Strategy

The Information Commissioner’s Office (ICO) has launched an International Strategy, which provides guidance on key issues such as GDPR and changing technologies. The post UK’s ICO launches first ever International Strategy appeared first on WeLiveSecurity

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows Explorer is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge and Internet Explorer are prone to remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows Explorer is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to an open-redirection vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows PowerShell is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Wordpad is prone to a remote code-execution vulnerability; fixes are available.

Micro Market Vendor Warns of Bankcard And Biometric Data Breach

security update

Telcos Singled Out for Prioritizing Government Requests for Data Over Privacy

LinuxSecurity.com: New libtirpc packages are available for Slackware 14.2 and -current to fix a security issue.

LinuxSecurity.com: New rpcbind packages are available for Slackware 14.2 and -current to fix a security issue.

Energy, Nuclear Targeted with Template Injection Attacks
Google to Fully Distrust WoSign/StartCom SSL Certs in Chrome 61
Smart Home Device Calls Police Amid Domestic Dispute

LinuxSecurity.com: Multiple vulnerabilities have been found in libcroco, the worst of which may have unspecified impacts.

LinuxSecurity.com: Two security issues have been discovered in the X.org X server, which may lead to privilege escalation or an information leak. For the oldstable distribution (jessie), these problems have been fixed

LinuxSecurity.com: A vulnerability in MAN DB allows local users to gain root privileges.

International Investigatory Group Also Target of Government Spyware
LeakerLocker ransomware threatens to dox Android users as extortion
Satellite Communication Can Now Be Cracked In Seconds