ESET’s Trends for 2017: Security Held Ransom report includes a review of the most important events of last year and outlines trends in cybercriminal activity and cyberthreats for 2017. The post ESET Trends for 2017: Holding security ransom appeared first on WeLiveSecurity
Yahoo has announced that one billion of its user accounts has been affected by a data breach. ESET’s Mark James offers some informative security advice. The post Yahoo data breach: What you can do appeared first on WeLiveSecurity
Yahoo has experienced the biggest data breach in history, with up to one billion user accounts thought to have been affected by a historic security incident. The post Yahoo experiences biggest data breach in history: 1 billion affected appeared first on WeLiveSecurity
security update
security update
LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.38 up to 8.0.39 which resolvesmultiple CVEs: * #1397493 – CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat:various flaws
Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a security bypass vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
LinuxSecurity.com: Security Report Summary
A new holiday season scam campaign is plaguing social media – and this time it’s pretending to sell heavily discounted Uggs, reports ESET’s Ondrej Kubovič. The post Ray-Bans out, Uggs in: Holiday season scam plagues social media appeared first on WeLiveSecurity
A 17-year-old who pleaded guilty to offenses relating to 2015’s TalkTalk cyberattack has had his iPhone confiscated and been sentenced to a 12-month rehabilitation order. The post Teenager’s phone confiscated for TalkTalk cyberattack offenses appeared first on WeLiveSecurity
ESET’s Anton Cherepanov analyzes the work of TeleBots, a malicious toolset that was used in focused cyberattacks against targets in Ukraine’s financial sector. The post The rise of TeleBots: Analyzing disruptive KillDisk attacks appeared first on WeLiveSecurity
It has not been a good year for the internet of things, security-wise. The latest IoT devices found vulnerable to trivial exploitation? Netgear routers. The post US-CERT warns Netgear routers can be easily exploited appeared first on WeLiveSecurity
Managed service providers are tasked with serving a broad range of markets, from construction to healthcare; accounting to legal; staffing firms to manufacturing; media and advertising to technology. But the day-to-day MSP challenges, even across so many diverse verticals, remain the same. Let’s break it down: modern technology changes fast and keeps gaining momentum, […]
A new study from Newcastle University in the UK suggests that cybercriminals can access online banking details of any Visa card through a so-called Distributed Guessing Attack. The post Distributed Guessing Attack can ‘compromise Visa cards in just six seconds’ appeared first on WeLiveSecurity
ESET’s Cameron Camp takes a closer look at security by design for mobile device manufacturers, assessing where we are and where we are heading. The post Security by design for mobile device manufacturers appeared first on WeLiveSecurity
As a traveling computer security consultant for over 20 years, I’ve had the chance to visit a lot of different operations and see what works and doesn’t work. I’m always looking for common denominators for successes and failures, and I share these lessons as I learn them. But I realize I’ve unconsciously absorbed one home […]
LinuxSecurity.com: Multiple vulnerabilities have been found in Node.js, the worst of which can allow remote attackers to cause Denial of Service conditions.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Zabbix, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: Multiple vulnerabilities have been found in Botan, the worst of which allows remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in SQUASHFS, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: A vulnerability in Bash could potentially lead to arbitrary code execution.
LinuxSecurity.com: A buffer overflow in Pixman might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: An integer overflow in TigerVNC might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: A vulnerability in XStream may allow remote attackers to execute arbitrary code.
