Menu

Category Archives: Security

Articles about security

LinuxSecurity.com: Multiple vulnerabilities have been found in systemd, the worst of which may allow execution of arbitrary code.

Fan of KFC? Here’s some finger-licking good advice for your password: Change it now
Popcorn Time ransomware invites you to get ‘nasty’ to recover your files
SamSa ransomware devs rake in $450,000 in a year
US-CERT’s top tip: Hack your crap Netgear router before miscreants arrive

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory corruption vulnerability; fixes are available.

security update

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Risk Level: Very Low. Type: Trojan.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a security bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Europol and US authorities bust 34 DDoS attackers and 101 suspects
CIA: Russia hacked election. Trump: I don’t believe it! FAKE NEWS!
Apple Fixes 12 Vulnerabilities in iOS 10.2
Scammers spreading celebrity nude PDFs on Facebook, pushing malware installation
Netgear Routers Remain Exposed to Critical Flaw
Kentucky pried chicken: Fried grease chain’s loyalty club hacked
Alpha Version of Sandboxed Tor Browser Released
Facebook Technical Glitch Making Old Pictures Reappear on Timeline

LinuxSecurity.com: Security fix for CVE-2016-6318

LinuxSecurity.com: This updates adds a patch to fix CVE-2016-9573 and CVE-2016-9572.

LinuxSecurity.com: update

Risk Level: Very Low. Type: Trojan.

Botched Microsoft update knocks Windows 8, 10 PCs offline – regardless of ISP
German Industrial Giant Victim of Cyber Espionage
An unpatched vulnerability exposes Netgear routers to hacking
Security Sessions: Ransomware as a service on the rise
Ransomware with a deal: Infect other computers, get your decryption key
Scammers can trick Microsoft Edge into displaying fake security warnings
Why combining technology with standards could combat fraud

ESET’s Miguel Ángel Mendoza looks at why combining technology with standards could combat fraud. The post Why combining technology with standards could combat fraud appeared first on WeLiveSecurity

DDoS script kiddies are also… actual kiddies, Europol arrests reveal
5 enterprise-related things you can do with blockchain technology today
Trump, tech executives may try to untangle relationship
Modern attacks on Russian financial institutions

ESET’s Anton Cherepanov Jean-Ian Boutin discuss their paper, titled Modern Attacks on Russian Financial Institutions, which was published earlier this year. The post Modern attacks on Russian financial institutions appeared first on WeLiveSecurity

Finally! A minimum standard for certificate authorities
Spring 2017 sponsorships available
How to secure your Wi-Fi network – the more advanced version
Top tech company’s IP was looted by China, so it plans to hack back
Microsoft Edge’s malware alerts can be faked, researcher says
Melbourne hacker adds padding oracle to free popular hacker course
Germany warns Moscow will splash cash on pre-election propaganda and misinformation spree

Risk Level: Very Low. Type: Trojan.

Ransomware scum offer free decryption if you infect two mates

LinuxSecurity.com: Multiple heap overflows in SoX may allow remote attackers to execute arbitrary code.

LinuxSecurity.com: A vulnerability in Docker could lead to the escalation of privileges.

LinuxSecurity.com: Multiple vulnerabilities have been found in VirtualBox, the worst of which allows local users to escalate privileges.

LinuxSecurity.com: Two vulnerabilities have been found in exFAT allowing remote attackers to execute arbitrary code or cause Denial of Service.

Adult Toys Manufacturer Facing Lawsuit for Collecting “Users Personal Data”

LinuxSecurity.com: Multiple heap overflows in SoX may allow remote attackers to execute arbitrary code.

LinuxSecurity.com: A heap-based buffer overflow vulnerability in libmms might allow remote attackers to execute arbitrary code.

LinuxSecurity.com: update

LinuxSecurity.com: A vulnerability in Docker could lead to the escalation of privileges.

LinuxSecurity.com: Multiple vulnerabilities have been found in VirtualBox, the worst of which allows local users to escalate privileges.

security update

security update

Child Pornography Case: 73-year old Pedophile gets 300 years sentence
Inherent Vulnerability making Netgear’s Routers Exploitable by Hackers

LinuxSecurity.com: An update for python-XStatic-jquery-ui is now available for Red Hat OpenStack Platform 8.0 (Liberty). Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for python-XStatic-jquery-ui is now available for Red Hat OpenStack Platform 9.0 (Mitaka). Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: Security fix for CVE-2016-8740

LinuxSecurity.com: An update for rh-mariadb100-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rh-mariadb101-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]

Fatal flaw found in PricewaterhouseCoopers SAP security software
Russian hackers got Trump elected? Yeah, let’s take a close look at that, says Obama
Ex-Expedia IT worker hacked firm to commit insider trading after he left
‘I found a bug that let anyone read anyone’s Yahoo! Mail and all I got was this $10k check’
After Spying Webcams, Welcome the Spy Toys “My Friend Cayla and I-Que”
Obama orders review of election hacks as Trump doubts Russia’s role
Ransomware attacks against businesses increased threefold in 2016
Ransomware Gives Free Decryption Keys to Victims Who Infect Others

Risk Level: Very Low. Type: Trojan.

Attackers use hacked home routers to hit Russia’s 5 largest banks

  Personal computers and devices aren’t the only targets for ransomware authors. Their methods have evolved to target government offices and profitable organizations, forcing them to rethink their cybersecurity mitigation plans.   Blackheart Records Data Left Exposed Online Recently, it has been discovered that a large, unsecured database containing sensitive information on several prominent recording […]

Making in-flight cellphone calls? GCHQ, NSA have been listening
NYU Students Apply Blockchain Solution to Electronic Voting Security
Fancy that! Google was keen on ‘draining the swamp’ in 2013
Bahamian Hacker Gets 5 Years Jail Time for Hacking, Leaking Celebrities Photos
Threatpost News Wrap, December 8, 2016
‘Professional’ hackers steal industrial secrets from ThyssenKrupp
The IoT: Gateway for enterprise hackers
Yahoo Mail XSS Bug Worth Another $10K to Researcher
Yahoo flaw, now fixed, allowed hackers to access any user’s email