Menu

Category Archives: Security

Articles about security

Security Sessions: Lessons learned from the Dyn DNS attacks
Under attack: How hackers could remotely target your pacemaker
2017 security predictions
Firefox zero-day: Mozilla races to patch bug used to attack Tor browser users
900,000 Deutsche Telekom Routers Disabled by Massive Cyber Attack
10 key security terms devops ninjas need to know
Clients say they’ll take their money and run if service hacked – poll
Tor users at risk of having their anonymity stripped via attacks exploiting Firefox zero-day
From the ‘everybody should have an off-site backup’ department…
Fatal flaws in ten pacemakers make for Denial of Life attacks
SHIFT + F10, Linux gets you Windows 10’s cleartext BitLocker key
UCam247 tells El Reg most of its cams aren’t vulnerable to GET vuln
Google’s Project Zero tweaking Microsoft, because it did fix a bug

security update

Risk Level: Very Low. Type: Trojan.

  The sheer number of cyberattacks lately led us to this question: which states are at the greatest risk of a cyberattack? Naturally, we took it a step further. We looked into data on population and population density in an effort to find correlations. Which are the most infected states? Opening up our list in […]

Wow. What a shock. The FBI will get its bonus hacking powers after all
Microsoft Silently Fixes Kernel Bug That Led to Chrome Sandbox Bypass
Gooligan Attack on Android: Millions of Google Accounts Compromised
10% off Nest Cam Indoor Security Camera – Deal Alert
I love how San Francisco’s metro system responded to its ransomware attacker
26,500 National Lottery accounts accessed by cybercriminals

National lottery operator Camelot tells players to change their passwords after thousands of accounts have been accessed by cybercriminals. The post 26,500 National Lottery accounts accessed by cybercriminals appeared first on WeLiveSecurity.

LinuxSecurity.com: An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]

German Minister Proposes Data Protection Law Aimed at Limiting Privacy Rights
Tor Patched Against Zero Day Under Attack
Real threats for business: Mischief, extortion and million-dollar frauds
Android-rooting Gooligan malware infects 1 million devices
Computer Systems at Carleton University Shut Down due to Ransomware
The new Mirai malware strain has gone beyond Deutsche Telekom
Cryptography: How something nerdy went mainstream

Cryptography is one of the fundamental aspects of information security. We look at it through the lens of the silver screen. The post Cryptography: How something nerdy went mainstream appeared first on We Live Security.

UCL snags head of Europol for a seminar on privacy
New Cerber Variant Leverages Tor2Web Proxies, Google Redirects
UK cops spot webcam ‘sextortion’ plots: How vics can hit stop
UK National Lottery data breach: Fingers crossed – it might not be you
Hackers access National Lottery accounts – do you have your fingers crossed?
‘Tesco Bank’s major vulnerability is its ownership by Tesco,’ claims ex-employee
Spam campaign tiptoes via Tor to deliver Cerber ransomware
Speaking in Tech: The limitations of Android’s crypto
UK’s new Snoopers’ Charter just passed an encryption backdoor law by the backdoor

LinuxSecurity.com: Security Report Summary

PayPal proffers patch for OAuth app hack hole
GET pwned: Web CCTV cams can be hijacked by single HTTP request
Drive-by web nasty unmasks Tor Browser users, Mozilla dashes to patch zero-day vuln

LinuxSecurity.com: Security fix for CVE-2016-9296

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: Update to 0.6.4

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

Another Canadian uni hit by ransomware, students told to keep Windows PCs away

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: Update to 0.6.4

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

NetWire RAT Back, Stealing Payment Card Data
New Mirai Variant Targets Routers, Knocks 900,000 Offline

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

LinuxSecurity.com: Fix for CVE-2016-9400

New Lethal Version of Mirai Botnet Claims First Target: Deutsche Telekom
CERT to Microsoft: Keep EMET alive
900,000 Germans knocked offline, as critical router flaw exploited

As many as 900,000 Deutsche Telekom customers were knocked offline on Sunday and Monday as an attempt was made to hijack broadband routers into a botnet. The post 900,000 Germans knocked offline, as critical router flaw exploited appeared first on We Live Security.

San Francisco’s Muni says server data not accessed in ransomware hit
Oh no, software has bugs, we need antivirus. Oh no, bug-squasher has bugs, we need …
Hacker Who Hacked SF Rail System for Ransom Hacked by Another Hacker
Queen signs the Investigatory Powers Act into UK law
Bletchley Park Trust vows to shore up insecure website
Extending Linux Executable Logging With The Integrity Measurement Architecture
3 clues to spotting a spam scam

I received the following “domain abuse notice” for one of my inactive registered domains last week: Those of us who have dealt with falsely blacklisted domains in the past have seen notices like this before. It’s usually from an antispam vendor or service letting you know that your domain has been used in a spam […]

R3 four flew: What’s driving banks to flee blockchain consortium?
A Rowhammer ban-hammer for all, and it’s all in software
Hackers crack Liechtenstein banks, demand ransoms
Cisco stre…tches vulnerability disclosure timeline out to 90 days
Netflix and spill: Web vid giant kills password masking in tests
Inside Android’s source code… // TODO – Finish file encryption later

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

‘Mirai bots’ cyber-blitz 1m German broadband routers – and your ISP could be next
Hackers Deface Kuwaiti Parliament website on Election Day
No, I won’t help you blackmail the company you just hacked
PayPal Fixes OAuth Token Leaking Vulnerability
Hackers Make New Claim in San Francisco Transit Ransomware Attack

security update

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security fix for CVE-2016-8864

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Update to 4.4.2: Security fixes * A difference in cookie parsing betweenTornado and web browsers (especially when combined with Google Analytics) couldallow an attacker to set arbitrary cookies and bypass XSRF protection. Thecookie parser has been rewritten to fix this attack. Backwards-compatibilitynotes * Cookies containing certain special characters (in particular semicolonand square brackets) are […]

Hackers threaten to leak bank customers’ account info unless they pay up
FBI offers some poor password advice for online shoppers
Creaking Royal Navy is ‘first-rate’ thunders irate admiral
Female DDoS Attacker Charged with Crippling School System
Muni experiences security incident

The San Francisco Municipal Transportation Agency has confirmed that it experienced a security incident over the weekend The post Muni experiences security incident appeared first on We Live Security.

San Francisco Railway’ Fare System Hacked for 100 Bitcoin Ransom
San Francisco’s Muni transit system reportedly hit by ransomware
Locking Down Your Linux Server
How to protect the C-suite from spear phishing
Ransomware scams cost Brits £4.5m per year
Time is running out for NTP
Ransomware hits San Francisco transport system. Free rides for all as $73,000 demanded
100k+ petition: MPs must consider debating Snoopers’ Charter again
The Internet Society is unhappy about security – pretty much all of it
Japan investigating defence network break-in
Phishing tackle ships data catch to net sharks