CVE-2016-5696 Yue Cao, Zhiyun Qian, Zhongjie Wang, Tuan Dao, and Srikanth V. Krishnamurthy of the University of California, Riverside; and Lisa M. Marvel of the United States Army Research Laboratory discovered that Linux’s implementation of the TCP Challenge ACK feature results in a side channel that can be used to find TCP connections between specific […]
An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: thunderbird security update Advisory ID: RHSA-2016:1809-01 Product: Red Hat Enterprise […]
Debian: 3659-1: linux: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3659-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 04, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : linux CVE ID : CVE-2016-5696 CVE-2016-6136 CVE-2016-6480 CVE-2016-6828 Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial […]
Debian: 3653-2: flex: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3653-2 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 04, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : flex CVE ID : CVE-2016-6354 Debian Bug : 832768 835542 It was reported that the update for flex as released in DSA-3653-1 did not completely […]
Variety has confirmed that its content management system (CMS) was hijacked on the weekend by the hacking collective OurMine. Once in, the group was able to send subscribers to the online and print publisher multiple newsletters via email. The subject line stated “Hacked By #OurMine”, while the body text read: “Hello Variety, it’s #OurMine, don’t […]
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low.
Discovered: September 2, 2016 Updated: September 3, 2016 12:00:55 AM Type: Trojan Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Ransom.Fsociety is a Trojan horse that encrypts files on the compromised computer and asks the user to […]
European Company Loses Millions in Targeted Phishing Scam In the last couple weeks, Leoni AG, one of the largest electrical wiring companies in Europe fell victim to a Business Email Compromise (BEC) scam involving the CFO transferring a significant sum of money to a non-verified bank account. This location was likely the main target due […]
Hanno Boeck discovered multiple vulnerabilities in libidn, the GNU library for Internationalized Domain Names (IDNs), allowing a remote attacker to cause a denial of service against an application using the libidn library (application crash). For the stable distribution (jessie), these problems have been fixed in version 1.29-1+deb8u2. For the testing distribution (stretch), these problems have […]
Debian: 3658-1: libidn: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3658-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 01, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libidn CVE ID : CVE-2015-8948 CVE-2016-6261 CVE-2016-6263 Hanno Boeck discovered multiple vulnerabilities in libidn, the GNU library for Internationalized Domain Names (IDNs), allowing a remote […]
Red Hat: 2016:1797-01: ipa: Moderate Advisory Posted by Anthony Pell An update for ipa is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: ipa security update Advisory […]
So, you’re minding your own business working through your day-to-day battle of never-ending emails and sorting through all the stuff you should have finished yesterday. Suddenly, an urgent email drops into your inbox from the boss, asking for an urgent transfer of £8,000 to a designated bank account. It’s not overly unusual: it’s from the […]
How do you navigate through virtual reality? What is the first webpage you open when you are looking for something online? Where do you go to answer a ‘how to’ question most often? For the majority of users, the answer would be Google. It’s been 18 years since Stanford PhD students Larry Page and Sergey […]
Discovered: September 1, 2016 Updated: September 2, 2016 12:02:36 PM Type: Trojan Infection Length: 3,921,408 bytes Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Ransom.Serpico is a Trojan horse that encrypts files on the compromised computer and […]
Slackware: 2016-244-01: mozilla-thunderbird: Security Update Posted by Anthony Pell New mozilla-thunderbird packages are available for Slackware 14.1, 14.2, and -current to fix security issues. [More Info…] [slackware-security] mozilla-thunderbird (SSA:2016-244-01) New mozilla-thunderbird packages are available for Slackware 14.1, 14.2, and -current to fix security issues. Here are the details from the Slackware 14.2 ChangeLog: +————————–+ […]
Improving financial cybersecurity at an international level must be a key agenda item at the G20 Summit in China this month (September 4th-5th). This is according to a group of prominent US senators, who have urged president Barack Obama to raise this critical issue at the event. In a letter to the White House, Gary […]
The VMware ecosystem has become huge and now encompasses a daunting number of platforms that you don’t even think about, including many in the IoT world. But now, all of these devices have to talk to each other in order to get along, and they do that with Application Program Interfaces (API). Are APIs all […]
Hanno Boeck and Marcin Noga discovered multiple vulnerabilities in libarchive; processing malformed archives may result in denial of service or the execution of arbitrary code. For the stable distribution (jessie), these problems have been fixed in version 3.1.2-11+deb8u2. For the testing distribution (stretch), these problems have been fixed in version 3.2.1-1. For the unstable distribution […]
Two vulnerabilities have been discovered in the server for the Tryton application platform, which may result in information disclosure of password hashes or file contents. For the stable distribution (jessie), these problems have been fixed in version 3.4.0-3+deb8u2. For the unstable distribution (sid), these problems have been fixed in version 4.0.4-1. We recommend that you […]
Red Hat: 2016:1781-01: rh-postgresql94-postgresql: Moderate Advisory Posted by Anthony Pell An update for rh-postgresql94-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: rh-postgresql94-postgresql security update Advisory ID: RHSA-2016:1781-01 Product: Red Hat Software Collections […]
Debian: 3657-1: libarchive: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3657-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff August 30, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libarchive CVE ID : CVE-2015-8916 CVE-2015-8917 CVE-2015-8919 CVE-2015-8920 CVE-2015-8921 CVE-2015-8922 CVE-2015-8923 CVE-2015-8925 CVE-2015-8926 CVE-2015-8928 CVE-2015-8930 CVE-2015-8931 CVE-2015-8932 CVE-2015-8933 CVE-2015-8934 CVE-2016-4300 CVE-2016-4302 CVE-2016-4809 CVE-2016-5844 Hanno Boeck […]
Debian: 3656-1: tryton-server: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3656-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff August 30, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : tryton-server CVE ID : CVE-2016-1241 CVE-2016-1242 Two vulnerabilities have been discovered in the server for the Tryton application platform, which may result in information disclosure […]
Ubuntu: 3070-2: Linux kernel (Raspberry Pi 2) vulnerabilities Posted by Anthony Pell Several security issues were fixed in the kernel. ========================================================================== Ubuntu Security Notice USN-3070-2 August 30, 2016 linux-raspi2 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS Summary: Several security issues were fixed in the […]
