Menu

Category Archives: Security

Articles about security

Confirmed: hacking tool leak came from “omnipotent” NSA-tied group
Wikileaks hosts hundreds of malware files in email dumps

Risk Level: Very Low. Type: Trojan.

Snowden files confirm Shadow Brokers spilled NSA’s Equation Group spy tools over the web
Cyber Criminals using Locky Ransomware against Healthcare Industry
Shopped in an Eddie Bauer store recently? Your card’s probably gone. It’s just gone
Poorly configured DNSSEC servers at root of DDoS attacks

Red Hat: 2016:1637-01: rh-mariadb101-mariadb: Important Advisory Posted by Anthony Pell    An update for rh-mariadb101-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: rh-mariadb101-mariadb security update Advisory ID: RHSA-2016:1637-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1630-01: rh-python34-python: Moderate Advisory Posted by Anthony Pell    An update for rh-python34-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: rh-python34-python security update Advisory ID: RHSA-2016:1630-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1628-01: python27-python: Moderate Advisory Posted by Anthony Pell    An update for python27-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python27-python security update Advisory ID: RHSA-2016:1628-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1629-01: python33-python: Moderate Advisory Posted by Anthony Pell    An update for python33-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python33-python security update Advisory ID: RHSA-2016:1629-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1627-01: rh-python35-python: Moderate Advisory Posted by Anthony Pell    An update for rh-python35-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: rh-python35-python security update Advisory ID: RHSA-2016:1627-01 Product: Red Hat Software Collections […]

Red Hat: 2016:1632-01: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Red Hat: 2016:1631-01: realtime-kernel: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

An update for python is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python security update Advisory ID: RHSA-2016:1626-01 Product: Red Hat Enterprise Linux Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-1626.html Issue […]

Red Hat: 2016:1633-01: kernel: Important Advisory Posted by Anthony Pell    An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

New Brazilian Banking Trojan Uses Windows PowerShell Utility
Multiple Vulnerabilities Identified in ‘Utterly Broken’ BHU Routers

This week’s Threat Recap is filled with everything from the latest retailer succumbing to malware infection to a possible hack on the NSA. Read up on five of the latest threat happenings to stay informed and up-to-date. Eddie Bauer Stores Compromised It is reported that point of sale systems at several Eddie Bauer stores across North America […]

Donald Trump Campaign Hacked; Targeted with Malware: Report
Two-speed Android update risk: Mobes face months-long wait
New firmware update? No, it’s the devious Marcher Android trojan up to no good
Threatpost News Wrap, August 19, 2016
Why you should hire good, skilled cybersecurity professionals

��}ے�F���(Q3″i/}�f�Z����QK���ڎ”P$��f�rG�ا�؍8���s��|�ff@�$��� i�Tee孲�����=yy�����޼x~��ݣa4r���A�”��Y����W݊78`�(����Hnx�u� �����w4����%�/��Sύ�io&��0S��V”q��9�A(�n� 3������v�|�=’��Ӯ�”_��#ѭ�b�{A�)=��hصĥm �~4��ڑ�-4�#��2H�8B�Hh�”�� �xn�y��/����`w���E��E�����j��|��پ���0 /�c[�y|��HXL����^�@8�JM�D@Ev3+l$,�w+~`��u��V���>�})BaƁMt�c_SH�P�Dh�w�fPC�� ���w�螦�7C;dH

Twitter suspends 360,000 accounts for terrorist ties
The NSA’s hoard of cyber weapons makes some experts nervous
Keep using password managers — bugs and all
WikiLeaks uploads 300+ pieces of malware among email dumps
Uber’s specially modified self-driving cars to hit the road this month
Banking system SWIFT was anything but on security, ex-boss claims
EFF Blasts Microsoft Over ‘Malicious’ Windows 10 Rollout Tactics

Felix Doerre and Vladimir Klebanov from the Karlsruhe Institute of Technology discovered a flaw in the mixing functions of Libgcrypt’s random number generator. An attacker who obtains 4640 bits from the RNG can trivially predict the next 160 bits of output. A first analysis on the impact of this bug for GnuPG shows that existing […]

Felix Doerre and Vladimir Klebanov from the Karlsruhe Institute of Technology discovered a flaw in the mixing functions of GnuPG’s random number generator. An attacker who obtains 4640 bits from the RNG can trivially predict the next 160 bits of output. A first analysis on the impact of this bug for GnuPG shows that existing […]

Beware; Hackers targeting Pokemon Go Users with Smishing Scam
50% off Vimtag VT-361 Pan&Tilt HD WiFi Video Security Camera with Night Vision – Deal Alert

Debian: 3650-1: libgcrypt20: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3650-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso August 17, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libgcrypt20 CVE ID : CVE-2016-6313 Felix Doerre and Vladimir Klebanov from the Karlsruhe Institute of Technology discovered a flaw in the mixing functions of Libgcrypt’s […]

Debian: 3649-1: gnupg: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3649-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso August 17, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : gnupg CVE ID : CVE-2016-6313 Felix Doerre and Vladimir Klebanov from the Karlsruhe Institute of Technology discovered a flaw in the mixing functions of GnuPG’s […]

OIG Report Finds Vulnerabilities in Medicaid Services Agency
GPG Patches 18-Year-Old Libgcrypt RNG Bug
Scammers Used Google AdSense to Drop Malware on Android Devices
Following data breach, Sage employee arrested at Heathrow airport
Locky Targets Hospitals In Massive Wave Of Ransomware Attacks
Why do we ignore up to 90% of computer security alerts? Because we’re terrible at multi-tasking…
Snowden says Russia ‘probably responsible’ for NSA hack
Bitcoin website suspects it will be targeted by state-sponsored hackers, warns users
Unsecured DNSSEC Easily Weaponized, Researchers Warn
The Future Of ATM Hacking
US: We’re now ready to give up our role governing the internet
Nemucod serves nasty package: Ransomware and ad-clickers

Just last week ESET reported on Nemucod shifting away from ransomware and downloading the ad-clicking malware Kovter instead. Now, it seems that the operators of the notorious downloader went a step further and are serving their victims the whole package – ransomware as well as ad-clickers. As before, the targeted user receives an email with […]

Vulnerable smart home IoT sockets let hackers access your email account
Poorly Configured DNSSEC = Potential DDoS Weapon
6 Things To Know For Securing Amazon Web Services
Pen-testing made easy with Datasploit social engineering toolset
No One Wants to Buy Those Stolen NSA-Linked ‘Cyberweapons’
A new low! SMS scammers prey on parents’ fears to make a few bucks
Alleged NSA data dump contains sophisticated hacking tools
Let’s Encrypt ups rate limits
Individual arrested in connection with high-profile data at Sage

The City of London Police has confirmed the arrest of a 32-year-old employee in connection with a high-profile data breach at Sage. The woman was apprehended at Heathrow Airport, as part of the force’s “ongoing fraud investigation” into the incident at the accounting and payroll software company. This arrest all but confirms that the unauthorized […]

FireEye warns ‘massive’ ransomware campaign hits US, Japan hospitals
If this headline was a security warning, 90% of you would ignore it
PayPal patches 2FA portal bug
Google hopes to sniff out OS X badware
Fortinet follows Cisco in confirming Shadow Broker vuln
Bitcoin ‘targeted by state sponsored attackers’ says Bitcoin.org
NSA website goes down as hackers auction stolen ‘cyber weapons’
Someone Hacked Traffic Sign with Anti-Police Message in Denver
Cisco confirms two of the Shadow Brokers’ ‘NSA’ vulns are real
Cisco Acknowledges ASA Zero Day Exposed by ShadowBrokers
Aussie Police’ Child Porn Investigation Leads to Hacking of 30+ US TOR User

Ubuntu: 3062-1: OpenJDK 7 vulnerabilities Posted by Anthony Pell    Several security issues were fixed in OpenJDK 7. ========================================================================== Ubuntu Security Notice USN-3062-1 August 16, 2016 openjdk-7 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 14.04 LTS Summary: Several security issues were fixed in OpenJDK 7. Software Description: […]

Red Hat: 2016:1617-01: kernel: Important Advisory Posted by Anthony Pell    An update for kernel is now available for Red Hat Enterprise Linux 6.2 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security update Advisory ID: RHSA-2016:1617-01 Product: […]

Pokémon GO Spam, Ransomware, On the Rise
Browser Address Bar Spoofing Vulnerability Disclosed
Profit-hungry Ghouls raid corporate networks worldwide
WikiLeaks Turkish AKP Email Dumps Contain Malware; Researcher
Video of Hillary Clinton meeting ISIS leader? Nah, it’s a malware attack
IT security woman hits back at sexist trolls on LinkedIn
Beware bogus blue verified checkmark scams on Twitter
ShadowBrokers’ Leak Has ‘Strong Connection’ to Equation Group
Nemucod now spreading banking trojans in Brazil

On the morning of Friday August 12th, ESET researchers noticed a huge outbreak of a new Spy.Banker variant, detected as Spy.Banker.ADEA. It happened at around 12pm CET. This new variant is similar to previous ones used by other banking trojans in South America. During execution, the malware checks if the system’s settings are in Portuguese […]

‘Video jacking’ attack allows attacker to see what you see
Trump’s ‘extreme’ anti-terrorism vetting may be H-1B nightmare
Shark bosses sink teeth into booming ransomware market
Operation Ghoul Targeting Middle Eastern Industrial, Engineering Organizations
Cerber ransomware operation exposed… and boy is it lucrative!
He’s a p0wnball Wizard, and he’s twisted one Ubuntu-powered game
Tech support scammers mess with hacker’s mother, so he retaliated with ransomware
Running a DNSSec responder? Make sure it doesn’t help the black hats
#Shadowbrokers hack could be Russia’s DNC counter-threat to NSA
FalseCONNECT sends vendors scrambling to patch proxy MITM bug
PGP admins: Kill short keys now, or Alice will become Chuck
Pakistani Hacker Gets $5000 for Reporting Flaws in Chrome and FireFox

Risk Level: Very Low. Type: Trojan, Virus, Worm.

After Linux, TCP Exploit Expandable to 80% of Android Devices

Today, we’ll look at yet another variant in the massive crop of malware that takes users’ files hostage: Nemucod ransomware. Nemucod is a ransomware which changes file names to *.crypted. While it’s not a brand new variant, a lot has changed in the last few months, and different methods have been used, but one constant has […]

VeraCrypt Audit Under Way; Email Mystery Cleared Up
Pokémon Go for Windows? Beware ransomware!
Vawtrak Banking Trojan Adds DGA, SSL Pinning
Hey crims: Stumped on where to invest? Try this global franchise. No experience needed!
$2.5 Million-a-Year Ransomware-as-a-Service Ring Uncovered