Our news about ransomware TeslaCrypt operators shutting up shop attracted a lot of attention and prompted several additional questions. So we’ve approached the best-placed person to address them – Igor Kabina, the ESET malware researcher who first noticed that things had started to change around TeslaCrypt ransomware and ultimately created the universal ESET TeslaCrypt decryption […]
What is the most important thing you should take with you on a cosmic trip? As highlighted by an annual celebration on May 25th, dubbed Towel Day, it is the humble towel. As the late author Douglas Adams put it in his famous Hitchhiker’s Guide to the Galaxy: “A towel, it says, is about the […]
Risk Level: Very Low. Type: Trojan.
Discovered: May 25, 2016 Updated: May 25, 2016 1:22:17 PM Also Known As: Bloccato [Trend] Type: Trojan Infection Length: Varies Systems Affected: Windows 7, Windows 8, Windows Vista Trojan.Ransomcrypt.AV is a Trojan horse that encrypts files on the compromised computer and asks the user to pay in order to decrypt them. Antivirus Protection Dates Initial […]
Discovered: May 25, 2016 Updated: May 25, 2016 11:17:28 AM Type: Trojan Infection Length: 126,976 bytes Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Backdoor.Psiload is a Trojan horse that opens a back door on the compromised […]
It was discovered that a buffer overflow in the XMLRPC response encoding code of the Atheme IRC services may result in denial of service. For the stable distribution (jessie), this problem has been fixed in version 6.0.11-2+deb8u1. For the testing distribution (stretch), this problem has been fixed in version 7.0.7-2. For the unstable distribution (sid), […]
Red Hat: 2016:1098-01: jq: Moderate Advisory Posted by Anthony Pell An update for jq is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: jq security update Advisory […]
Red Hat: 2016:1099-01: jq: Moderate Advisory Posted by Anthony Pell An update for jq is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: jq security update Advisory […]
Debian: 3586-1: atheme-services: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3586-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 23, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : atheme-services CVE ID : CVE-2016-4478 It was discovered that a buffer overflow in the XMLRPC response encoding code of the Atheme IRC services may result […]
An update for kernel is now available for Red Hat Enterprise Linux 6.4 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2016:1096-01 Product: Red Hat Enterprise Linux Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-1096.html Issue […]
��ݒ�F�0x-E�J���O�b�Z�Xg%[������Ej���lZVļ��칛۽܈}���d�d3�����lJ�7�K P�U������������N����3���W/����h�L=����_�����ܫ~-�I�����Cs�-?�_�:wM��߁’��є’65�/�{ٯ�~���x;y� ů~-�W�� ‘v�
Nearly everything we do in computer security is meant to protect data. After all, we don’t deploy antimalware software, tighten security configurations, or implement firewalls to protect users, per se. Job No. 1 is to protect the organization’s data — including employee and (especially) customer data. But guess what? People need to work with that […]
Risk Level: Very Low. Type: Trojan.
Multiple vulnerabilities were discovered in the dissectors/parsers for PKTC, IAX2, GSM CBCH and NCP which could result in denial of service. For the stable distribution (jessie), these problems have been fixed in version 1.12.1+g01b65bf-4+deb8u6. For the testing distribution (stretch), these problems have been fixed in version 2.0.3+geed34f0-1. For the unstable distribution (sid), these problems have […]
Debian: 3585-1: wireshark: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3585-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 22, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : wireshark CVE ID : CVE-2016-4006 CVE-2016-4079 CVE-2016-4080 CVE-2016-4081 CVE-2016-4082 CVE-2016-4085 Multiple vulnerabilities were discovered in the dissectors/parsers for PKTC, IAX2, GSM CBCH and NCP which […]
Slackware: 2016-141-01: curl: Security Update Posted by Anthony Pell New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue. [More Info…] [slackware-security] curl (SSA:2016-141-01) New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue. Here are […]
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Discovered: May 19, 2016 Updated: May 19, 2016 9:01:34 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows NT, Windows Vista, Windows XP Trojan.Ransomcrypt.AT is a Trojan horse that encrypts files on the compromised computer. Antivirus Protection Dates Initial Rapid Release version May 20, 2016 revision 034 […]
Risk Level: Very Low. Type: Trojan.
Gustavo Grieco discovered several flaws in the way librsvg, a SAX-based renderer library for SVG files, parses SVG files with circular definitions. A remote attacker can take advantage of these flaws to cause an application using the librsvg library to crash. For the stable distribution (jessie), these problems have been fixed in version 2.40.5-1+deb8u2. For […]
A lot happens in the security world and many stories get lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. TeslaCrypt Closing It’s Doors Here’s a bit of good ransomware news, for once. This week, […]
Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3584-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso May 19, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : librsvg CVE ID : CVE-2015-7558 CVE-2016-4347 CVE-2016-4348 Gustavo Grieco discovered several flaws in the way librsvg, a SAX-based renderer library for SVG files, parses SVG files with circular definitions. A remote attacker can take […]
Over 117 million emails and passwords belonging to LinkedIn members have been put online for sale, it has been revealed. Worryingly, this trove of information is not thought to have been obtained from a recent data breach. In fact, it is believed that the data was accessed in 2012, when the professional social network was […]
It was discovered that the swift3 (S3 compatibility) middleware plugin for Swift performed insufficient validation of date headers which might result in replay attacks. For the stable distribution (jessie), this problem has been fixed in version 1.7-5+deb8u1. For the testing distribution (stretch), this problem has been fixed in version 1.9-1. For the unstable distribution (sid), […]
Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3583-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff May 18, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : swift-plugin-s3 CVE ID : CVE-2015-8466 Debian Bug : 822688 It was discovered that the swift3 (S3 compatibility) middleware plugin for Swift performed insufficient validation of date headers which might result in replay attacks. For […]
Discovered: May 18, 2016 Updated: May 19, 2016 2:15:03 PM Type: Trojan Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Trojan.Ransomlock.AS is a Trojan horse that locks the desktop, making the computer unusable. Antivirus Protection Dates Initial Rapid Release […]
APPLE-SA-2016-05-18-1 OS X: Flash Player plug-in blocked Subject: APPLE-SA-2016-05-18-1 OS X: Flash Player plug-in blocked From: Apple Product Security <email@hidden> Date: Wed, 18 May 2016 15:34:13 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-05-18-1 OS X: Flash Player plug-in blocked Due to security issues in older versions, Apple has updated the web plug-in blocking mechanism […]
��}�r�Ʋ�o�*�0�OdL�(Y2�k���co���N�C�A�!�qT�����+l�>��7�’���/R;�-�� 0��������������’g���|w�����Og��%��M �O�t� 6=”�(��M}}N /|�@�{OgԴ����}:��ɋj��ع(‘̋�igK�*��JD�”�4r6sB��#�/�#g��Fm�p�`D#�6��4r”�_��:�P3�!���� �~�2��g4t�|A��|a�!*���Ԧ�8~a��LȒ��� xL���6GhD��D���j=�”��ܱ���=h�t�����naU�p�gfH�al�=�(C{G�,�#�~��b⫁�L�y�a�v#�mw�F{���!��ii{��B)�4��P[���hh��I��i-��%#CB�P?l*}d� ��s�F��MC2 ��1؏��D�6~6B}��`�� �lX,�?����A���h ��7�!0�E��O tlA^:���?#=�rc[:�^9ѻ�ޞ~>3s��w������`L�”�0[����&v�l~�L��X�T��Ѽ���PGi�쁥Oi� ��ѣ쯆ҵ��q@�8p��:��{��5l����BA�3_iA�#�(�u�+��3qͩ2L��i�F`N�I��’`�0�6��{���~���m���f��j7[���fd����FSw�7�f��5���{��z�V��“cw��#�F�����:MT���K�y�s�Ҕn��d�汥��50�Jvl��UY/|�<3�߃H46)MhU7}�z���q�ռ�'�)B�}���O�3�a�a���T����k@���w?���A~�xb��ش.)�4?e��^Ҍ.`#_����7�y9� h|�������� A�i�Q~�P�e�|z��Jk�z�i�̊��i�wq(E�5� ���&���±#.1!(�� ��IP��cѓS,��.� d����[=#��h#�y4ѥ�y�h�G���r�W��?d�f�y���e3+Fi��]M�O �VC�q�U� �;�)���9̤����O���N����(���8�3Xt}�t4��G�˕�U_gԙ#ҡ�����xv��#�&z���^� ��S(����i�bϮ��^�!�����O�25��RW+d�8�@e�㡽���ĪȪ�S��)Ŝcf�c�g�j㥖�o�s���y��U1�j2�����*1�� ��/�l���,�9�}�*y1���z��h�l�ׇ��2�E)AI���υ3��ԍ�t"�tb�n��[#���虗�Q_2�ST��]0���&�Y�S-�Lj�M��(�N����#��#㘱(�ӯ;� �6L'�g-A��C��טK=,P�����{���0*�aS,��[2��[���A}xZN`����<�&�C92�.�Ap�+���t� �A�����z�f���Ga� T����U�q�S+�rVz9f�D��O�f��`e�;o��.�Z���u^��բJp1y3-�q��V"a� �:��W��ۮ6w�ne���&?�����&�)����P������9 ���2�?Q� �)A �@��c�Z�B���a��e܂�͕Ȁ��B�!7��%��f��ᅮF��|�y,�8�x�ou��RX�dl�/:�ւsQ�1Fxy݄�XP+ b���ޫ��Ƀ��Y��B�H|����C�8�G�J7e����/i�P��MuP�4�^� h[i�p�y�yԯ�?����Gմ��u��j�����a�ɓ^�p��U��y�F��/�2I+`.[hK~`,��t-IU��1��3���(��P|�( �,”�l�R���y9�”�2r-��9����{v*�(�C�v�{0oqɢ>S���{����B� ��8�{-��W7�V`��U;�m�x��)Z�͒>�V-u5Vj�;^y�z�NX��’qP���������~�Ӄ^(üB�3��3/q��}A��8|盬&�~%���� �B��b�b9�*�(�6��’�!�Ã`E�*�j.����3|j��,s��H�C#5,���#�<=5L�#�`N:+�D���W�E� 6 ��E���o#�wF"�����a��M ȱ�`���1X�9��@�i���k�Ue�t'xb�!=�B�)bFL���+7��n ��C"܄O���+y�{����&���r�Z�K&�M�s��p�O�|��%!�B���h��F)1�@�zG��PGl zF���@�L1� �hy�#q6Jj���wZ��7�=A��ؔ���`O���3Wn��Yd;d?��(�¿�s�����K�YPkR�S�7���� �z[Nޮd���Tjw��Ž0��Ҕg�tt��x�')�������%��G��Oq[�J�mp+�N%�̭昬R�m2cs�N�Z�Peg���>L�g7�?�ɷЭ���;��ۇ�[,-4f ���P>/G�0r�L]Cbpײ��O��s&E�┬�”^%&��N��)��4F��31��|��Ɗ%�:�VG��1`,�P���1L���’”D��].X`뺮Ȉ�4��uy P�wgf�)���O��SI��N����m�m�eu���B֩=�s���n8�J�M���iXI����LV���uu����^�5����I��X�O�r�;�hv,N9�ѣ�u,�s�8�����ouX����ݶ|-N [Y:�R�l�9����ܗ��*��M�y 5b�5�A��(�.����K�ޥ�B�I>��P�^�(e �W�yL0�����J!�s��3G��x���H|z_8Z��R�pSX�q�%�������|�{��Ij���l��*,�#~�H7y��Nx��d+)9�lKDx��>&2D;0m’�H{�ʹ�|�)�YV�a�lY�Ͱ�g��_h(!�v��.������Q0|�C�����P��g�I�Q��r���.ff�>�y������M��6���fw��$DD:i-�xLd�]����|����}����s~(�g�L����z6��4�T��8��B��dz�t�?F�ulz��<�g���i�I'��N���崊�S�P;y)�ZX�1��c�p�*��2Q�j.�P��WJ:Y�*ώmn�N�ө�k��낉�,R�q��ֆ�5V+u喁 7���6�/o{���8*�� g�/l�pw�xxd��r���&�usӰ����J���{�%Z�)?�~�z�j�*K��x�⦪[./����hm� �q,N<���f��0ZV~�P3�A���c�����;�7X�d������/7c�bΖ�[��?���R�o���(�/��o7���サ�ڛl�X���JS&�����v�ֱ���yO&�GZ��V�4����@�?�MBF������’�rGDu������%7�֨��3/y�S�ǛP��%�D^l�ѝ�(+Ҹ�I>/��g=tXf[��3RS^���N.���:YL2�BPG��} �O�(���0��7��t’z���,/�ȡ�Q2�[`�D�z;�R���B�I~`���C_��”��@�6″�ԁ<�G�$�l��җsP8�q(��Ot�ϒ�{�� ����e�ȥ�8�;��e��xxx@�i��{�J���f���R�q��.S�?������k�A����JK���4�U ,ЂN(�V"Ыc|���7��'/���+Z�I@i�:���U�wz�s�Y�kF��?��� R��JCjYs�R��J�s��d��N^��p�0 bB��RN�T����M[~f�K��G� r�WD���� […]
Posted by Anthony Pell USN-2950-1 introduced regressions in Samba. ========================================================================== Ubuntu Security Notice USN-2950-4 May 18, 2016 samba regressions ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 12.04 LTS Summary: USN-2950-1 introduced regressions in Samba. Software Description: – samba: SMB/CIFS file, print, and login server for Unix Details: […]
Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS Advisories Ubuntu: 2950-4: Samba regressions Ubuntu: 2983-1: Expat vulnerability Debian: 3582-1: expat: Summary Ubuntu: 2982-1: Libksba vulnerabilities Ubuntu: 2981-1: libarchive vulnerabilities Ubuntu: 2980-1: libndp vulnerability Debian: 3581-1: libndp: Summary Gentoo: 201605-02 […]
Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3582-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso May 18, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : expat CVE ID : CVE-2016-0718 Gustavo Grieco discovered that Expat, an XML parsing C library, does not properly handle certain kinds of malformed input documents, resulting in buffer overflows during processing and error reporting. […]
Posted by Anthony Pell Libksba could be made to crash or run programs if it decoded speciallycrafted data. ========================================================================== Ubuntu Security Notice USN-2982-1 May 17, 2016 libksba vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS – Ubuntu 15.10 – Ubuntu 14.04 LTS – Ubuntu 12.04 […]
libarchive could be made to crash or run programs if it opened a speciallycrafted file. ========================================================================== Ubuntu Security Notice USN-2981-1 May 17, 2016 libarchive vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS – Ubuntu 15.10 – Ubuntu 14.04 LTS – Ubuntu 12.04 LTS Summary: libarchive could […]
Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS Advisories Ubuntu: 2950-4: Samba regressions Ubuntu: 2983-1: Expat vulnerability Debian: 3582-1: expat: Summary Ubuntu: 2982-1: Libksba vulnerabilities Ubuntu: 2981-1: libarchive vulnerabilities Ubuntu: 2980-1: libndp vulnerability Debian: 3581-1: libndp: Summary Gentoo: 201605-02 […]
Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3581-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso May 17, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libndp CVE ID : CVE-2016-3698 Debian Bug : 824545 Julien Bernard discovered that libndp, a library for the IPv6 Neighbor Discovery Protocol, does not properly perform input and origin checks during the reception of […]
Posted by Anthony Pell Multiple vulnerabilities have been found in the Chromium web browser, the worst of which allows remote attackers to execute arbitrary code. – – – – – – – – – – – – – – – – – – – – – – – – – – – – – […]
Several security issues were fixed in the kernel. ========================================================================== Ubuntu Security Notice USN-2978-2 May 16, 2016 linux-lts-wily vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 14.04 LTS Summary: Several security issues were fixed in the kernel. Software Description: – linux-lts-wily: Linux hardware enablement kernel from Wily for Trusty […]
