Menu

Category Archives: Security

Articles about security

All the president’s spies: Which candidates back the NSA

Source: ZDNet Security – Posted by Anthony Pell    The government’s web snooping plans have come in for yet more criticism, this time for lacking clarity around its stance on encryption and plans to record everyone’s web surfing history for a year. Lord Murphy of Torfaen, chairman of a parliamentary committee that has just published […]

<div>Gmail to warn you if your friends aren't using secure e-mail</div>
Source: arsTechnica – Posted by Anthony Pell    Google has confirmed a number of changes to Gmail with the arrival of two new features that will let [...]
<div>Gmail to warn you if your friends aren't using secure e-mail</div>
Source: arsTechnica – Posted by Anthony Pell    Google has confirmed a number of changes to Gmail with the arrival of two new features that will let [...]

Posted by Alex    Log.io is a small simple but effective application build on top of Node.js and Socket.io, which allows to monitor Linux servers log files in real time through web interface screen widgets. This tutorial will guide you on how you can install and monitor any local log files in real time with […]

Source: arsTechnica – Posted by Anthony Pell    Google has confirmed a number of changes to Gmail with the arrival of two new features that will let you know if the people you�re corresponding with aren�t hip with TLS encryption. The alterations are fairly subtle: when you receive a message from, or are on the […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 22 nodejs-is-my-json-valid-2.12.4-1.fc22 Fedora 22 python-pymongo-2.5.2-8.fc22 Fedora 23 python-pymongo-2.5.2-8.fc23 Slackware: 2016-042-01: mozilla-firefox: Security Update Ubuntu: 2893-1: Firefox vulnerability Debian: 3473-1: nginx: Summary Ubuntu: 2894-1: PostgreSQL vulnerabilities Fedora 22 php-PHPMailer-5.2.14-1.fc22 Community […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 22 nodejs-is-my-json-valid-2.12.4-1.fc22 Fedora 22 python-pymongo-2.5.2-8.fc22 Fedora 23 python-pymongo-2.5.2-8.fc23 Slackware: 2016-042-01: mozilla-firefox: Security Update Ubuntu: 2893-1: Firefox vulnerability Debian: 3473-1: nginx: Summary Ubuntu: 2894-1: PostgreSQL vulnerabilities Fedora 22 php-PHPMailer-5.2.14-1.fc22 Community […]

An updated Adobe Flash Player package that fixes multiple security issues is now available for Red Hat Enterprise Linux 5 and 6 Supplementary. Red Hat Product Security has rated this update as having Critical security [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: flash-plugin security update Advisory ID: RHSA-2016:0166-01 Product: Red Hat Enterprise Linux Supplementary […]

Sync with latest openssh package. ——————————————————————————– Fedora Update Notification FEDORA-2016-4509765b4b 2016-02-10 13:34:26.230007 ——————————————————————————– Name : gsi-openssh Product : Fedora 23 Version : 7.1p2 Release : 3.fc23 URL : http://www.openssh.com/portable.html Summary : An implementation of the SSH protocol with GSI authentication Description : SSH (Secure SHell) is a program for logging into and executing commands on […]

Risk High Date Discovered February 9, 2016 Description Microsoft Windows is prone to a remote code-execution vulnerability. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. Technologies Affected Microsoft Windows 10 for 32-bit Systems Microsoft […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft SharePoint is prone to a cross-site scripting vulnerability because it fails to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a denial of service vulnerability. Successful exploits may allow the attacker to cause a denial of service condition. Technologies Affected Microsoft Windows Server 2008 R2 Itanium SP1 Microsoft Windows Server 2008 R2 for x64-based Systems SP1 Microsoft Windows Server 2008 for 32-bit […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Edge and Internet Explorer are prone to a security vulnerability that may allow attackers to conduct spoofing attacks. An attacker can exploit this issue to conduct spoofing attacks and perform unauthorized actions; other attacks are also possible. Technologies Affected Microsoft Edge Microsoft Internet Explorer 10 Microsoft […]

Risk High Date Discovered February 9, 2016 Description Microsoft Windows PDF library is prone to a buffer-overflow vulnerability because it fails to adequately bounds check user-supplied data before copying it to an insufficiently sized memory buffer.. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed […]

Risk High Date Discovered February 9, 2016 Description Microsoft Windows is prone to a remote memory-corruption vulnerability. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. Technologies Affected Microsoft Windows 10 for 32-bit Systems Microsoft […]

Office 2010 patch KB 3114750 clobbers Outlook Calendar (again)

Part one of this series provided a high-level overview of Threat Intelligence, the underlying data types common in the current security landscape and how these data are gathered, analyzed and consumed. As cyber security becomes a key focus for the IoT it may appear, on the surface, much of the existing threat intelligence and the […]

How to isolate VBS or JScript malware with Visual Studio

��}�۶��o�*���ZR,R���|Y�Ǔ�믛�$��d� �8C�4?F�8����1�j�`�M�l7� Ei$��l��8�H��ht7� �ɃoO�ywJ�?����’�h�������3���7=��I�G��7�)k��C ��{2a��߃’��ɔE��هؾ�i’�17���>��P��i�����pB��E�8�i����7��g�7�id�����,_եS�Ӯm6� RJ�l+��,vm��ԉ�ڑM=R���2Hc�;L���,�G���ŠE��c�{��q�y�zaQf���g/����͟� [7��5ul�F�h� ؓ�����N�{��3��u�ͦ�������gf[�”��tl���ia4wX8a�%هa��)�l����v�����!��fƌ9�5�0�hn�ic���F4aS6�;��� ��������O�:9��!A����#{j��,2�� `D’�޿�$�#���f$��5�O�ψ�� ۏȔ:30Q�’;��C΢ز�’ Q��JV���^~�N�N�ɄN�����57���OP� �1���Yh��R�Įł0���{)i��”���+#ٰJ�9`g u�3�&̽�ϝvZz� “���m�z��j��F��0͆$�~=�K�]vP���CN����@��h΅��P”�1��By�(/�4��Ö�ƱR�o;����~IO��Qz����Hi:� %g��Һr�”:V���oP�`�ҷ�ERHV�up��c�:�.@�4A��͖n��f�sx�j?n6��͕ঞ��rh̓s�{d�G�*h�>�w�cO阭�i�t�G�0e�2�3 �+-����� i`)-��tJ�����_P���dgJp |�`���q)}�)��UB����e�#���M��ţaD�N�߉Ƕkp��1Ѣj+]�k*�j}(qof��73.f>�z��ppAHz�6�!�t���_�13�`�k�S&�1��k���ߺ�o����4�x�Z���iG5����� ����”Amw���t�����)��2| l�c��}�ӧc�փQ�r�X��A}X��&V��>^Ӏ{�S��:y��� PG�խ������7ѣGꯪֲ��q�8p�Y��v�s��jX�9����:�p��%�C�`�aF��^�G�b�z��96F�7=_�ijXuo��׭�u�V=}n����z�V��F��^Uk���q4�Y�v��}��ޓ��z=��G�V�n�_7k(f��[�v���Ҕ���d�����a�”���X`��^�|~N�o@$�zdZ Z5��3�:�؎U�>a���!�>�Ea�chO}��,h�?�`”���v� �������_>�P���U/e��G�`�%�6�E� ���Gu���]�����k��+;�f���⻪-KO�(fi�q�Y�Ӓ��j�wq(Et8ᅪ����5l;��c�B��iuA���AX���o�C�’gX�]�W �2#$�?>~��E؟�j�w�hdH����Ȉf���Z�R�Z�SU誺� c���UC �!ت�� �sE��ߞ��Nm����’D>޿g١���L�(���8�3u#�>��O�82_n�pB���f�’�1a��}�~{�{0@��&1��ŏ��”�tp��PHopxƁ�>>�P��?�”e���(�w�L��>��K��;��j�ST��]0���&�j�����h��7]X胢�:�F����J:2�`�J�� ��6��5(5�#��p�6�t�?�&��&lL��Ƒ�x�b nɊ`˘+”��ĻpA���q��Y�l5u|�V�/Y}�����VW<�]�B�*�¹ћ ؿ�f����~*�r)]�)#5P?�������ħ�_�A���y�[�XT�G�����������f2ʅ�TEJR������V�,�$�W `j�r���l�+�"�E�/xV�U-�����������)”� �� ��f�X�5���@`�C�W�e��-�:�)��^�.9K��B(�@��Z���U`5″�μ���m` �`�� �%�I�V2ph]�>� �N�|9���[F[�p�|)��)U�����)iQ���J�v��_��;�I!@ ��=���@(1�b�E”KD�SQ������������/�~�Z��~�Y͔���,u|m���v@oMl˂��Z4��Ł�խzXw�v����[��� .� d�ceM�0�AT9���f�a��#~n’����G� (��Z���7�/{��P����W���+4u+O+��n}�U*ǗB����1�o�WV�V`����8��8�S��^���ht�6R��p�����~��m ȱa`�x����b��W�P�g4�gn�RV��.�����2T��&&�tn��XK� Dxȸ��r<�����Y���f�5��2���+� C��0��hM���x� u�%��B��RB�@f���q:ԑ7��_IxG�8Ƙ悄ZTA��+%U��W̡:�bE2I�e�HЮ

Bill in Congress would ban states from seeking encryption backdoors
UCLA just open-sourced a powerful new image-detection algorithm

Source: TechWorm – Posted by Alex    Hacker makes good his promise and leaks contact information of 20000 FBI employees After releasing stolen records of 9000 employee from Department of Homeland Security, the hacker who goes by the Twitter handle of @DotGovs today leaked contact information of 20000 FBI employees. The hacker had promised yesterday […]

Source: TheIntercept – Posted by Anthony Pell    If the U.S. government tries to strong-arm American companies into ending the sale of products or applications with unbreakable encryption, the technology won�t disappear, a group of researchers conclude in a new report. It would still be widely available elsewhere. Some U.S. law enforcement officials argue that […]

Source: arsTechnica – Posted by Anthony Pell    An estimated 63 percent of the encryption products available today are developed outside US borders, according to a new report that takes a firm stance against the kinds of mandated backdoors some federal officials have contended are crucial to ensuring national security. The report, prepared by security […]

Posted by Anthony Pell    New upstream release: fixes CVE-2015-8476. ——————————————————————————– Fedora Update Notification FEDORA-2015-39522bb8c9 2016-02-11 09:49:16.132384 ——————————————————————————– Name : php-PHPMailer Product : Fedora 22 Version : 5.2.14 Release : 1.fc22 URL : http://phpmailer.worxware.com/ Summary : PHP email transport class with a lot of features Description : Full Featured Email Transfer Class for PHP. PHPMailer […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 22 php-PHPMailer-5.2.14-1.fc22 Fedora 23 firefox-44.0.1-2.fc23 Fedora 23 php-PHPMailer-5.2.14-1.fc23 Fedora 23 firebird-2.5.5.26952.0-1.fc23 Red Hat: 2016:0166-01: flash-plugin: Critical Advisory Fedora 23 gsi-openssh-7.1p2-3.fc23 Fedora 22 claws-mail-3.13.2-1.fc22 Red Hat: 2016:0157-01: python-django: Moderate Advisory […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 22 php-PHPMailer-5.2.14-1.fc22 Fedora 23 firefox-44.0.1-2.fc23 Fedora 23 php-PHPMailer-5.2.14-1.fc23 Fedora 23 firebird-2.5.5.26952.0-1.fc23 Red Hat: 2016:0166-01: flash-plugin: Critical Advisory Fedora 23 gsi-openssh-7.1p2-3.fc23 Fedora 22 claws-mail-3.13.2-1.fc22 Red Hat: 2016:0157-01: python-django: Moderate Advisory […]

Posted by Anthony Pell    New upstream release: fixes CVE-2015-8476. ——————————————————————————– Fedora Update Notification FEDORA-2015-abf9659276 2016-02-11 09:49:39.042856 ——————————————————————————– Name : php-PHPMailer Product : Fedora 23 Version : 5.2.14 Release : 1.fc23 URL : http://phpmailer.worxware.com/ Summary : PHP email transport class with a lot of features Description : Full Featured Email Transfer Class for PHP. PHPMailer […]

Update from 3.13.1 to 3.13.2 for bug-fixes. Includes security fix forCVE-2015-8708. ——————————————————————————– Fedora Update Notification FEDORA-2016-b211281b8e 2016-02-10 10:19:50.055896 ——————————————————————————– Name : claws-mail Product : Fedora 22 Version : 3.13.2 Release : 1.fc22 URL : http://claws-mail.org Summary : Email client and news reader based on GTK+ Description : Claws Mail is an email client (and news […]

Updated python-django packages that fix one security issue are now available for Red Hat Enterprise Linux OpenStack Platform 5.0 for Red Hat Enterprise Linux 7. [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python-django security update Advisory ID: RHSA-2016:0157-01 Product: Red Hat Enterprise Linux OpenStack Platform Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-0157.html Issue date: 2016-02-10 CVE Names: CVE-2015-8213 […]

Updated python-django packages that fix one security issue are now available for Red Hat Enterprise Linux OpenStack Platform 7.0. Red Hat Product Security has rated this update as having Moderate security [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python-django security update Advisory ID: RHSA-2016:0156-01 Product: Red Hat Enterprise Linux OpenStack Platform Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-0156.html […]

Updated python-django packages that fix one security issue are now available for Red Hat Enterprise Linux OpenStack Platform 5.0 for Red Hat Enterprise Linux 6. [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: python-django security update Advisory ID: RHSA-2016:0158-01 Product: Red Hat Enterprise Linux OpenStack Platform Advisory URL: https://rhn.redhat.com/errata/RHSA-2016-0158.html Issue date: 2016-02-10 CVE Names: CVE-2015-8213 […]

Posted by Anthony Pell    This update fixes for security vulnerabilities, including CVE-2016-0775,CVE-2016-0740. ——————————————————————————– Fedora Update Notification FEDORA-2016-4b06195979 2016-02-09 16:33:27.876837 ——————————————————————————– Name : python-pillow Product : Fedora 23 Version : 3.0.0 Release : 2.fc23 URL : http://python-pillow.github.io/ Summary : Python image processing library Description : Python image processing library, fork of the Python Imaging Library […]

Posted by Anthony Pell    Several security issues were fixed in nginx. ========================================================================== Ubuntu Security Notice USN-2892-1 February 09, 2016 nginx vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 15.10 – Ubuntu 14.04 LTS Summary: Several security issues were fixed in nginx. Software Description: – nginx: small, powerful, […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft ASP.NET is prone to a cross-site request-forgery vulnerability. An attacker can exploit this issue to perform unauthorized actions in the context of a logged-in user of the affected application. This may aid in other attacks. Technologies Affected Microsoft ASP.NET MVC 5.0 Microsoft ASP.NET MVC 6.0 Microsoft […]

Risk High Date Discovered February 9, 2016 Description Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability. Attackers can exploit this issue by enticing an unsuspecting user to view a specially crafted web page. Attackers can exploit this issue to execute arbitrary code in the context of the currently logged-in user. Failed attacks will […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Internet Explorer is prone to an information-disclosure vulnerability. Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks. Internet Explorer 9, 10, 11 are vulnerable. Technologies Affected Microsoft Internet Explorer 10 Microsoft Internet Explorer 11 Microsoft Internet Explorer 9 Recommendations Run […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a local privilege-escalation vulnerability. A local attacker can exploit this issue to execute arbitrary code in kernel mode with elevated privileges. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells. To exploit this vulnerability, an […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a local security-bypass vulnerability. A local attacker can leverage this issue to bypass certain security restrictions and perform unauthorized actions. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells. Allow only trusted individuals to have […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a denial of service vulnerability. An attacker can exploit this issue to cause the system to stop responding, denying service to legitimate users. Recommendations Block external access at the network boundary, unless external parties require service. If global access isn’t needed, filter […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a local privilege-escalation vulnerability. A local attacker can leverage this issue to execute arbitrary code with elevated privileges. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells. Ensure that only trusted users have local, interactive […]

Risk Medium Date Discovered February 9, 2016 Description Microsoft Windows is prone to a local privilege-escalation vulnerability. A local attacker can leverage this issue to execute arbitrary code with elevated privileges. Recommendations Permit local access for trusted individuals only. Where possible, use restricted environments and restricted shells. Ensure that only trusted users have local, interactive […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Risk High Date Discovered February 9, 2016 Description Microsoft Office is prone to a remote memory-corruption vulnerability because it fails to properly handle objects in memory. An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions. […]

Microsoft fixes 36 flaws in IE, Edge, Office, Windows, .Net Framework
Setting up a Windows 10 picture PIN
Identity thieves obtain 100,000 electronic filing PINs from IRS system
Let’s bring back the balance between IT and business

Source: ZDNet Security – Posted by Dave Wreski    A new bill introduced by two congressmen aims to prevent local legislatures from enacting laws weakening security or banning sales of encrypted smartphones in their states. On Wednesday, Rep. Ted Lieu (D-CA, 33rd) introduced the bipartisan draft bill — dubbed the Ensuring National Constitutional Rights of […]

Source: arsTechnica – Posted by Anthony Pell    Google has confirmed a number of changes to Gmail with the arrival of two new features that will let you know if the people you�re corresponding with aren�t hip with TLS encryption. The alterations are fairly subtle: when you receive a message from, or are on the […]

Gmail to warn you if your friends aren’t using secure e-mail
Google has confirmed a number of changes to Gmail with the arrival of two new features that will let you know if the people you�re corresponding with [...]

Source: tomsHardware – Posted by Dave Wreski    After New York and California tried to pass bills that ban phones from using disk encryption that only the device owners can decrypt, senator John McCain wants to ban all encryption that can�t be decrypted by companies and the government at the federal level. McCain called for […]

Source: Motherboard – Posted by Anthony Pell    A hacker, who wishes to remain anonymous, plans to dump the apparent names, job titles, email addresses and phone numbers of over 20,000 supposed Federal Bureau of Investigation (FBI) employees, as well as over 9,000 alleged Department of Homeland Security (DHS) employees, Motherboard has learned. The hacker […]

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Active Directory Federation Services is prone to a denial of service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

LinuxSecurity.com: New libsndfile packages are available for Slackware 13.37, 14.0, 14.1, and -current to fix security issues. [More Info…]

LinuxSecurity.com: New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue. [More Info…]

LinuxSecurity.com: USN-2880-1 introduced a regression in Firefox.

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

Many of you are probably familiar with VirusTotal, a service that allows you to scan a file or URL using multiple antivirus and URL scanners. VirusTotal results are often used in write-ups about new malware to show how widely a sample is detected by the AV community. We receive links to VirusTotal results via our […]

Google adds warning to unencrypted emails

In a 2016 survey of 500 PC gamers, Webroot discovered statistically significant differences in the ways that male and female gamers approach internet security, 3rd party modifications, and the way they choose to portray their gender online. In fact, we found surprisingly large discrepancies between those who identified as male and those who identified as […]

Southwest Airlines flight giveaway scams spread on Facebook

There is no such thing as a free lunch, and even if there was… who likes airline food that much anyway? The post Southwest Airlines flight giveaway scams spread on Facebook appeared first on We Live Security.

US government wants to sharply increase spending on cyber security
Cybersecurity e-learning course launches in the UK for HR staff

A new e-learning tool has been launched in the UK to help HR professionals effectively deal with cybersecurity issues in the British workplace. The post Cybersecurity e-learning course launches in the UK for HR staff appeared first on We Live Security.

Adwind evolves to offer cyber criminals one-stop shop for malware
Stay safe with our Facebook cheat sheet

Learn how to boost your Facebook privacy on Safer Internet Day with our excellent cheat sheet. It’ll work to your advantage now and in the future. The post Stay safe with our Facebook cheat sheet appeared first on We Live Security.

5 tips to protect your admin credentials

LinuxSecurity.com: Nearly three years after former NSA contractor Edward Snowden first leaked details about massive domestic spying, his revelations have prompted a broader discourse, especially among legal scholars, over the potentially invasive nature of big data cybersurveillance tools.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Outlook for Mac is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

LinuxSecurity.com: An updated sos package that fixes one security issue and one bug is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security [More…]

LinuxSecurity.com: Updated python-django packages that fix one security issue are now available for Red Hat Enterprise Linux OpenStack Platform 6.0 for RHEL 7. Red Hat Product Security has rated this update as having Moderate security [More…]

LinuxSecurity.com: Update from 3.13.1 to 3.13.2 for bug-fixes. Includes security fix forCVE-2015-8708.

LinuxSecurity.com: – update to upstream release 1.8.1 – CVE-2016-0747: Insufficient limits ofCNAME resolution in resolver – CVE-2016-0746: Use-after-free during CNAMEresponse processing in resolver – CVE-2016-0742: Invalid pointer dereference inresolver