Menu

Latest articles

Interested in $10,000,000? Ready to turn in the Clop ransomware crew?
Busted ‘secure’ EncroChat messaging service leads to over 6,500 arrests by police

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/postgres was updated. The following patches have been included in this update:

The container suse/pcp was updated. The following patches have been included in this update:

The container bci/bci-init was updated. The following patches have been included in this update:

Miscreants leak texts and info siphoned by Android stalkerware app LetMeSpy
Cops’ total pwnage of ‘secure’ EncroChat nets 6,500+ arrests, €740m in funds – so far
Warning: JavaScript registry npm vulnerable to ‘manifest confusion’ abuse

Missing input validation in various functions may have resulted in denial of service in various functions provided by libx11, the X11 client-side library.

An update for python3 is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

DNS can speed up response to threats and make security operations more productive

Upstream security update with additional bugfixes. Resolves CVE-2023-2431.

The unhappy reality of cloud security in 2023
Tackling the cyber skills gap with AI
Political hackers strike City of Fort Worth, in protest at anti-trans legislation
Cloud security advice and expertise at your fingertips

Update to 114.0.5735.133. Fixes the following security issues: CVE-2023-3214, CVE-2023-3215, CVE-2023-3215, CVE-2023-3217,

Diablo IV video game hit by DDoS attacks

security update

Two vunerabilities were discovered in c-ares, an asynchronous name resolver library: CVE-2023-31130

UK hacker busted in Spain gets 5 years over Twitter hack and more
American and Southwest Airlines pilot candidate data exposed

An update for the python38:3.8 and python38-devel:3.8 modules is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Ex-FBI employee jailed for taking classified material home
JP Morgan accidentally deletes evidence in multi-million record retention screwup

The container suse/sle15 was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/python was updated. The following patches have been included in this update:

The container bci/python was updated. The following patches have been included in this update:

The unlimited value of a strong defence
Confidential computing: 5 support technologies to explore

The container bci/nodejs was updated. The following patches have been included in this update:

The container bci/bci-init was updated. The following patches have been included in this update:

The container bci/golang was updated. The following patches have been included in this update:

The container bci/golang was updated. The following patches have been included in this update:

The container bci/dotnet-runtime was updated. The following patches have been included in this update:

The container bci/dotnet-runtime was updated. The following patches have been included in this update:

Google bug bounties inch closer to Microsoft’s payouts

Red Hat OpenShift Container Platform release 4.12.22 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.12.

Update to version 1.2.1. This version includes a fix for CVE-2023-32570 (race condition that can lead to an application crash).

This is the June 2023 monthly update for .NET 7. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.7.md – SDK: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.107.md

This is the June 2023 monthly update for .NET 6. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.18.md – SDK: https://github.com/dotnet/core/blob/main/release- notes/6.0/6.0.18/6.0.118.md

Backport fix for CVE-2023-34969.

This is the June 2023 monthly update for .NET 7. It includes fixes for several CVEs. Release Notes: – Runtime: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.7.md – SDK: https://github.com/dotnet/core/blob/main/release-notes/7.0/7.0.7/7.0.107.md

security update

Maltego: Check how exposed you are online

A primer on how to use this powerful tool for uncovering and connecting information from publicly available sources The post Maltego: Check how exposed you are online appeared first on WeLiveSecurity

Aussie PM says, “Shut down your phone every 24 hours for 5 mins” – but that’s not enough on its own
Apple issues fix for zero-day flaws used in spy attacks against Kaspersky. Patch now!
What to know about the MoveIT hack – Week in security with Tony Anscombe

The US government has now announced a bounty of $10 million for intel linking the Cl0p ransomware gang to a foreign government The post What to know about the MoveIT hack – Week in security with Tony Anscombe appeared first on WeLiveSecurity

USN 6161-1 introduced a regression in .NET that could incorrectly cause X.509 certificate imports to fail when they should succeed.

BlackLotus bootkit patch may bring “false sense of security”, warns NSA
Millions of GitHub repositories vulnerable to RepoJacking: Report
UK cyberspies warn ransomware crews targeting law firms

Red Hat OpenShift Container Platform release 4.13.4 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13.

Red Hat OpenShift Container Platform release 4.13.4 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13.

Keep it schtum!

The container bci/php was updated. The following patches have been included in this update:

The container bci/php-fpm was updated. The following patches have been included in this update:

The container bci/php-apache was updated. The following patches have been included in this update:

Chinese malware intended to infect USB drives accidentally infects networked storage too
US cyber ambassador says China knows how to steal its way to dominance of cloud and AI
To kill BlackLotus malware, patching is a good start, but…

security update

security update

security update

security update

security update

Now BlackCat extortionists threaten to leak stolen plastic surgery pics
Going on vacation soon? Stay one step ahead of travel scammers

From bogus free trips to fake rental homes, here are some of the most common online threats you should look out for both before and during your travels The post Going on vacation soon? Stay one step ahead of travel scammers appeared first on WeLiveSecurity

S3 Ep140: So you think you know ransomware?

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

$10 million reward offered for information on Cl0p ransomware gang
Hackers threaten to release photos of Beverly Hills plastic surgery patients
RHEL confidential virtual machines on Azure: A technical deep dive
FIRST Announces CVSS v4.0 Public Preview
The Log4j vulnerability – how can we all do better next time?

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

Japan’s digital ID card gets emergency review amid data leaks
A clash of titans
Apple patch fixes zero-day kernel hole reported by Kaspersky – update now!
A (cautionary) tale of two patched bugs, both exploited in the wild
Smashing Security podcast #327: Mark’s metaverse for minors, and getting down to business
Apple squashes kernel bug used by TriangleDB spyware
FTC accuses DNA testing company of lying about dumping samples
Beware bad passwords as attackers co-opt Linux servers into cybercrime
Passwords out, passkeys in: are you ready to make the switch?

With passkeys poised for prime time, passwords seem passé. What are the main benefits of ditching one in favor of the other? The post Passwords out, passkeys in: are you ready to make the switch? appeared first on WeLiveSecurity

Oreo maker Mondelez staff hit by data breach at third-party law firm

A heap-based buffer overflow vulnerability was found in the HTTP chunk parsing code of minidlna, a lightweight DLNA/UPnP-AV server, which may result in denial of service or the execution of arbitrary code.

Training in Spanish for cyber security pros
“The Ransomware Documentary” – brand new video series from Sophos starting now!

An update for kpatch-patch is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Several security issues were fixed in pngcheck.