Menu

Latest articles

Cybercriminals Are Selling Access to Chinese Surveillance Cameras

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code or spoofing.

An update that fixes one vulnerability is now available.

An update that fixes 7 vulnerabilities is now available.

Updated images that include numerous enhancements, security, and bug fixes are now available for Red Hat OpenShift Data Foundation 4.11.0 on Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact

An update for systemd is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for curl is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Crooks target top execs on Office 365 with MFA-bypass scheme
S3 Ep97: Did your iPhone get pwned? How would you know? [Audio + Text]
Twitter, Meta kill hundreds of pro-Western troll accounts
Ever present danger
How RavenDB Has Earned the Trust of Hundreds of Companies
Shout-out to whoever went to Black Hat and had North Korean malware on their PC
Block sued after ex-staffer siphons customer data

With social engineering now the #1 cause of cyberattacks, it’s imperative for you to learn how to stop social engineering attacks against your business. Your first step in stopping them is to learn what they are and how they work. After that, you need to learn how combining security layers like Endpoint Protection and Email […]

80,000 internet-connected cameras still vulnerable after critical patch offered
Breaching airgap security: using your phone’s compass as a microphone!
Is your personal data all over the internet? 7 steps to cleaning up your online presence

You may not be able to disappear completely from the internet, but you can minimize your digital footprint with a few simple steps The post Is your personal data all over the internet? 7 steps to cleaning up your online presence appeared first on WeLiveSecurity

VMware confirms Carbon Black causing BSODs, boot loops on Windows
Twitter Whistleblower Complaint: The TL;DR Version
Attacker snags account details from streaming service Plex

open-vm-tools could be made to run programs as an administrator.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Lloyd’s to exclude certain nation-state attacks from cyber insurance policies

security update

Twitter savaged by former security boss Mudge in whistleblower complaint
Smartphone gyroscopes threaten air-gapped systems, researcher finds
Hackers demand $10 million from Paris hospital after ransomware attack
Bitcoin ATMs leeched by attackers who created fake admin accounts
Firewall Bug Under Active Attack Triggers CISA Warning
Getting started with Red Hat Insights malware detection
Black Hat USA 2022 & DEF CON 30: Highlights, Key Findings & Notable Trends

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

patchlevel 213 Security fixes for CVE-2022-2819, CVE-2022-2816, CVE-2022-2817

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

Microsoft finds critical hole in operating system that for once isn’t Windows
If you haven’t patched Zimbra holes by now, assume you’re toast
Novant Health admits leak of 1.3m patients’ info to Facebook
Hiding a phishing attack behind the AWS cloud

security update

Warning over Java libraries and deserialization security weaknesses
LockBit gang hit by DDoS attack after threatening to leak Entrust ransomware data
Laptop denial-of-service via music: the 1980s R&B song with a CVE!
Fake Reservation Links Prey on Weary Travelers
Mac users urged to update Zoom, after security patch released for previously-flawed security patch

An update that solves one vulnerability and has two fixes is now available.

Several security issues were fixed in Libxslt.

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Security is hard and won’t get much easier
Zoom patches make-me-root security flaw, patches patch
NSO Group CEO steps down, 100 employees let go too

New vim packages are available for Slackware 15.0 and -current to fix a security issue.

Multiple vulnerabilities have been discovered in Apache Tomcat, the worst of which could result in denial of service.

Multiple vulnerabilities have been found in Chromium and its derivatives, the worst of which could result in remote code execution.

A vulnerability has been found in libcroco which could result in denial of service.

Google and Apple both release patches against zero‑day vulnerabilities – Week in security with Tony Anscombe

Zero-day vulnerabilities are super active and Google and Apple are acting to patch these vulnerabilities, some of which seen on-the-wild. The post Google and Apple both release patches against zero‑day vulnerabilities – Week in security with Tony Anscombe appeared first on WeLiveSecurity

KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB.

An update that fixes three vulnerabilities is now available.

The container sles-15-sp3-chost-byos-v20220818-x86-64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp3-chost-byos-v20220818-hvm-ssd-x86_64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp3-chost-byos-v20220818-x86_64-gen2 was updated. The following patches have been included in this update:

Code execution via malicious map file (CVE-2021-43518) References: – https://bugs.mageia.org/show_bug.cgi?id=30717 – https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/JIYZ7EVY6NZBM7FQF6GVUARYO6MKSEAT/

Ex-HP finance manager jailed after going on $5m spending spree using company plastic

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

iPhone Users Urged to Update to Patch 2 Zero-Days
Two years on, Apple iOS VPNs still leak IP addresses

The container suse/sles12sp5 was updated. The following patches have been included in this update:

The container suse/sles12sp4 was updated. The following patches have been included in this update:

The truth about that draft law banning Uncle Sam buying insecure software

rsync could be made to crash or run programs if it received specially crafted input.

Keeping the keys to the kingdom secure
Google blocks third record-breaking DDoS attack in as many months
Apple patches double zero-day in browser and kernel – update now!
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
Google Patches Chrome’s Fifth Zero-Day of the Year

PostgreSQL could be made to run programs when creating or updating extensions.

Streamlining IT security operations with Red Hat Insights and Red Hat Satellite
Open-Source VPN Protocols Compared: Why WireGuard is on the Rise!

An update that fixes 14 vulnerabilities is now available.

A command injection vulnerability was found in FreeCAD, a parametric 3D modeler, when importing DWG files with crafted filenames. For Debian 10 buster, this problem has been fixed in version

A step‑by‑step guide to enjoy LinkedIn safely

LinkedIn privacy settings are just as overwhelming as any other social media settings. There’s a lot of menus, a lot buttons to enable, select, accept or reject. To make sure you have control over your information we bring you a step-by-step guide on how to enjoy LinkedIn safely. The post A step‑by‑step guide to enjoy […]

An update that fixes three vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Ransomware attack on UK water company clouded by confusion
Deluge of of entries to Spamhaus blocklists includes ‘various household names’
Janet Jackson music video declared a cybersecurity exploit

security update