Menu

Latest articles

USA adds two more Chinese carriers to ‘probably a national security threat’ list
Crypto biz Wintermute loses $160m in cyber-heist, tells us not to stress out
Meta, Twitter, Apple, Google urged to up encryption game in post-Roe America
Can your iPhone be hacked? What to know about iOS security

Here are some of the most common ways that an iPhone can be compromised with malware, how to tell it’s happened to you, and how to remove a hacker from your device The post Can your iPhone be hacked? What to know about iOS security appeared first on WeLiveSecurity

Rising to the challenges of secure coding – Week in security with Tony Anscombe

The news seems awash this week with reports of both Microsoft and Apple scrambling to patch security flaws in their products The post Rising to the challenges of secure coding – Week in security with Tony Anscombe appeared first on WeLiveSecurity

Several security issues were fixed in LibTIFF.

3 wins and 3 losses for cloud computing

Red Hat OpenShift Container Platform release 4.11.5 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.11.

The container bci/python was updated. The following patches have been included in this update:

The container suse/pcp was updated. The following patches have been included in this update:

The container bci/dotnet-aspnet was updated. The following patches have been included in this update:

An update that fixes one vulnerability is now available.

Uber explains how it was pwned this month, points finger at Lapsus$ gang

security update

Been hit by LockerGoga ransomware? A free fix is now out
Grand Theft Auto 6 maker confirms source code, vids stolen in cyber-heist
LastPass source code breach – incident response report released
Does Linux Need a Firewall & How To Configure the Linux Firewall with firewall-cmd
GPT-3 ‘prompt injection’ attack causes bad bot manners

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update for redhat-release-virtualization-host, redhat-virtualization-host, and redhat-virtualization-host-productimg is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact

Maher Azzouzi found a local root escalation vulnerability in Enlightenment, an X11 window manager. For Debian 10 buster, this problem has been fixed in version

Indonesia accuses Google of abusing monopoly

– control code in cookie denial of service (CVE-2022-35252)

6.0.8, fixes CVE-2022-40626

An update that fixes one vulnerability is now available.

Security fix for CVE-2022-2309

S3 Ep100.5: Uber breach – an expert speaks [Audio + Text]

Update to latest upstream release

An update that fixes two vulnerabilities is now available.

Several vulnerabilities were discovered in ConnMan, a network manager for embedded devices, which could result in denial of service or the execution of arbitrary code.

Enhancing application container security and compliance with Podman
Can reflections in eyeglasses actually leak info from Zoom calls? Here’s a study into it

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

The container bci/bci-minimal was updated. The following patches have been included in this update:

The container bci/bci-init was updated. The following patches have been included in this update:

School chat app Seesaw abused to send ‘inappropriate image’ to parents, teachers

security update

UBER HAS BEEN HACKED, boasts hacker – how to stop it happening to you
Starbucks Singapore warns customers after hacker steals data, offers it for sale on underground forum
Uber’s hacker *irritated* his way into its network, stole internal documents

An update that solves 25 vulnerabilities, contains four features and has 91 fixes is now available.

An update that fixes one vulnerability is now available.

An update that fixes two vulnerabilities is now available.

The art and science of secure open source software development

Several security issues were fixed in the Linux kernel.

Turbo boost your career in cyber security

Multiple file parsing vulnerabilities have been fixed in libraw. They are concerned with the dng and x3f formats. CVE-2020-35530

An update that solves one vulnerability and has one errata is now available.

Eastern European org hit by second record-smashing DDoS attack
China can destroy US space assets, Space Force ops nominee warns
Uber reels from ‘security incident’ in which cloud systems seemingly hijacked
FBI warns of criminals attacking healthcare payment processors
You never walk alone: The SideWalk backdoor gets a Linux variant

ESET researchers have uncovered another tool in the already extensive arsenal of the SparklingGoblin APT group: a Linux variant of the SideWalk backdoor The post You never walk alone: The SideWalk backdoor gets a Linux variant appeared first on WeLiveSecurity

S3 Ep100: Imagine you went to the moon – how would you prove it? [Audio + Text]
Ex-Broadcom engineer asks for house arrest over IP theft
Building the barricades against identity-based attacks
Iran steps up its cybercrime game and Uncle Sam punches back
What You Need to Know when Considering a VPN on Linux
What Are Checksums & Why Should You Be Using Them?
Debian GNU/Linux 11.5 Bullseye Released with 53 Security Updates and 58 Bug Fixes
Coding Vulnerabilities, Linux Growth, FOSS Friction Cap Summer Highlights

It was found that GLib, a general-purpose portable utility library, could be used to print partial contents from arbitrary files. This could be exploited from setuid binaries linking to GLib for information disclosure of files with a specific format.

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Third‑party cookies: How they work and how to stop them from tracking you across the web

Cross-site tracking cookies have a bleak future but can still cause privacy woes to unwary users The post Third‑party cookies: How they work and how to stop them from tracking you across the web appeared first on WeLiveSecurity

SparklingGoblin deploys new Linux backdoor – Week in security, special edition

ESET Research first spotted this variant of the SideWalk backdoor in the network of a Hong Kong university in February 2021 The post SparklingGoblin deploys new Linux backdoor – Week in security, special edition appeared first on WeLiveSecurity

WordPress-powered sites backdoored after FishPig suffers supply chain attack
Smashing Security podcast #289: Printer peeves, health data hangups, and Twitter tussles – with Rory Cellan-Jones
White House to tech world: Promise you’ll write secure code – or Feds won’t use it

security update

Nearly one in two industry pros scaled back open source use over security fears
Why is my Wi‑Fi slow and how do I make it faster?

Has your Wi-Fi speed slowed down to a crawl? Here are some of the possible reasons along with a few quick fixes to speed things up. The post Why is my Wi‑Fi slow and how do I make it faster? appeared first on WeLiveSecurity

AutoRabit launches devsecops tool for Salesforce environments

An update that solves 15 vulnerabilities and has 11 fixes is now available.

Patch now! Microsoft issues critical security updates as PCs attacked through zero-day flaw
Google and Meta fined over $70m for privacy violations in Korea

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Several security issues were fixed in WebKitGTK.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Ransomware gang threatens 1m-plus medical record leak
Twitter whistleblower Zatko disses bird site as dysfunctional data dump
Microsoft fixes Windows security hole likely widely exploited by miscreants
Serious Security: Browser-in-the-browser attacks – watch out for windows that aren’t!
Patch your Mitel VoIP systems, Lorenz ransomware gang is back on the prowl
ESET Research uncovers new APT group Worok – Week in security with Tony Anscombe

Worok takes aim at various high-profile organizations that operate in multiple sectors and are located primarily in Asia The post ESET Research uncovers new APT group Worok – Week in security with Tony Anscombe appeared first on WeLiveSecurity

How to get inside the mind of hackers
Shadow IT and shadow IoT
One month after Black Hat exposure HP enterprise kit still unpatched
Rust programming language gains dedicated security team
Cisco: Yes, Yanluowang leaked our data. No, it’s not serious

Girl Scouts is proven to help girls thrive. A Girl Scout develops a strong sense of self, displays positive values, seeks challenges and learns from setbacks. I had the absolute honor of spending 3 days with the Girl Scouts in Chicago at the annual Camp CEO. Camp CEO is a chance for the Girl Scouts […]