Menu

Latest articles

Updated Joker Malware Floods into Android Apps
Windows Hello Bypass Fools Biometrics Safeguards in PCs
Hong Kong working to share its digital IDs with mainland China
What follows Patch Tuesday? Exploit Wednesday. Grab this bumper batch of security updates from Microsoft
Cybercriminals took advantage of WFH to target financial services companies, say financial bods
Microsoft names Chinese group as source of new attack on SolarWinds

Red Hat OpenShift Container Platform release 4.6.38 is now available with updates to packages and images that fix several bugs. This release includes a security update for Red Hat OpenShift Container Platform 4.6.

Outrun the cyber-crooks with information security training from SANS Institute

Multiple vulnerabilities have been found in Pillow, the worst of which could result in a Denial of Service condition.

An update that solves 14 vulnerabilities, contains one feature and has 5 fixes is now available.

Multiple vulnerabilities have been found in Apache Thrift, the worst of which could result in a Denial of Service condition.

Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * testcase_read(Pool *pool, FILE *fp, const char *testcase, Queue *job, char **resultp, int *resultflagsp function at src/testcase.c: line 2334, which could cause a denial of service (CVE-2021-3200).

This update provides ffmpeg version 4.3.2, which fixes several security vulnerabilities and other bugs which were corrected upstream. References: – https://bugs.mageia.org/show_bug.cgi?id=28433

Microsoft Crushes 116 Bugs, Three Actively Exploited
Ransomware Giant REvil’s Sites Disappear
Guess Fashion Brand Deals With Data Loss After Ransomware Attack
Unpatched Critical RCE Bug Allows Industrial, Utility Takeovers
REvil ransomware gang’s websites vanish soon after Kaseya fiasco, Uncle Sam threatens retaliation
Adobe Patches 11 Critical Bugs in Popular Acrobat PDF Reader
The State of Vulnerability Management and Patching in The Enterprise Environment>
UK govt draws a blank over vaccine certification app – no really, the report is half-empty
‘Charming Kitten’ APT Siphons Intel From Mid-East Scholars
Is Remote Desktop Protocol Secure? It Can Be
You’ll never Guess whose data has been nicked as US fashion firm confirms systems breach
New CISA Director Confirmed, White House Gains Cyber-Director
SolarWinds Issues Hotfix for Zero-Day Flaw Under Active Attack

Release of OpenShift Serverless Client kn 1.16.0 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Microsoft to beef up security portfolio with reported half-billion-dollar RiskIQ buyout

An update that fixes one vulnerability is now available.

Complete Guide to Installing Security Updates in Debian & Ubuntu>
Researchers warn of unpatched remote code execution flaws in Schneider Electric industrial gear
We’re terrified of sharing information, but the benefits of talking about IT and infosec outweigh the negatives

A security update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

A security update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

A security update is now available for Red Hat JBoss Enterprise Application Platform 7.3 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

A security update is now available for Red Hat JBoss Enterprise Application Platform 7.3. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

FBI warns hackers are targeting cryptocurrency wallets and exchanges
Kaseya restores SaaS, then ‘performance issues’ force a do-over
With a straight face, Putin agrees to do something about ransomware coming out of Russia, apparently
BIOPASS RAT Uses Live Streaming Steal Victims’ Data
WordPress File Management Plugin Riddled with Critical Bugs
SolarWinds issues software update – one it wrote for a change – to patch hole exploited in the wild
Critical RCE Vulnerability in ForgeRock OpenAM Under Active Attack
Don’t get tricked by this crashtastic iPhone Wi-Fi hack!
Kaseya Patches Zero-Days Used in REvil Attacks
Looking for some up close and personal cybersecurity training? Well, look to London

XStream: remote command execution attack by manipulating the processed input stream (CVE-2021-29505) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE — SL7 noarch – xstream-1.3.1-14.el7_9.noarch.rpm – xstream-javadoc-1.3.1-14.el7_9.noarch.rpm – Scientific Linux Development Team

Spreadshop hacked. T-shirt lovers warned of “considerably vicious” data breach

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Red Hat AMQ Broker 7.8.2 is now available from the Red Hat Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

An update that fixes one vulnerability is now available.

Kaseya claims SaaS restoration going swimmingly

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that solves one vulnerability, contains three features and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that solves 14 vulnerabilities and has three fixes is now available.

An update that solves one vulnerability and has one errata is now available.

Cyber Polygon 2021: Towards Secure Development of Digital Ecosystems

An update that fixes one vulnerability is now available.

An update that solves 9 vulnerabilities and has two fixes is now available.

Updated htmldoc packages fix security vulnerabilities: Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181 (CVE-2021-20308).

Updated connman packages fix security vulnerability. ConnMan (aka Connection Manager) 1.30 through 1.39 has a stack-based buffer overflow in uncompress in dnsproxy.c via NAME, RDATA, or RDLENGTH (for A or AAAA) (CVE-2021-33833).

Updated php packages provides upstream 8.0.8 and fixes the following security vulnerabilities: – PDO_Firebird: * Fix Stack buffer overflow in firebird_info_cb (CVE-2021-21704).

Updated botan2 packages fix security vulnerability: In Botan before 2.17.3, constant-time computations are not used for certain decoding and encoding operations (base32, base58, base64, and hex) (CVE-2021-24115).

security update

Microsoft Office Users Warned on New Malware-Protection Bypass
Cisco BPA, WSA Bugs Allow Remote Cyberattacks
Where do all those cybercrime payments go?
Microsoft issues patch to fix PrintNightmare zero‑day bug

The out-of-band update fixes a remote code execution flaw affecting the Windows Print Spooler service The post Microsoft issues patch to fix PrintNightmare zero‑day bug appeared first on WeLiveSecurity

Ransomware: To pay or not to pay? Legal or illegal? These are the questions …

Caught between a rock and a hard place, many ransomware victims cave in to extortion demands. Here’s what might change the calculus. The post Ransomware: To pay or not to pay? Legal or illegal? These are the questions … appeared first on WeLiveSecurity

The package ruby-addressable before version 2.8.0-1 is vulnerable to denial of service.

The package gitlab before version 14.0.3-1 is vulnerable to multiple issues including cross-site request forgery, access restriction bypass, arbitrary code execution, arbitrary command execution, cross-site scripting, information disclosure, content spoofing and denial of service.

The package rabbitmq before version 3.8.19-1 is vulnerable to cross- site scripting.

The package php7 before version 7.4.21-1 is vulnerable to multiple issues including denial of service and insufficient validation.

The package php before version 8.0.8-1 is vulnerable to multiple issues including denial of service and insufficient validation.

The package openexr before version 3.0.5-1 is vulnerable to arbitrary code execution.

Lazarus Targets Job-Seeking Engineers with Malicious Documents
Don’t be a ransomware victim
Kaseya delays SaaS restore to Sunday, CEO says ‘this sucks’ but decision was his alone
Oil & Gas Targeted in Year-Long Cyber-Espionage Campaign
US offers Julian Assange time in Australian prison instead of American supermax if he loses London extradition fight

Cybersecurity analysts are charting both a rise in ransomware incidents and in amounts cybercriminals are demanding from businesses to restore their data. That’s bad news in itself, but what’s often overlooked are the additional ways – beyond payments victims may or may not choose to make– victims pay for these attacks. Our latest threat report […]

Coursera Flunks API Security Test in Researchers’ Exam
Bandidos at large: A spying campaign in Latin America

ESET Research uncovers an active malicious campaign that uses new versions of old malware, Bandook, to spy on its victims The post Bandidos at large: A spying campaign in Latin America appeared first on WeLiveSecurity

S3 Ep40: Kaseya breach, PrintNightmare 0-day, and hacking versus the law [Podcast]
How Fake Accounts and Sneaker-Bots Took Over the Internet
Lazarus gang targets engineers with job offers using poisoned emails
ICO survey on data flouters: 50% say they receive more unwanted calls than before pandemic

Several vulnerabilities have been found in the Apache HTTP server, which could result in denial of service. In addition the implementation of the MergeSlashes option could result in unexpected behaviour.

Criminals prefer to WFH too: Singapore infosec agency says 43% of all crimes in the city-state happened online in 2020
In conversation with Gene Hoffman, co-creator of the internet’s first ad blocker
India under attack by rapidly-evolving advanced persistent threat actor SideCopy, says Cisco Talos
White hats reported key Kaseya VSA flaw months ago. Ransomware outran the patch

The container ses/7/rook/ceph was updated. The following patches have been included in this update:

An inefficient regular expression could be exploited to cause a Denial of Service condition.

You’ve patched that critical Sage X3 ERP security hole, yeah? Not exposing the suite to the internet, either, yeah?

A buffer overflow in BladeEnc might allow arbitrary code execution.