Menu

Latest articles

Huygens if true: Dutch police break up bulletproof hosting outfit and kill Mirai botnet

Type: Vulnerability. Multiple Cisco Products are prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. EMC RSA BSAFE Crypto-C Micro and Micro Edition Suite are prone to multiple security vulnerabilities; fixes are available.

FBI called in to investigate 2018 Mountain State mobile voting system hacking
Smashing Security #148: Billboard boobs, face forensics, and Alexa gets way too personal
Reason Security opens beta for business edition & cuts yearly subscription price
Android users installed 172 malicious apps 335m times last month
Google Maps gets Incognito fig leaf: We’ll give you vague peace of mind if you hold off those privacy laws

Security fix for CVE-2019-15026

Security fix for CVE-2019-13132

**GLPI version 9.4.4** This is a **security release**, upgrading is highly recommended Non exhaustive list of changes: * [security] Prevent account takeover vulnerability , * [security] Prevent execution of XSS on rich text, * fix cache key lenght issues, * fix user picture removal at login, * several fixes on recurring tickets, * fix some […]

Zendesk Exposes 10,000 Accounts to Unknown Third Party

security update

security update

Why This New Cybergang is Heralding a New Age For BEC
Most SMB cybersecurity defence fail short to thwart malware & file-based attacks
Medic! Uncle Sam warns hospitals not to use outdated IPnet freely on their networks

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Jenkins is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Pivotal Application Service is prone to an access-bypass vulnerability; fixes are available.

Type: Vulnerability. Foxit Reader is prone to a remote code-execution vulnerability.

Former! Yahoo! engineer! admits! to! hacking! user! emails! for! smutty! snaps!
Gaming giant Zynga data breach: 218 million records stolen
Virus Bulletin 2019: Geost Android Botnet Goes After Millions of Euros
Virus Bulletin 2019: Japanese Attacks Highlight Savvy APT Strategy
Zendesk clocks 10,000 accounts accessed by miscreants before November 2016
If you really can’t let go of Windows 7, Microsoft will keep things secure for another three years
Google Adds Password Checkup Feature to Chrome Browser
Exim suffers another ‘critical’ remote code execution flaw
O.MG! Evil Lightning cable about to hit mass distribution
218 million Words With Friends players lose data to hackers
A pervert Yahoo employee hacked 6,000 accounts using internal system
Have you been Thomas Crooked? Watch out for cybercrims slinging holiday-themed fakes
Ex-Yahoo engineer pleads guilty to hacking 6,000 accounts
Hack Breaks PDF Encryption, Opens Content to Attackers
The benefits of security behavior analytics for devops
Do apps need all the permissions?

Why you should ensure that all those apps on your smartphone only run with the permissions they reasonably need to do their job The post Do apps need all the permissions? appeared first on WeLiveSecurity

Jamf emits mystery security fix for Pro macOS, iOS wrangler, keeps admins in dark by censoring chatter

Type: Vulnerability. Xpdf is prone to a buffer-underflow vulnerability; fixes are available.

Type: Vulnerability. Linux kernel is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Linux Kernel is prone to a local denial-of-service vulnerability; fixes are available.

Type: Vulnerability. OnApp is prone to a remote command-execution vulnerability; fixes are available.

Type: Vulnerability. Dell EMC ECS is prone to an authentication-bypass vulnerability; fixes are available.

Type: Vulnerability. Google Android is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Ghidra is prone to an arbitrary code-execution vulnerability; fixes are available.

Type: Vulnerability. Python is prone to multiple cross-site scripting vulnerabilities; fixes are available.

Ransomware Attacks Leave U.S. Hospitals Turning Away Patients
Hackers Turn to OpenDocument Format to Avoid AV Detection

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

vBulletin zero-day KOs Comodo user forums – that’s 245,000 accounts at risk of compromise
Leaky database exposes tax records of 20 million Russians
Google Play Malicious Apps Racked Up 335M+ Installs in September

An update that solves two vulnerabilities and has three fixes is now available.

An update that fixes two vulnerabilities is now available.

An update that solves 5 vulnerabilities and has three fixes is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that solves two vulnerabilities and has one errata is now available.

If your org hasn’t had a security incident in the last year: Good for you, you’re in the minority

An update that fixes 6 vulnerabilities is now available.

Cyber Security Awareness Month starts today!

October is upon us, reminding us to make choices every day that will scare cybersecurity threats away The post Cyber Security Awareness Month starts today! appeared first on WeLiveSecurity

Cloudflare adds VPN features to 1.1.1.1 privacy app
HMRC ‘disciplined’ almost 100 employees for computer misuse over 24 months

Reading Time: ~ 3 min. “Antivirus programs use techniques to stop viruses that are very “virus-like” in and of themselves, and in most cases if you try to run two antivirus programs, or full security suites, each believes the other is malicious and they then engage in a battle to the death (of system usability, […]

Hacking 2020 voting systems is a ‘piece of cake’
Malvertising Attack Hijacks 1B+ Sessions With Webkit Exploit

An update that fixes four vulnerabilities is now available.

An update that fixes four vulnerabilities is now available.

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

China’s 500 megapixel camera is capable of mega-facial-recognition
Darknet hosting provider in underground NATO bunker busted
Brighton perv cops community service for ‘hacking’ women’s Facebook accounts

An update for httpd24-httpd and httpd24-nghttp2 is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Red Hat JBoss Core Services Pack Apache Server 2.4.29 Service Pack 3 packages for RHEL 6, RHEL 7, Microsoft Windows and Oracle Solaris are now available. Red Hat Product Security has rated this release as having a security impact

This is the Six-Month notification for the retirement of Red Hat Enterprise Linux 5.9 Advanced Mission Critical (AMC). This notification applies only to those customers subscribed to the Advanced Mission Critical (AMC) channel for Red Hat Enterprise Linux 5.9.

Dive deep into the world of cyber attackers at the CyberThreat Summit

Risk Level: Very Low. Type: Trojan.

It’s been a couple of days, so Apple releases yet another iOS update
Stop us if you’ve heard this one before: Yet another critical flaw threatens Exim servers
Holy smokes! Ex-IT admin gets two years prison for trashing Army chaplains’ servers

security update

Type: Vulnerability. Google Android is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Dell EMC Integrated Data Protection Appliance is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Google Android is prone to multiple local privilege-escalation vulnerabilities; fixes are available.

Type: Vulnerability. Exim is prone to a heap-based buffer-overflow vulnerability; fixes are available.

Type: Vulnerability. Cloud Foundry UAA is prone to a privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Google Android is prone to multiple local privilege-escalation vulnerabilities; fixes are available.

Type: Vulnerability. Adobe Flash Player is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Linux kernel is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Apple iOS is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Apple Safari is prone to is prone to multiple security vulnerabilities; fixes are available.

Thousands of Windows PCs infected by Nodersok/Divergent fileless malware
New Bug Found in NSA’s Ghidra Tool
Dark web data center in former NATO bunker seized for hosting child porn
Senate Passes Bill Aimed At Combating Ransomware Attacks
Checkm8 jailbreak and AltStore put cracks in Apple’s walled garden
600 armed German cops storm Cyberbunker hosting biz on illegal darknet market claims
Critical Exim Flaw Opens Servers to Remote Code Execution
Thanks-thanks to TalkTalk teen hacker: UK cops’ first auction of ill-gotten Bitcoin nets £240k