Menu

Latest articles

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Excel is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Exchange Server is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office SharePoint is prone to a cross-site scripting vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office SharePoint is prone to a cross-site scripting vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Risk Level: Very Low. Type: Trojan.

TP-Link Routers Vulnerable to Zero-Day Buffer Overflow Attack

Several memory leaks were discovered in proftpd-dfsg, a versatile, virtual-hosting FTP daemon, when mod_facl or mod_sftp is used which could lead to memory exhaustion and a denial-of-service.

New Mirai Samples Grow the Number of Processor Targets

security update

Spam Campaigns Spread TrickBot Malware with Tax Lure

Several security issues were fixed in ClamAV.

Reading Time: ~4 min. This spring, many of us will roll up our sleeves and get down to business decluttering our homes. Garage sales will be held, basement storage rooms will be re-organized, and donations will be made.  Shouldn’t the same thing happen in our digital lives? After all, the average American will spend the bulk […]

Bootstrap supply chain attack is another attempt to poison the barrel

An update that fixes two vulnerabilities is now available.

An update that solves one vulnerability and has three fixes is now available.

An update that fixes 11 vulnerabilities is now available.

An update that fixes three vulnerabilities is now available.

An update that solves one vulnerability and has four fixes is now available.

An update that solves two vulnerabilities and has one errata is now available.

Multiple vulnerabilities have been found in ClamAV, the worst of which could result in a Denial of Service condition.

A vulnerability in emerge-delta-webrsync and Portage could result in a man-in-the-middle attack.

Multiple vulnerabilities have been found in Mailman, the worst of which could result in the arbitrary execution of code.

An update that solves 8 vulnerabilities and has 102 fixes is now available.

An update that fixes three vulnerabilities is now available.

Microsoft lets Windows users off the update leash
Firefox draws battle lines against push notification spam
Myspace songs come back from the dead
SAS 2019: Exodus Spyware Found Targeting Apple iOS Users

security update

New httpd packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue.

How CISOs should respond to the cybersecurity crisis

Cedric Krier discovered that missing access validation in Tryton could result in information disclosure . For the stable distribution (stretch), this problem has been fixed in

Security fix for CVE-2019-8936

Security fix for CVE-2019-8936

security update

Security fix for CVE-2019-8936

**PHP version 7.3.4** (04 April 2019) **Core:** * Fixed bug php#77738 (Nullptr deref in zend_compile_expr). (Laruence) * Fixed bug php#77660 (Segmentation fault on break 2147483648). (Laruence) * Fixed bug php#77652 (Anonymous classes can lose their interface information). (Nikita) * Fixed bug php#77345 (Stack Overflow caused by circular reference in garbage collection). (Alexandru

New openjpeg packages are available for Slackware 14.2 and -current to fix security issues.

New wget packages are available for Slackware 14.2 and -current to fix a security issue.

An update that fixes one vulnerability is now available.

An update that fixes 16 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that solves two vulnerabilities and has 16 fixes is now available.

Kusano Kazuhiko discovered a buffer overflow vulnerability in the handling of Internationalized Resource Identifiers (IRI) in wget, a network utility to retrieve files from the web, which could result in the execution of arbitrary code or denial of service when recursively

An update that fixes 11 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes four vulnerabilities is now available.

New malware can modify CT and MRI scan results
Top 10 VPN Services For 2019
Hard Times for Cryptojacking
Private data of 540 million Facebook users exposed in plain text
2018’s Biggest Security Breaches and What to Worry about in 2019
FBI catches heat, HS kids catch a hacking rap, and Albany catches a ransomware infection
Podcast: Chris Vickery on UpGuard’s Discovery of Millions of Facebook Records
Cisco Finally Patches Router Bugs As New Unpatched Flaws Surface

security update

security update

security update

security update

Scare-bnb: Family finds creeper cams hidden in their weekend rental by scanning Wi-Fi
Facebook Boots 74 Cybercrime Groups From Platform

Reading Time: ~2 min. Massive Data Breach at Georgia Tech It was recently revealed that the personal information on over 1.3 million people was illicitly accessed by hackers who breached Georgia Tech systems in December of last year. The breach is the second of the year for the university, and was only discovered after IT […]

Serious Security: GPS week rollover and the other sort of “zero day”
Hackers Abuse Google Cloud Platform to Attack D-Link Routers

An update that fixes one vulnerability is now available.

Unpatched D-Link routers targeted in malicious DNS hijacking campaign
LokiBot Trojan Spotted Hitching a Ride Inside .PNG Files
Ticketmaster is hit by a £5 million legal action after online payment card theft
Patch now! Magento e-commerce sites targeted by SQLi attacks
Hoax! Nope, hackers aren’t posting invisible sexual videos on your wall

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

Nvidia patches severe bugs in edge computing modules
New law will punish social media companies for users’ violent content
Prepare to foil cybercriminals at SANS Krakow 2019
Blundering London council emails unredacted version of notorious Gangs Matrix to 44 people. Data ends up on Snapchat

An update that fixes three vulnerabilities is now available.

An update that fixes three vulnerabilities is now available.

No dice, comrade! Senate floats Russia-busting election law

Risk Level: Very Low. Type: Trojan.

An update that solves two vulnerabilities and has one errata is now available.

An update that solves two vulnerabilities and has one errata is now available.

Chinese hackers poke the Bayer, but German giant says it withstood attack