Menu

Latest articles

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate
Bitcoin Gold loses over $18 million after hack attack
Why GDPR affects companies around the world (video)

Learn what businesses need to be mindful of with the new legislation The post Why GDPR affects companies around the world (video) appeared first on WeLiveSecurity

Attackers Cashing In On Cryptocurrency With Increased Scams
Amazon Comes Under Fire for Facial Recognition Platform
Schneider Electric Patches XXE Vulnerability In Software
James Comey: FBI Faces Deep Tech-Related Questions
Ahead of GDPR, Information Governance Comes into Its Own
VPNFilter Malware Infects 500k Routers Including Linksys, MikroTik, NETGEAR
Facebook 2FA no longer needs a phone number: here’s how to set it up
Pornhub’s VPNhub is a free VPN for everyone
Woman says Alexa recorded and shared the private conversation she was having with her husband

It’s every Amazon Alexa owner’s worst nightmare – your private conversations not just being listened to, but shared with random contacts without your knowledge. The post Woman says Alexa recorded and shared the private conversation she was having with her husband appeared first on WeLiveSecurity

LinuxSecurity.com: Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in denial of service, informations leaks or privilege escalation.

Facebook’s counterintuitive way to combat nonconsensual porn
Facebook refines 2FA setup, adds authenticator app support

Do try this at home! If you haven’t taken advantage of the extra protection that two-factor authentication offers, now is a great time to do so. And you don’t even need to hand over your phone number. The post Facebook refines 2FA setup, adds authenticator app support appeared first on WeLiveSecurity

Does your BMW need a security patch?

LinuxSecurity.com: An update that fixes 8 vulnerabilities is now available.

LinuxSecurity.com: An update that contains security fixes can now be installed.

LinuxSecurity.com: An update that solves one vulnerability and has one errata is now available.

LinuxSecurity.com: An update that solves two vulnerabilities and has one errata is now available.

More Unsecure Wi-Fi and Phishing? Not So Flashy
UK: We’ll Return Fire Against Deadly State Cyber-Attacks
Trump’s blocking of Twitter users declared unconstitutional
BackSwap malware finds innovative ways to empty bank accounts

ESET researchers have discovered a piece of banking malware that employs a new technique to bypass dedicated browser protection measures The post BackSwap malware finds innovative ways to empty bank accounts appeared first on WeLiveSecurity

LinuxSecurity.com: Multiple security issues have been found in Thunderbird, which may lead to the execution of arbitrary code, denial of service or attacks on encrypted emails.

LinuxSecurity.com: The package thunderbird before version 52.8.0-1 is vulnerable to multiple issues including arbitrary code execution, information disclosure, access restriction bypass, content spoofing and denial of service.

Reading Time: ~2 min.The Cyber News Rundown brings you the latest happenings in cybersecurity news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst and a guy with a passion for all things security. Any questions? Just ask. Comcast Router Bug Leaves Credentials Unsecured Researchers recently found a flaw in the Comcast […]

LinuxSecurity.com: This update provides mitigations for the Spectre v4 variant in x86-based micro processors. On Intel CPUs this requires updated microcode which is currently not released publicly (but your hardware vendor may have issued an update). For servers with AMD CPUs no microcode update is

LinuxSecurity.com: Multiple security issues have been found in Thunderbird, which may lead to the execution of arbitrary code, denial of service or attacks on encrypted emails.

Electron patches patch after security researcher bypassed said patch
Zimmerman and friends: ‘Are you listening? PGP is not broken’

security update

security update

Risk Level: Very Low. Type: Trojan.

LinuxSecurity.com: This update upgrades Thunderbird to version 52.8.0. * Mozilla: Memory safety bugs fixed in Firefox 60 and Firefox ESR 52.8 (CVE-2018-5150) * Mozilla: Backport critical security fixes in Skia (CVE-2018-5183) * Mozilla: Use-after-free with SVG animations and clip paths (CVE-2018-5154) * Mozilla: Use-after-free with SVG animations and text paths (CVE-2018-5155) * Mozilla: Integer overflow […]

LinuxSecurity.com: This update upgrades Thunderbird to version 52.8.0. * Mozilla: Memory safety bugs fixed in Firefox 60 and Firefox ESR 52.8 (CVE-2018-5150) * Mozilla: Backport critical security fixes in Skia (CVE-2018-5183) * Mozilla: Use-after-free with SVG animations and clip paths (CVE-2018-5154) * Mozilla: Use-after-free with SVG animations and text paths (CVE-2018-5155) * Mozilla: Integer overflow […]

Trio indicted after police SWAT prank call leads to cops killing bloke
FBI seizes VPNFilter botnet domain that infected 500,000 routers

LinuxSecurity.com: An update for thunderbird is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

What Will GDPR’s Impact Be On U.S. Consumer Privacy?
FBI agents take aim at VPNFilter botnet, point finger at Russia, yell ‘national security threat’
Intel’s ‘Virtual Fences’ Spectre Fix Won’t Protect Against Variant 4
Teen monitoring app exposes plaintext Apple ID passwords of its users
2 million stolen identities used to make fake net neutrality comments
Researchers Say More Spectre-Related CPU Flaws On Horizon
Six Vulnerabilities Found in Dell EMC’s Disaster Recovery System, One Critical
Comcast Patches Router Bug That Leaked Some Wi-Fi Passwords
Office 365 will automatically block Flash and Silverlight
FBI admits to inflating number of crime-related devices it can’t crack
VPNFilter router malware – what to do? [VIDEO]
GDPR: One rule to rule them all – legally

It’s almost here but what are the legal ramifications of the incoming legislation for businesses The post GDPR: One rule to rule them all – legally appeared first on WeLiveSecurity

VPNFilter botnet has hacked 500,000 routers. Reboot and patch now!
Data of millions of Japanese sold on underground hacking forums
Losses from BEC scams rising fast and furious

In 2017, the victims of BEC fraud were stung for $676 million, almost double the loss totals reported in the previous year The post Losses from BEC scams rising fast and furious appeared first on WeLiveSecurity

Oracle plans to dump risky Java serialization
London’s Met Police: We won’t use facial recognition at Notting Hill Carnival
Mexico: Cybercriminals steal at least 400 million pesos through unauthorized transfers

While the exact amount of stolen money and source of the cybercriminals are not known, the authorities have confirmed that no clients were affected. The post Mexico: Cybercriminals steal at least 400 million pesos through unauthorized transfers appeared first on WeLiveSecurity

Smashing Security #079: Mugshots, mobile mania, and back end gurus

security update

Advanced VPNFilter malware menacing routers worldwide
Ransomware Most Commonly Used Malicious Software: How to Protect Your Business
Mobile Fraud Soars as Social Sites Help Scammers
Brit Attorney General: Nation state cyber attack is an act of war
Malicious PHP Script Infects 2,400 Websites in the Past Week
TeenSafe Tracking App Exposes Thousands of Private Records
Roaming Mantis Swarms Globally, Spawning iOS Phishing, Cryptomining
VPNFilter – is a malware timebomb lurking on your router?
WeLiveSecurity in running for European Security Blogger Awards. Vote now!

We’re not in it for prizes (or cakes), but there’s no denying that we’re thrilled to be a finalist for the European Security Blogger Awards – and in five categories at that! The post WeLiveSecurity in running for European Security Blogger Awards. Vote now! appeared first on WeLiveSecurity

Surprise! Student receives $36,000 Google bug bounty for RCE flaw
Google in court over ‘clandestine tracking’ of 4.4m iPhone users
800,000 DrayTek routers at risk of DNS hijacking attack – update your firmware!
Amazon Rekognition a possible threat to the civil rights of citizens

Use of software by law enforcement as a surveillance tool is a real concern for groups The post Amazon Rekognition a possible threat to the civil rights of citizens appeared first on WeLiveSecurity

£120,000 fine for university after details of 20,000 staff and students exposed in data breach
Big bimmer bummer: Bavaria’s BMW buggies battered by bad bugs

security update

ISP TalkTalk’s Wi-Fi passwords Walk Walk thanks to Awks Awks router security hole
Server? What server? Site forgotten for 12 years attracts hacks, fines
TeenSafe phone monitoring app leaks teens’ iCloud logins in plaintext
Donald Trump’s smartphone security: an inconvenient truth
Intel Responds to Spectre-Like Flaw In CPUs

LinuxSecurity.com: Matthias Gerstner discovered that PackageKit, a DBus abstraction layer for simple software management tasks, contains an authentication bypass flaw allowing users without privileges to install local packages.

Turla Mosquito: A shift towards more generic tools

ESET researchers have observed a significant change in the campaign of the infamous espionage group The post Turla Mosquito: A shift towards more generic tools appeared first on WeLiveSecurity

Brit water firms, power plants with crap cyber security will pay up to £17m, peers told
14 free online courses about computer security

Get a better understanding of cybersecurity with this list of free online courses that you can take to become more cyber-aware The post 14 free online courses about computer security appeared first on WeLiveSecurity

DrayTek router user? Patch now to keep the crooks out…
Salted Hash – SC 01: What an Apple phishing attack looks like
Malware campaign expands to add cryptocurrency mining and iOS phishing attacks
Mugshots.com’s alleged owners arrested for extortion
You’ve got to be kitten: Vet recruiter told to pay £1k after pinching info from ex-employer
How deception technologies use camouflage to attract attackers | Salted Hash Ep 26
Guilty! Anti-anti-virus crook convicted, could spend decades in jail
Summoners of web tsunamis have moved to layer 7, says Cloudflare

LinuxSecurity.com: Several security issues were addressed in the Linux kernel.