Menu

Latest articles

Kids’ smartwatches harbouring major security flaws
Android Apps Infected with Sockbot Malware Turn Devices into Botnet
Mr. Robot eps3.1undo.gz – the security review
Google Advanced Protection Trades Ease-of-Use for Security

LinuxSecurity.com: An update for kernel-rt is now available for Red Hat Enterprise MRG 2. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

YouTube sin-bins account of KRACK WPA2 researcher
How individuals can use online ad buying to spy on you

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

LinuxSecurity.com: An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.

Malware in firmware: how to exploit a false sense of security

When thinking about security we generally take risk into account. It is well known that risk is a composition of likelihood and potential impact. The post Malware in firmware: how to exploit a false sense of security appeared first on WeLiveSecurity

Adobe patches zero-day vulnerability used to plant gov’t spying software
The Flawed System Behind the Krack Wi-Fi Meltdown
Yes, British F-35 engines must be sent to Turkey for overhaul
Canadian SMBs: The importance of a stable foundation

You always build from the ground up, and every small-medium business (SMB) must build a strong foundation with their management team. The post Canadian SMBs: The importance of a stable foundation appeared first on WeLiveSecurity

LinuxSecurity.com: It was discovered that YADIFA, an authoritative DNS server, did not sufficiently check its input. This allowed a remote attacker to cause a denial-of-service by forcing the daemon to enter an infinite loop.

Stealth web crypto-cash miner Coin Hive back to the drawing board as blockers move in
EU: No encryption backdoors but, eh, let’s help each other crack that crypto, oui? Ja?
What is blockchain? Get up to speed with this video primer
US-CERT study predicts machine learning, transport systems to become security risks
You’re doing open source wrong, Microsoft tsk-tsk-tsks at Google: Chrome security fixes made public too early

LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.

security update

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Post Cyberattack: The Next Steps Your Business Needs to Take
Smashing Security podcast #048: KRACK, North Korea, and an 18th century cyber attack

security update

FBI Asks Businesses to Share Details About DDoS Attacks

LinuxSecurity.com: New xorg-server packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.

LinuxSecurity.com: New wpa_supplicant packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.

LinuxSecurity.com: New libXres packages are available for Slackware 14.1, 14.2, and -current to fix a security issue.

Is security on the verge of a fuzzing breakthrough?
Encryption chip flaw afflicts huge number of computers
BoundHook Attack Exploits Intel Skylake MPX Feature

Risk Level: Very Low. Type: Trojan.

5 cybersecurity predictions (that might actually come true)
Hackers can track, spoof locations and listen in on kids’ smartwatches
You can now buy ATM malware on Dark Web for $5000
Hackers can hack your kid’s smartwatch and track their location
Critical Code Execution Flaw Patched in PeopleSoft Core Engine
48% off Kidde Carbon Monoxide Alarm with Display and 10 Year Battery – Deal Alert
BoundHook: Microsoft downplays Windows systems exploit technique
Abuse of RESTEasy Default Providers in JBoss EAP
How to make your Google account more secure than ever before
Secure Wifi Hijacked by KRACK Vulns in WPA2
Linus Torvalds says targeted fuzzing is improving Linux security
National Cybersecurity Awareness Month Twitter Chats part 2

In the first part of our series we addressed issues such as the role an everyday internet user has in making the internet a safer place, and ID theft. The second part of the Twitter chat continues with the theme of Simple Steps to Online Safety. The post National Cybersecurity Awareness Month Twitter Chats part […]

How containers and microservices change security
Internet of Ships falling down on security basics
Ex-TalkTalk chief grilled by MPs on suitability to chair NHS Improvement

LinuxSecurity.com: An update for rh-nodejs6-nodejs is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Europol cops lean on phone networks, ISPs to dump CGNAT walls that ‘hide’ cyber-crooks
Oracle Hospitality apps rolled out the Big Red carpet to crims
IRS tax bods tells Americans to chill out about Equifax

LinuxSecurity.com: Multiple vulnerabilities have been found in Nagios, the worst of which could lead to the remote execution of arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in libarchive, the worst of which could lead to a Denial of Service condition.

LinuxSecurity.com: Multiple vulnerabilities have been found in Ruby, the worst of which could lead to the remote execution of arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in Xen, the worst of which may allow local attackers to escalate privileges.

Domino’s Pizza delivers user details to spammers

LinuxSecurity.com: Several vulnerabilities have been discovered in the X.Org X server. An attacker who’s able to connect to an X server could cause a denial of service or potentially the execution of arbitrary code.

uBlock Origin ad-blocker knocked for blocking hack attack squawking
Watch out for Microsoft Word DDE nasties: Now Freddie Mac menaced
Oracle Patches 250 Bugs in Quarterly Critical Patch Update

LinuxSecurity.com: An update for wpa_supplicant is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available. An update that fixes 6 vulnerabilities is now available. An update that fixes 6 vulnerabilities is now available.

Flaw in Adobe Flash Player Used to Install FinFisher Spyware

LinuxSecurity.com: An update for rh-sso7-keycloak is now available for Red Hat Single Sign-On 7.1 for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for rh-sso7-keycloak is now available for Red Hat Single Sign-On 7.1 for RHEL 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: Red Hat Single Sign-On 7.1.3 is now available for download from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Vulnerability in WPA2 Protocol Allows Attackers to Intercept and Decrypt Encrypted Data Traffic

Type: Vulnerability. Adobe Flash Player is prone to a remote code-execution vulnerability; fixes are available.

LinuxSecurity.com: More info: https://koji.fedoraproject.org/koji/buildinfo?buildID=982578

KRACK Wi-Fi attack – the rules haven’t changed
Microsoft bug-tracking database was ‘hacked by Wild Neutron gang’
Google Home Mini glitch triggers secret recordings
Lenovo Quietly Patches Massive Bug Impacting Its Android Tablets and Zuk, Vibe Phones
NHS: Remember those patient records we didn’t deliver? Well, we found another 162,000
RAT flies under the radar with exploit-laden file downloaded by decoy Word document
The fix is in for hackable voting machines: use paper
Severe flaw in WPA2 protocol leaves Wi-Fi traffic open to eavesdropping