Menu

Latest articles

Type: Vulnerability. Microsoft Windows Shell is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Jet Database Engine is prone to a buffer-overflow vulnerability; fixes are available.

Type: Vulnerability. Microsoft Jet Database Engine is prone to a buffer-overflow vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to multiple local privilege-escalation vulnerabilities; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Skype for Business is prone to a privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office SharePoint is prone to a cross-site scripting vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows Shell is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a cross-site scripting vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Outlook is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office Outlook is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft SharePoint Server is prone to a cross-site scripting vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

World’s largest child porn site was run by police for undercover op

security update

Hackers are compromising websites to mine cryptocoins via user’s CPU

LinuxSecurity.com: Multiple vulnerabilities have been found in PCRE2, the worst of which may allow remote attackers to execute arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in Pacemaker, the worst of which could result in the execution of arbitrary code.

LinuxSecurity.com: A vulnerability in OCaml may allow local users to gain root privileges.

5 security mistakes your IT team wish you wouldn’t make

Risk Level: Very Low. Type: Trojan.

How to do cybersecurity at work
Data Stealer Malware Hits Critical Cyber Infrastructure in US and S.Korea
FormBook Malware Targets US Defense Contractors, Aerospace and Manufacturing Sectors
Fending off cyber attacks as important as combatting terrorism, says new GCHQ chief
1,000 jobs on the line at BAE Systems’ Lancashire plants – reports
NFL Players, Agents Targeted in Database Extortion Attempt
Disqus reveals data breach, but wins points for transparency
Video games used to be an escape. Now not even they are safe from ads

Risk Level: Very Low. Type: Trojan.

VPN logs helped unmask alleged ‘net stalker, say feds
‘Hola señorita’ says smart camera as it follows owner’s every move
Hackers publish school district’s student data after threatening to ‘kill some kids’
Millions of Accounts From Previous Bitly and Kickstarter Breaches Exposed
How anyone could have stuffed your Flickr account with photos

LinuxSecurity.com: Multiple vulnerabilities have been found in PostgreSQL, the worst of which could result in privilege escalation.

LinuxSecurity.com: A vulnerability in Munin allows local attackers to overwrite any file accessible to the www-data user.

LinuxSecurity.com: A vulnerability in sudo allows local users to gain root privileges.

LinuxSecurity.com: Multiple vulnerabilities have been found in ICU, the worst of which could allow remote code execution.

LinuxSecurity.com: A stack-based buffer overflow was found in file, possibly resulting in the execution of arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities were found in RubyGems, the worst of which allows execution of arbitrary code.

Woman films her spying webcam as it talks to her

LinuxSecurity.com: Christian Boxd?rfer discovered a vulnerability in the handling of FreeDesktop.org .desktop files in Nautilus, a file manager for the GNOME desktop environment. An attacker can craft a .desktop file intended to run malicious commands but displayed as a innocuous document file in Nautilus. An

LinuxSecurity.com: Security fix for CVE-2017-6419 and CVE-2017-11423

security update

security update

FreeMilk Phishing Scam Hijacks Active Email Conversations to Deploy Malware

LinuxSecurity.com: CVE-2017-14491 CVE-2017-14492 CVE-2017-14493 CVE-2017-14494 CVE-2017-14495 CVE-2017-14496

Disqus Hacked: 17.5 Million Users Affected
Apple patches bug that showed device password rather than hint
After selling his site for millions, founder hacked it for a second payday
It’s 4PM on Friday, almost time to log off and, oh look, Disqus says it’s been hacked

LinuxSecurity.com: It was discovered that the Tor onion service could leak sensitive information to log files if the “SafeLogging” option is set to “0”. The oldstable distribution (jessie) is not affected.

LinuxSecurity.com: Several vulnerabilities have been discovered in cURL, an URL transfer library. The Common Vulnerabilities and Exposures project identifies the following problems:

Microsoft silently fixes security holes in Windows 10 – dumps Win 7, 8 out in the cold
Watch Stranger Saying ‘Hola Senorita’ After Hacking Woman’ Security Cam

LinuxSecurity.com: Security fix for CVE-2017-12150 CVE-2017-12151 CVE-2017-12163

Pakistani Teen Shocks Scientist By Explaining Electric Honeycomb Phenomena

LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.

LinuxSecurity.com: A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 14.04 LTS Summary: Several security issues were fixed in Ruby. Software Description: – ruby1.9.1: Object-oriented scripting language Details: It was discovered that Ruby incorrectly handled certain inputs. [More…]

LinuxSecurity.com: A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 12.04 ESM Summary: Several security issues were fixed in Dnsmasq. Software Description: – dnsmasq: Small caching DNS proxy and DHCP/TFTP server Details: USN-3430-1 fixed several vulnerabilities in Dnsmasq. This update [More…]

LinuxSecurity.com: A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 17.04 – Ubuntu 16.04 LTS – Ubuntu 14.04 LTS Summary: poppler could be made to crash if opened a specially crafted file. Software Description: – poppler: PDF rendering library Details: It was discovered that Poppler incorrectly handled certain files. [More…]

FBI iPhone hack lost forever, White House mobe compromised, SSH – and plenty more
Security Industry Failing to Establish Trust