Menu

Latest articles

NetWire RAT Back, Stealing Payment Card Data
New Mirai Variant Targets Routers, Knocks 900,000 Offline

LinuxSecurity.com: Fix nfs_cleanup security race and permissions (rhbz#1395040).

LinuxSecurity.com: Fix for CVE-2016-9400

LinuxSecurity.com: https://www.drupal.org/SA-CORE-2016-005

News in brief: Muni hacker is hacked; Facebook warned over data sharing; spy agency releases data tool
Dismay as ‘snooper’s charter’ finally becomes law
New Lethal Version of Mirai Botnet Claims First Target: Deutsche Telekom
CERT to Microsoft: Keep EMET alive
Deutsche Telekom outage: Mirai botnet goes double-rogue
900,000 Germans knocked offline, as critical router flaw exploited

As many as 900,000 Deutsche Telekom customers were knocked offline on Sunday and Monday as an attempt was made to hijack broadband routers into a botnet. The post 900,000 Germans knocked offline, as critical router flaw exploited appeared first on We Live Security.

The Tor Phone prototype: a truly private smartphone?
San Francisco’s Muni says server data not accessed in ransomware hit
Oh no, software has bugs, we need antivirus. Oh no, bug-squasher has bugs, we need …
Hacker Who Hacked SF Rail System for Ransom Hacked by Another Hacker
Queen signs the Investigatory Powers Act into UK law
When are you going to die? Ubisoft tool uses Facebook data to tell you
Bletchley Park Trust vows to shore up insecure website
Extending Linux Executable Logging With The Integrity Measurement Architecture
3 clues to spotting a spam scam

I received the following “domain abuse notice” for one of my inactive registered domains last week: Those of us who have dealt with falsely blacklisted domains in the past have seen notices like this before. It’s usually from an antispam vendor or service letting you know that your domain has been used in a spam […]

R3 four flew: What’s driving banks to flee blockchain consortium?
A Rowhammer ban-hammer for all, and it’s all in software
Hackers crack Liechtenstein banks, demand ransoms
Cisco stre…tches vulnerability disclosure timeline out to 90 days
Netflix and spill: Web vid giant kills password masking in tests
Inside Android’s source code… // TODO – Finish file encryption later

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

‘Mirai bots’ cyber-blitz 1m German broadband routers – and your ISP could be next
Hackers Deface Kuwaiti Parliament website on Election Day
No, I won’t help you blackmail the company you just hacked
PayPal Fixes OAuth Token Leaking Vulnerability
Hackers Make New Claim in San Francisco Transit Ransomware Attack

security update

The Chrome extension that “Firesheeps” you by choice

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security fix for CVE-2016-8864

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Update to 4.4.2: Security fixes * A difference in cookie parsing betweenTornado and web browsers (especially when combined with Google Analytics) couldallow an attacker to set arbitrary cookies and bypass XSRF protection. Thecookie parser has been rewritten to fix this attack. Backwards-compatibilitynotes * Cookies containing certain special characters (in particular semicolonand square brackets) are […]

Hackers threaten to leak bank customers’ account info unless they pay up
FBI offers some poor password advice for online shoppers
Creaking Royal Navy is ‘first-rate’ thunders irate admiral
‘Ransomware’ attack halts payments on San Francisco Muni network
Who’s better at reading lips – humans or AI?
Female DDoS Attacker Charged with Crippling School System
Muni experiences security incident

The San Francisco Municipal Transportation Agency has confirmed that it experienced a security incident over the weekend The post Muni experiences security incident appeared first on We Live Security.

San Francisco Railway’ Fare System Hacked for 100 Bitcoin Ransom
San Francisco’s Muni transit system reportedly hit by ransomware
Locking Down Your Linux Server
How to protect the C-suite from spear phishing
Concern over FBI operation to catch users of darkweb site
Ransomware scams cost Brits £4.5m per year
Monday review – the hot 20 stories of the week
Time is running out for NTP
Ransomware hits San Francisco transport system. Free rides for all as $73,000 demanded
100k+ petition: MPs must consider debating Snoopers’ Charter again
The Internet Society is unhappy about security – pretty much all of it
Japan investigating defence network break-in
Phishing tackle ships data catch to net sharks
Microsoft update servers left all Azure RHEL instances hackable
Passengers ride free on SF Muni subway after ransomware hits 2,100 systems, demands $73k

security update

Israeli Firm Says It Can Crack Any Locked Smartphone
US Government Wants You to Hack US Military and Pentagon for Good
Evolved Version of Mirai DDoS Botnet Goes Up for Rent
European Commission Servers Offline After Massive DDoS Attack
Sensitive Data of 130K+ US Navy Sailors Stolen Due to One Hacked Laptop
Malware can Convert your Headphones into Microphone for Hackers
Linux Security Made Simple
Elegant 0-day unicorn underscores “serious concerns” about Linux security
Monitoring Network Load With nload: Part 2
Brace Yourself for Kaspersky’s “Hack-proof” Operating System
Watching a video can crash and freeze any iPhone

security update

security update

CNN caught playing porn for a half hour straight (Updated)
The WordPress megahack that wasn’t

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security fix for CVE-2016-7415

LinuxSecurity.com: Security fix for CVE-2016-7504, CVE-2016-7505, CVE-2016-7506, CVE-2016-9017,CVE-2016-9108, CVE-2016-9109, CVE-2016-9294

LinuxSecurity.com: Security fix for CVE-2016-7504, CVE-2016-7505, CVE-2016-7506, CVE-2016-9017,CVE-2016-9108, CVE-2016-9109, CVE-2016-9294

LinuxSecurity.com: Security fix for CVE-2016-1249

LinuxSecurity.com: 3.1.3

LinuxSecurity.com: Security fix for CVE-2016-7504, CVE-2016-7505, CVE-2016-7506, CVE-2016-9017,CVE-2016-9108, CVE-2016-9109, CVE-2016-9294

LinuxSecurity.com: Security fix for CVE-2016-7504, CVE-2016-7505, CVE-2016-7506, CVE-2016-9017,CVE-2016-9108, CVE-2016-9109, CVE-2016-9294

LinuxSecurity.com: The 4.8.8 stable kernel update contains a number of important fixes across thetree. —- The 4.8.7 kernel rebase contains new hardware support, additionalfeatures, and a number of important bug fixes across the tree.

LinuxSecurity.com: 3.0.7

cURL security audit learns the lessons of Heartbleed
Windows 10 still needs EMET exploit protection, US CERT tells Microsoft
Grand App Auto: Tesla smartphone hack can track, locate, unlock, and start cars
Tesla Model S can be located, unlocked, stolen by manipulating Tesla apps
Met police’s tech systems slammed for failing abused kids – report
Guest post: Cybersecurity school to open at Bletchley Park, home of the wartime codebreakers
EU puts out prescription for smart hospitals
In a world where Donald Trump is President, encryption is becoming more popular
Drops the mic… Hang on, hackers could be listening through my headphones?
Fraudsters eat for free as Deliveroo accounts hit by mystery breach
The malicious iPhone video with a silver lining
Lock down your Twitter: take care that rogue third-party apps don’t hijack your account