Menu

Latest articles

LinuxSecurity.com: Multiple vulnerabilities have been found in the Chromium web browser, the worst of which allows remote attackers to execute arbitrary code.

LinuxSecurity.com: Multiple vulnerabilities have been found in Poppler, the worst of which allows remote attackers to execute arbitrary code.

IETF plants privacy test inside DNS
Boffins bake Crysis ransomware’s keys into handy decryptor
Free ‘cyber hugs’ for all is the plan at New Zealand’s first CERT
Office Depot halts PC Health Checks amid bogus infection claims
Surprise! Another insecure web-connected CCTV cam needs fixing
Ask Toolbar Update Feature Hacked to Drop Malware
Microsoft plans St Valentine’s Day massacre for SHA‑1
Even big data devs make big data security gaffes
Backdoor Found in Firmware of Some Android Devices
Office 365 Vulnerability Identified Bogus Microsoft.com Email as Valid
Alternative social network Ello in plaintext password glitch
Anti-virus away! Android banking trojan blocks security apps to evade detection

LinuxSecurity.com: Multiple vulnerabilities have been discovered in MIT Kerberos 5, the worst of which may allow remote attackers to cause Denial of Service.

LinuxSecurity.com: A vulnerability in MongoDB can lead to a Denial of Service condition.

LinuxSecurity.com: Multiple vulnerabilities have been found in imlib2, the worst of which allows for the remote execution of arbitrary code.

LinuxSecurity.com: – update to new upstream (50.0)

LinuxSecurity.com: The 4.8.8 stable update contains a number of important fixes across the tree.

LinuxSecurity.com: – update to new upstream (50.0)

LinuxSecurity.com: 3.1.3

LinuxSecurity.com: The 4.8.7 stable kernel update contains a number of important fixes across thetree.

LinuxSecurity.com: Security fix for CVE-2016-6170 —- Security fix for CVE-2016-8864

LinuxSecurity.com: Rebase to 1.5.3 to fix CVE-2016-9243

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Credentials Accessible in Siemens-Branded CCTV Cameras
Privacy boost for iOS users as Mozilla launches Firefox Focus
Nemucod Infections Spreading Over Facebook
AdultFriendFinder waits a week before warning users of security breach
Were your grandparents hacking in 1963?
Time for a fresh look at IAM?
Campaigners bid to delay Rule 41 ‘legal hacking’ bill
Monday review – the hot 16 stories of the week
Symantec doubles down on consumer security by buying LifeLock
The odd, 8-year legacy of the Conficker worm

The Conficker worm was huge news when it emerged towards the end of 2008, exploiting millions of Windows devices. Today, it remains one of the most pervasive malware families around the globe. The post The odd, 8-year legacy of the Conficker worm appeared first on WeLiveSecurity.

LinuxSecurity.com: An update for ipsilon is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

Hackers electrocute selves in quest to turn secure doors inside out
Qualcomm now offering US$15k for security bugs

LinuxSecurity.com: Security Report Summary

Hacker dishes advanced phishing kit to hook clever staff in 10 mins

security update

More Androids carry phone-home firmware
More details emerge regarding the Three data breach

LinuxSecurity.com: Several security issues were fixed in OpenJDK 7.

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

Microsoft’s Color Binoculars App Lets Colorblind People See The Normal Way
Canadian Army Recruitment Site Hacked; Redirected to Chinese Govt Webpage
Surveillance camera compromised in 98 seconds

Alarming Number of Sites Still Using SHA-1 Certificates The January deadline for switching over to SHA-2 rapidly approaching. For the vendors that are still lagging behind, they will begin to see browser warnings to their customers stating the site is untrustworthy for processing sensitive information. Surprisingly, 1/3 of all worldwide sites are still using the […]

security update

security update

Why your password is still important – even if you use multi-factor authentication
Drupal Fixes ‘Moderately Critical’ Vulnerabilities in Core Engine
Gorilla Glue finds itself in sticky situation after hackers steal data
Qualcomm and HackerOne Partner on Bounty Program
Three mobile network experiences data breach

UK mobile company Three has fallen victim to a major data breach, with up to six million customers reported to have been affected. The post Three mobile network experiences data breach appeared first on WeLiveSecurity.

FS.to pirate website shut down after Ukraine’s National Police Raid

Risk Level: Very Low. Type: Trojan.

Mobile phone company 3 in “upgrade intercept scam” data breach
IBM opens ‘cyber-range’ to practice security battles
Office Depot allegedly running in-store tech support scams
Threatpost News Wrap, November 18, 2016
Android banking malware remains active when infected devices sleep to save power
US lawmakers introduce bill to delay enhanced government hacking powers
Without tech industry guidance, U.S. may resort to weakening encryption
iPhones vulnerable to yet another lockscreen bypass
Three to appear in court over TalkTalk hack
NIST shifts focus of security guidance to ‘engineering’
Data breach at Three, millions of customer details potentially exposed
Hackers’ modular worm builder hoses popular team web chat apps
Three Mobile, two alleged hackers, one big customer database heist

test The post test appeared first on Webroot Threat Blog.

The encryption conundrum: Should tech compromise or double down?

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

The solution to security breaches? Kill the human middleware
Google Removing SHA-1 Support in Chrome 56

security update

iOS 10 Passcode Bypass Can Access Photos, Contacts
This $5 hacking tool lets attackers bypass security on locked computers
iPhone Call History Synced to iCloud Without User Consent, Knowledge
WhatsApp to offer encrypted video calling

WhatsApp is to add encrypted video calling to its service on Monday, as it continues to bolsters security on the app. The post WhatsApp to offer encrypted video calling appeared first on WeLiveSecurity.

LinuxSecurity.com: Security Report Summary

BlackNurse revisited: what you need to know
How a $5 Raspberry Pi Zero can hack your locked laptop
Emergency services 4G by 2020? And monkeys could fly out of my butt
Gang Up on the Problem, Not Each Other
Once again, Siri helps attackers bypass your iPhone’s passcode
WindTalker Attack Leaks User Data Using Smartphone’s WiFi Signals
PlayStation users: “Our accounts are being hacked”; Sony denies foul play