Menu

Latest articles

LinuxSecurity.com: – new upstream version (49.0.2)

LinuxSecurity.com: Bump version to 1.3.5.15-1

LinuxSecurity.com: Security fix for CVE-2016-7035 (improper IPC guarding)

LinuxSecurity.com: – fix cookie injection for other servers (CVE-2016-8615) – compare user/passwdcase-sensitively while reusing connections (CVE-2016-8616) – base64: check forinteger overflow on large input (CVE-2016-8617) – fix double-free in krb5 code(CVE-2016-8619) – fix double-free in curl_maprintf() (CVE-2016-8618) – fix globparser write/read out of bounds (CVE-2016-8620) – fix out-of-bounds read incurl_getdate() (CVE-2016-8621) – fix URL unescape […]

Clever Gmail Hack Let Attackers Take Over Accounts
Worried about the Tesco Bank attack? Here’s our advice
Tor marketplaces shut down by Operation Hyperion
U.K. bank suspends online payments after fraud hits 20,000 accounts
Cisco’s Mobile Careers Site Exposed Job Seekers Data
Web security still outstandingly mediocre, experts report
Applied for a job at Cisco? Your personal data and passwords could have been stolen
Need to review 650,000 emails in eight days? Easy with a computer
WikiLeaks Releases DNCLeak2; Suffers Massive DDoS Attack
Oil exec accused of impersonating Elon Musk in an email sues Tesla over Twitter hack
How to do an APK Analysis Using AppMon

There are a great many tools available to help quickly analyze the behavior of mobile malware samples. In the case of Android, one such app is AppMon. The post How to do an APK Analysis Using AppMon appeared first on WeLiveSecurity.

Ukrainian hackers ‘snatch huge email cache from Kremlin’
Boffins turn phone into tracker by abusing pairing with – that’s right – IoT kit
Monday review – the hot 17 stories of the week
Tesco Bank limits online transactions after fraud hits thousands
Microsoft EMET gets end-of-life reprieve
20,000 Tesco Bank accounts raided by hackers, money stolen

LinuxSecurity.com: An update for java-1.7.0-openjdk is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for java-1.6.0-ibm is now available for Red Hat Enterprise Linux 5 Supplementary and Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

Tech support scammers use denial of service bug to hang victims
Cerber ransomware menace now targeting databases
School cyber safety spiel shows smut to ‘Strayan students
China passes controversial, intrusive cybersecurity law
Password reset warrior arrested for popping 1050 student accounts
It’s not just you: Twitter was down everywhere
Apple, Mozilla kill API to deplete W3C battery-snitching standard
User danger declines as two thirds of Chromistas now use HTTPS

LinuxSecurity.com: Security Report Summary

security update

Did the Mirai botnet knock Liberia offline? Not so much
Cisco’s job applications site leaked personal data
Election-themed spam spikes as U.S. presidential race comes to an end
Mark Zuckerberg to be Tried by Munich Court for Tolerating Offending Content
Anonymous Hacks Milwaukee’s Charitable Bradley Foundation Network
After Galaxy Note 7, Samsung Recalls Millions of Washing Machines
10 ways to make sure your remote workers are being safe
Update your Belkin WeMo devices before they become botnet zombies
El Paso city bungs $3.2m to email crooks pretending to be bosses
Inside the RIG Exploit Kit

Computer safety has never been more of a necessity, regardless of your location in the world. This week’s cyber news recap spans from Western Europe to Australia, with a variety of threats that everyday users may face themselves. UK Hospital System Hit with Malware In the last few days, a hospital network in the UK was […]

Commodity ‘Exaspy’ Spyware Found Targeting High-Level Execs

security update

security update

Admins, update your databases to avoid the MySQL bug
Build your own IMSI slurping, phone-stalking Stingray-lite box – using bog-standard Wi-Fi

LinuxSecurity.com: An update for docker is now available for Red Hat Enterprise Linux 7 Extras. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…]

Brit cops cuff 14 in £11m money-laundering malware ring sting
Colossal DDoS attack in Liberia wipes majority of country offline

Liberia has been hit with a harmful DDoS attack yet, with most of its residents unable to get online. The Mirai botnet is the cause. The post Colossal DDoS attack in Liberia wipes majority of country offline appeared first on WeLiveSecurity.

Computer forensics defuses FBI’s Clinton email ‘bombshell’ – the math doesn’t add up
There’s no best way to handle disclosure of zero-day vulnerabilities
Mirai IoT botnet blamed for smashing Liberia off the internet
Anti-ultrasound tech aims to foil the dog-whistle marketeers
Half of Chrome Pageloads are HTTPS
World-leading heart hospital ‘very, very lucky’ to dodge ransomware hit
Test-Run DDoS Attacks Against Liberia Cease
Hacker finds flaw in Gmail allowing anyone to hack any email account
Fake Android Flash Player App Malware Targeting Banks, Social Media
Berners-Lee raises spectre of weaponized open data
I can see your texts: A deep dive into SMS/messaging clients, security, and privacy

ESET’s Michael Aguilar takes a deep dive into SMS/messaging clients, security, and privacy. The post I can see your texts: A deep dive into SMS/messaging clients, security, and privacy appeared first on WeLiveSecurity.

Another Country is under massive DDoS attacks – Thanks to Mirai Malware
Amazon’s very own Linux now available for download
William Hill website hit with DDoS attack

UK-based bookmaker William Hill has been hit with a DDoS attack, preventing many of its customers from being able to access its main website. The post William Hill website hit with DDoS attack appeared first on WeLiveSecurity.

Glasses make facial recognition think you’re a celebrity
Tokens of terror spark ‘major security update’ at GitLab
Microsoft extends support for EMET security tool

LinuxSecurity.com: Multiple vulnerabilities have been found in Oracle’s JRE and JDK software suites allowing remote attackers to remotely execute arbitrary code, obtain information, and cause Denial of Service.

LinuxSecurity.com: Multiple vulnerabilities have been found in both LibreOffice and OpenOffice, the worst of which allows for the remote execution of arbitrary code.

Is password security at just $1/month too expensive for most?

LinuxSecurity.com: New bind packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…]

LinuxSecurity.com: New curl packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…]

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

LinuxSecurity.com: This update addresses multiple security problems and fixes systemd dependencies.

LinuxSecurity.com: This update addresses multiple security problems and fixes systemd dependencies.

LinuxSecurity.com: the new package fixes the CVE-2016-7966. for more info please take a look athttps://www.kde.org/info/security/advisory-20161006-1.txt

LinuxSecurity.com: This update backports an upstream patch to fix multiple integer overflows(CVE-2016-9085).

DMCA Exemptions Lift Hacking Restrictions

LinuxSecurity.com: Security Report Summary

Outlook Web Access Two-Factor Authentication Bypass Exists
GitLab Patches Command Execution Vulnerability
WeMo smart home devices can be used to spy on Android phones
XSS flaw on Wix leaves the door open to worms

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Major Ransomware Attack Shuts Down Entire National Health Service System
Ubuntu Core Snaps door shut on Linux’s new Dirty COWs
Cisco Patches Critical Bugs in 900 Series Routers, Prime Home Server
Browser hanging? Don’t call that support number! It’s a scam!
OurMine Compromise Business Insider Website through Re-Used Password
Estonia: Digital powerhouse offering e-residency to non-nationals

In terms of technological advancement, Estonia is up there. It is, for example, the first ever country to offer e-residency permits to any world citizen. The post Estonia: Digital powerhouse offering e-residency to non-nationals appeared first on WeLiveSecurity.

Barracuda: Outage caused by ‘large number of inbound connections’
Teen pleads guilty to creating DDoS tool used in 1.7 million attacks
10 AWS security blunders and how to avoid them
Universal hijack hole turns DIY Wix blogs into botnets
Leaks password, check. Leaks Wi-Fi password, check. Can be spoofed, check. Ding! We have an Internet of S**t winner