Menu

Latest articles

How any Facebook page could have been hijacked or deleted, in just 10 seconds
Watch Teslas being hacked as they drive, from up to 20 km away
Going, going, done: Trio of prolific auction fraud fraudsters jailed
Hackers claim they breached Aussie point-of-sale tech firm, try to sell ‘customer DB’
Robot arrested for allegedly recording voters at a political rally
Seagate NAS hack should scare us all

No fewer than 70 percent of internet-connected Seagate NAS hard drives have been compromised by a single malware program. That’s a pretty startling figure. Security vendor Sophos says the bitcoin-mining malware Miner-C is the culprit.I’m surprised this story hasn’t garnered more attention. Perhaps it’s because we’re talking only 7,000 hard drives possibly in total, or […]

Online scammers speed up: Hit gold every 15 seconds
How one man could have deleted any Facebook page
Microsoft lets Beijing fondle its bits in new source code audit hub

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Bypass an iPhone 5c’s passcode lock for $100
Mozilla Patching Firefox Certificate Pinning Vulnerability
Facebook Fixes Vulnerability That Led to Account Takeover, Pays Researcher $16K
US Election 2016: 3 Privacy threats to voter data this campaign season
Spyware Targeting Overseas Travelers Removed from Google Play
Misspelled Malwarebytes isn’t the real deal. It’s ransomware!
FBI or no FBI – how one man says he can crack an iPhone for less than $100
Cisco Warns of IOS Flaw Vulnerable to ShadowBrokers Attack
Uninstall your anti-virus says Amazon, if you want to work for us from home
324,000 payment cards breached, CVVs included, source still unknown!
Bullocks need privacy too! Google Street View blurs ruminant’s face
Cisco patches Equation group exploit in IOS, IOS XE, and IOS XR devices
Mooncake thieves fired from Alibaba’s infosec department
Password-protect your Wi-Fi hotspots and ask for user details too, rules ECJ
Brits: Can banks do biometric security? We’d trust them before the government
Facebook and Twitter team up with news orgs to help stop hoax news
Microsoft snubs alert over Exchange hole
Science news journal EurekAlert down after hack
Cybersecurity becoming a key boardroom agenda item

An increase in the number of cyberattacks and growing awareness of the threat has made cybersecurity a key boardroom level consideration. The post Cybersecurity becoming a key boardroom agenda item appeared first on WeLiveSecurity.

Security scores for cloud companies on the way
Fight cybercrime by “plug and play” encrypting all data and communications
Dark web drug sellers shutter location-tracking EXIF data from photos
FBI overpaid $999,900 to crack San Bernardino iPhone 5c password
Mozilla will patch zero-day Firefox bug to fiddle man-in-the-middle diddle
How an attacker could exploit Windows Safe Mode to steal users’ passwords
Let’s Encrypt won its Comodo trademark battle – but now fan tools must rename
Artificial Intelligence can Decode and Unblur Pixelated Images
Turns out iPhone 5c can be hacked with a $100 hardware
Hacker Shows How to Hack Any Facebook Page; Earns $16k as Bug Bounty
Snowden Slammed in House Committee Report

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Fancy Bear Hackers Leak More WADA Data; Accuse More Athletes of Doping

Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation. For the stable distribution (jessie), this problem has been fixed in version 8.0.14-1+deb8u3. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your tomcat8 packages.

Dawid Golunski of LegalHackers discovered that the Tomcat init script performed unsafe file handling, which could result in local privilege escalation. For the stable distribution (jessie), this problem has been fixed in version 7.0.56-3+deb8u4. We recommend that you upgrade your tomcat7 packages.

FBI Encouraging Ransomware Victims To Report Infections
Bugs in Signal Messaging App Corrupt Attachments, Crash App
This Ransomware Exposes Users’ Location Data on the Internet
Researcher Proves Viability of NAND Mirroring to Bypass iPhone Passcode Restrictions
Anti-virus industry’s bête noire Tavis Ormandy to enter the lion’s den
Teen sues parents over embarrassing childhood photos on Facebook
Threatpost News Wrap, September 16, 2016
Cover your webcam – protect your privacy from hackers

There’s a lot that happens in the cybersecurity world, with many stories getting lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Patch Tuesday Changing Update Format In one of the largest changes that Microsoft has implemented, […]

National Cyber Security Centre to shift UK to ‘active’ defence
Judge Decides to Extradite Lauri Love to the US
Pramworld admits mailing list breach
FBI Director James Comey wants you to cover your webcam
The Feds Will Soon Be Able to Legally Hack Almost Anyone
Pardon Edward Snowden
Gmail outage for business users lasted over 12 hours
Some security advice for Colin Powell to better protect his Gmail account
Chrome and Firefox mark ThePirateBay.org as Malicious Site Again
You call it ‘hacking.’ I call it ‘investigation’
Emerging technologies are poking holes in security
The real threat to our elections: Disinformation and doubt
New Google API cryptographically secures Chromebooks
Ransomware scum infect Comic Relief server: Internal systems taken down
Researcher says Patch Tuesday fix should have been made earlier
Remote hacker nabs Win10 logins in ‘won’t-fix’ Safe Mode* attack
Cisco drops patch for nasty WebEx remote code execution hole
Online Ad Service ClixSense Hacked; 6M Plain-Text Passwords Leaked
Encryption backdoors? It’s an ongoing dialogue, say anti-terror bods
It’s OK for the FBI’s fake hacks to hack suspects’ PCs, says DoJ watchdog
Neverquest Trojan Gets Big Summer Update

Risk Medium Date Discovered September 13, 2016 Description Microsoft Internet Explorer and Edge are prone to an information disclosure vulnerability. Attackers can exploit this issue by enticing an unsuspecting user to view a specially crafted webpage. Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks. Edge and Internet explorer […]

Attack Leverages Windows Safe Mode
Snowden: 4 big security and privacy assumptions he undermined

Oliver Stone’s movie about Edward Snowden, which opens on Friday, September 16th, 2016, has a lot of people looking back at one of the biggest information security breaches in US history, the one we learned about in June, 2013. That’s when the UK-based Guardian newspaper published classified information about the mass electronic surveillance activities of […]

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: kernel security, bug fix, and enhancement update Advisory ID: RHSA-2016:1847-01 Product: […]

Red Hat: 2016:1875-01: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Red Hat: 2016:1883-01: kernel-rt: Important Advisory Posted by Anthony Pell    An update for kernel-rt is now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: […]

Debian: 3667-1: chromium-browser: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3667-1 security@debian.org https://www.debian.org/security/ Michael Gilbert September 15, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : chromium-browser CVE ID : CVE-2016-5170 CVE-2016-5171 CVE-2016-5172 CVE-2016-5173 CVE-2016-5174 CVE-2016-5175 CVE-2016-7395 Several vulnerabilities have been discovered in the chromium web browser. CVE-2016-5170 A use-after-free issue […]

Debian: 3666-1: mysql-5.5: Summary Posted by Anthony Pell    Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3666-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 14, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : mysql-5.5 CVE ID : CVE-2016-6662 Dawid Golunski discovered that the mysqld_safe wrapper provided by the MySQL database server insufficiently restricted the load path for custom […]

Microsoft Shuts Down Zero Day Used in AdGholas Malvertising Campaigns
Cisco Patches Critical WebEx Meetings Server Vulnerability
Can you stay anonymous by hiding your face?
Hacked TalkTalk data used in scamming people with thousands of pounds
Trump website server config snafu left interns’ CVs exposed
How one teen gained access to T-Mobile’s network for free – without any data plan or contract
Bruce Schneier on Probing Attacks Testing Core Internet Infrastructure
DDoSers do it more now, but they do it less fiercely*
Google offers $200,000 for Android-busting exploit
Will Congress ever vote on the “The Stop Mass Hacking Act”?
Internet of targets: Webcams and routers in the crosshairs of bad guys

Mass surveillance, stolen data, passwords and misused sensitive information; it seems that there is so much to worry about these days when it comes to your online privacy. All most people want is to browse the web and enjoy its treats instead of bumping into malware or other problems, right? Then you read about things occurring online that […]

‘Cyber Terrorists’ Hack Housing Authority Data; Demand $4k Ransom
Why hackers hack: Is it all about the money?