Menu

Latest articles

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Slackware: 2016-117-01: mozilla-firefox: Security Update Fedora 22 xstream-1.4.9-1.fc22 Gentoo: 201604-04 libksba: Multiple vulnerabilities Gentoo: 201604-05 Wireshark: Multiple vulnerabilities Fedora 23 xstream-1.4.9-1.fc23 Fedora 23 rpm-4.13.0-0.rc1.13.fc23 Red Hat: 2016:0695-01: firefox: Critical Advisory […]

Security fix for CVE-2016-3674 ——————————————————————————– Fedora Update Notification FEDORA-2016-de909cc333 2016-04-26 16:44:53.220685 ——————————————————————————– Name : xstream Product : Fedora 23 Version : 1.4.9 Release : 1.fc23 URL : http://xstream.codehaus.org/ Summary : Java XML serialization library Description : XStream is a simple library to serialize objects to XML and back again. A high level facade is supplied […]

* Fix sigsegv in stringFormat() (rhbz:1316903) * Fix reading rpmtd behind itssize in formatValue() (rhbz:1316896) ——————————————————————————– Fedora Update Notification FEDORA-2016-c3d9a9c0c4 2016-04-26 16:44:53.188544 ——————————————————————————– Name : rpm Product : Fedora 23 Version : 4.13.0 Release : 0.rc1.13.fc23 URL : http://www.rpm.org/ Summary : The RPM package management system Description : The RPM Package Manager (RPM) is a […]

An update for firefox is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: firefox security update Advisory ID: RHSA-2016:0695-01 Product: Red Hat Enterprise […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3558-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff April 26, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : openjdk-7 CVE ID : CVE-2016-0636 CVE-2016-0686 CVE-2016-0687 CVE-2016-0695 CVE-2016-3425 CVE-2016-3426 CVE-2016-3427 Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in breakouts of the Java sandbox, denial of […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Slackware: 2016-117-01: mozilla-firefox: Security Update Fedora 22 xstream-1.4.9-1.fc22 Gentoo: 201604-04 libksba: Multiple vulnerabilities Gentoo: 201604-05 Wireshark: Multiple vulnerabilities Fedora 23 xstream-1.4.9-1.fc23 Fedora 23 rpm-4.13.0-0.rc1.13.fc23 Red Hat: 2016:0695-01: firefox: Critical Advisory […]

Update to 2.7.4 (for CVE-2016-2315, CVE-2016-2324). ——————————————————————————– Fedora Update Notification FEDORA-2016-8f164810c3 2016-04-26 16:32:18.393829 ——————————————————————————– Name : git Product : Fedora 24 Version : 2.7.4 Release : 1.fc24 URL : http://git-scm.com/ Summary : Fast Version Control System Description : Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides […]

Discovered: April 26, 2016 Updated: April 26, 2016 9:13:12 AM Type: Trojan Infection Length: 70,656 bytes Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Backdoor.Etumbot is a Trojan horse that opens a back door on the compromised computer. It […]

Discovered: April 26, 2016 Updated: April 26, 2016 11:49:27 AM Type: Trojan Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Trojan.Pladrop is a Trojan horse that may perform malicious activities on the compromised computer. Symantec Security Response is currently […]

Malware ‘used as part of a wider toolkit’ in Bangladesh Bank attack

��}�r۸���j�a�Bi”���W�H���9�{�Lv�9s�$�.H�$���e����;�ݪ݇ت}��7�O��H�K�,+���d>B�@���n4 ����������W�o�����Kꍺ�O4�l�u5>: �(�,��|s�,/|�A�{Oƌڽ{�$�{2aE �[�v�c�E̋�ә�42���ZĮ”<�i��GCc_#V�ο?�|����YP/_t�=b����v鰩σ(Sz��Ѹk�Kg��Aω�်�۪�4�|�2#t"f��:@�{�g�6������cĻ���s��������m�����Š}չ�ja^Rױi��f+�����~{�h{w���|���l��?~���Ց���0]ǻ s�Z��D@E�Ajd�l�v5?p�������1��Ђ��%2,S@�������7r:vB��#�7�#g���d�Dc�A���$r”��^SwJF���-� �O���!�P�f�8w/��?���a��3�Y���U|� 4����%�me�����.iQ4ן���(7q���.G!�Ўyg�*�KGy��֝������;2¢��U�m�i4����ik}��~�l4���w&t�V�bFƾ˩��}M/Bgb����[�?ʴ)�O /b�p��i3�’̴��<|���J�4��i�_�㸐�|Bo/��I9h��x��K�y-�+�0�'/~$���s-Z�����9���փ�g�y6�ل�;',�o�.��i�~ t {��zo������%h��<`�-Q�׾�k����MA5��F�#�q0`��G :V�(��ZM��HJ����-��Ⅸl��;d�7��f�Yö?���W���2o�{֩�wauv���n����F���n�m��&X��]�C�~p�u�Ҕ-��b�����A�”�����c��^�lvJGo@$j.@�:�jR�g�}���G�/�O0�He|!�]�����’:��o�����A�tSƩ�lb��S�F�H_!�����r�k�xߤ����� 2�X�V~WӠe��z*��ZcԸߪ7hEYT2�;�8�@�9�j���:���”�#.X�y���AX���i�C�”X�]�W�2#%���?^7�fF؟�Z�w�`h*����Ќ�걆�ԯz�R�z�&uU��y��@w�Q<�$[���Kq���r

Cyberespionage group abuses Windows hotpatching mechanism to hide malware
The perimeter is everywhere (so where is your data really?)
Companies fear data breaches caused by compromised credentials
94 Percent of IT Pros See Free Wi-Fi Hotspots as a Significant Security Threat
James Clapper: Snowden sped up sophistication of crypto, “it’s not a good thing”
MongoDB configuration error exposed 93 million Mexican voter records
4 password managers that make online security effortless
FBI won’t share iPhone hack with Apple because it doesn’t know how it works
Enterprises fall behind on protecting against phishing, detecting breaches
Ransomware and the Internet of Things
How to protect your Yahoo! account with two-step verification (2SV)
7 million Minecraft Pocket Edition players put at risk after Lifeboat hack

Discovered: April 27, 2016 Updated: April 27, 2016 3:00:57 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Trojan.Pekelog is a Trojan horse that may perform malicious activities on the compromised computer. Symantec Security […]

7ev3n ransomware alters name, asks for much lower ransom
Facebook Users Hit with ‘irregularities of content’ Phishing Scam
United Cyber Caliphate (UCC), formation of a mega hacking group by ISIS
BeautifulPeople Dating Site, 1.1 Million Users Data for Sale on Dark Web

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Update to 1.9.6. Fixes bug #1327744 as well as CVE-2016-3096 ——————————————————————————– Fedora Update Notification FEDORA-2016-65519440f5 2016-04-25 18:03:33.087200 ——————————————————————————– Name : ansible1.9 Product : Fedora 23 Version : 1.9.6 Release : 1.fc23 URL : http://ansible.com Summary : SSH-based configuration management, deployment, and task execution system Description : Ansible is a radically simple model-driven configuration management, multi-node […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Sync with openssh package. ——————————————————————————– Fedora Update Notification FEDORA-2016-188267b485 2016-04-25 18:03:33.085699 ——————————————————————————– Name : gsi-openssh Product : Fedora 23 Version : 7.2p2 Release : 1.fc23 URL : http://www.openssh.com/portable.html Summary : An implementation of the SSH protocol with GSI authentication Description : SSH (Secure SHell) is a program for logging into and executing commands on a […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Update to 1.9.6. Fixes bug #1327744 as well as CVE-2016-3096 ——————————————————————————– Fedora Update Notification FEDORA-2016-28ff51a3f5 2016-04-25 18:02:16.026705 ——————————————————————————– Name : ansible1.9 Product : Fedora 22 Version : 1.9.6 Release : 1.fc22 URL : http://ansible.com Summary : SSH-based configuration management, deployment, and task execution system Description : Ansible is a radically simple model-driven configuration management, multi-node […]

Sync with openssh package. ——————————————————————————– Fedora Update Notification FEDORA-2016-fc1cc33e05 2016-04-25 18:02:16.026570 ——————————————————————————– Name : gsi-openssh Product : Fedora 22 Version : 6.9p1 Release : 8.fc22 URL : http://www.openssh.com/portable.html Summary : An implementation of the SSH protocol with GSI authentication Description : SSH (Secure SHell) is a program for logging into and executing commands on a […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 mingw-poppler-0.34.0-2.fc23 Fedora 23 golang-1.5.4-1.fc23 Fedora 23 ansible1.9-1.9.6-1.fc23 Fedora 23 mod_nss-1.0.12-3.fc23 Fedora 23 gsi-openssh-7.2p2-1.fc23 Fedora 22 golang-1.5.4-1.fc22 Fedora 22 mingw-poppler-0.30.0-4.fc22 Fedora 22 mod_nss-1.0.11-7.fc22 Community Linux Events Linux User Groups […]

Posted by Anthony Pell    Several security issues were fixed in MySQL. ========================================================================== Ubuntu Security Notice USN-2954-1 April 25, 2016 mysql-5.7 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS Summary: Several security issues were fixed in MySQL. Software Description: – mysql-5.7: MySQL database Details: Multiple security […]

A lot happens in the security world and many stories get lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Quicktime for Windows No Longer Supported This week, Microsoft announced they would no longer be […]

Qatar National Bank Hacked, 1.4GB Database Leaked
Empty DDoS threats earn extortion group over $100,000
Researcher finds Mexico’s entire voter database (93.4 million) online
Shock Clock, a wearable that will shock you to get out of the bed
5 tips for defending against advanced persistent threats
Insider threats: A persistent and widespread problem

When it comes to cybercrime, a lot of the focus is centered on external threats and on the individuals who actively attempt to cause harm and damage, whether by infecting a computer system with malware or through the encryption of files for reasons of extortion. This attention understandable. Threats posed by cybercriminals to organizations is great, so […]

Creators of SpyEye Virus Sentenced to 24 Years in Prison
Misunderstanding Indicators of Compromise
How I Hacked Facebook, and Found Someone’s Backdoor Script
The dark side of biometric identification

As I read about the Kuwaiti government’s plan to test and log the DNA of everyone in that country, I was reminded of what a bad idea such schemes are. It’s great for law enforcement, I guess, but it’s terrible for personal privacy and overall security. What do I mean that it’s bad for security? […]

Using the Java Security Manager in Enterprise Application Platform 7

Several issues have been discovered in the MySQL database server. The vulnerabilities are addressed by upgrading MySQL to the new upstream version 5.5.49. Please see the MySQL 5.5 Release Notes and Oracle’s Critical Patch Update advisory for further details: For the stable distribution (jessie), these problems have been fixed in version 5.5.49-0+deb8u1. We recommend that […]

Pentagon Wants One-of-A-Kind Encryption Enabled Messaging App

Risk High Date Discovered November 11, 2014 Description Microsoft Windows is prone to a remote privilege-escalation vulnerability. An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges. Technologies Affected Microsoft Windows 7 for 32-bit Systems SP1 Microsoft Windows 7 for x64-based Systems SP1 Microsoft Windows 8 for 32-bit Systems Microsoft Windows 8 […]

Risk High Date Discovered September 30, 2003 Description Multiple vulnerabilities were reported in the ASN.1 parsing code in OpenSSL. Attackers could exploit these issues to cause a denial of service or to execute arbitrary code. Recommendations Block external access at the network boundary, unless external parties require service. If global access isn’t needed, filter access […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Posted by Anthony Pell    Update to version 20160222-1 to fix bugs(#1285888,1307846,1320511,1320956,1320958) ——————————————————————————– Fedora Update Notification FEDORA-2016-73eb29f890 2016-04-24 17:22:11.575647 ——————————————————————————– Name : parallel Product : Fedora 23 Version : 20160222 Release : 1.fc23 URL : http://www.gnu.org/software/parallel/ Summary : Shell tool for executing jobs in parallel Description : GNU Parallel is a shell tool for executing […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Security fix for CVE-2015-8325: ignore PAM environment vars when UseLogin=yes. ——————————————————————————– Fedora Update Notification FEDORA-2016-7f5004093e 2016-04-24 17:22:11.574810 ——————————————————————————– Name : openssh Product : Fedora 23 Version : 7.2p2 Release : 3.fc23 URL : http://www.openssh.com/portable.html Summary : An open source implementation of SSH protocol versions 1 and 2 Description : SSH (Secure SHell) is a program […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Posted by Anthony Pell    Update to version 20160222-1 to fix bugs(#1285888,1307846,1320511,1320956,1320958) ——————————————————————————– Fedora Update Notification FEDORA-2016-7eb5caa94d 2016-04-24 17:21:43.073116 ——————————————————————————– Name : parallel Product : Fedora 22 Version : 20160222 Release : 1.fc22 URL : http://www.gnu.org/software/parallel/ Summary : Shell tool for executing jobs in parallel Description : GNU Parallel is a shell tool for executing […]

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3556-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso April 24, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libgd2 CVE ID : CVE-2016-3074 Debian Bug : 822242 Hans Jerry Illikainen discovered that libgd2, a library for programmatic graphics creation and manipulation, suffers of a signedness vulnerability which may result in a heap […]

Resolves:rh#1324349 – denial of service with crafted html files ——————————————————————————– Fedora Update Notification FEDORA-2016-80c07fbb6c 2016-04-24 01:34:43.161129 ——————————————————————————– Name : w3m Product : Fedora 23 Version : 0.5.3 Release : 24.fc23 URL : http://w3m.sourceforge.net/ Summary : A pager with Web browsing abilities Description : The w3m program is a pager (or text file viewer) that can […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Posted by Anthony Pell    The 4.5.2 stable update contains a number of important fixes across the tree.This build should also boot on some of the i686 systems that would not bootbefore. ——————————————————————————– Fedora Update Notification FEDORA-2016-7f37d42add 2016-04-23 23:42:43.599148 ——————————————————————————– Name : binutils Product : Fedora 24 Version : 2.26 Release : 18.fc24 URL : […]

Welcome! Sign up! EnGarde Community Login Polls What is the most important Linux security technology? SELinux grsecurity CIS Benchmark Bastille Linux iptables LIDS   Advisories Fedora 23 python-tgcaptcha2-0.3.1-1.fc23 Fedora 23 parallel-20160222-1.fc23 Fedora 23 thunderbird-45.0-2.fc23 Fedora 23 openssh-7.2p2-3.fc23 Fedora 22 python-tgcaptcha2-0.3.1-1.fc22 Fedora 22 parallel-20160222-1.fc22 Debian: 3556-1: libgd2: Summary Fedora 23 w3m-0.5.3-24.fc23 Community Linux Events Linux User […]

Facebook has more than 1million users on Tor
Malvertising attack silently infects old Android devices with ransomware
Stolen usernames and passwords still cause almost a quarter of all data breaches
Hell froze over. Hacked firm cares more about its users’ security than its corporate image
4 tech nightmares keeping IT leaders up at night
Phantom riders abusing stolen Uber users’ accounts for strange journeys
US no longer requires Apple’s help to crack iPhone in New York case
Why email hasn’t killed the fax
Get FREE threat intelligence on hackers and exploits with the Recorded Future Cyber Daily [Sponsor]

Several vulnerabilities were discovered in imlib2, an image manipulation library. CVE-2011-5326 Kevin Ryde discovered that attempting to draw a 2×1 radi ellipse results in a floating point exception. CVE-2014-9771 It was discovered that an integer overflow could lead to invalid memory reads and unreasonably large memory allocations. CVE-2016-3993 Yuriy M. Kaminskiy discovered that drawing using […]

Anonymous Ghost Squad’s DDoS Attack Shuts Down KKK Website

Hans Jerry Illikainen discovered that libgd2, a library for programmatic graphics creation and manipulation, suffers of a signedness vulnerability which may result in a heap overflow when processing specially crafted compressed gd2 data. A remote attacker can take advantage of this flaw to cause an application using the libgd2 library to crash, or potentially, to […]

Xbox Live’ Social and Gaming Service Goes Down
Bank implements poor security measures, loses $81 million
Security Experts Discover Malware in Facebook’s Staff Server
SMS phishing attackers continue to pursue Apple users

��}�۶��o�*�ӧ,)����%{�$�kǾ’�s�EBg(���ht������1�j�`�M�lw��i4�I���ĦH��ht7����o������ûׯ��}<��.sMo�׸��|�� �#粯��C6�����ǁ1�-/��A�;�'ܴw��{��<_�3���]8|�a���9v<���±�N?����1]=�L��;U�ƾ?v�91�/x��=��k^�����#?L������;����÷����_<������х�:�s��Q����?�8y}��0q�13�ش�yE/�,�Y��<= ��$�Ϗ[��]��6��� �?a3?qm6�l�� ��'H�xb��!�gI3�C�4��pN�ȩ�n�բ��.��I(�y�f��Іn M�����i�����ޣ��Mk@��G ��X�ez���7N�vg���iu{�h�)%�zJI]�Q7q���±�4B?�al���ƙ�c���( 5 ߴ�l�`����]�tw������j�Aw�<<���VZ�����ڒ�UaXҝ�(�%���Ϗ�R �S��V�ƒ���w��N��8'�Y�8o��?|�����������v��g�)�j(qg�x�?3Ng��g� �a��O�Ќ�Ϡ�EGk�֊�����ZD�跖����߽����Қ4Ռ�Ï����' z6�V�V�7���Awml�,�TY�I�v�q=s��ct�}����uo�x�j�fsش���̮��OfȬ�� ��.�J^�Y��5�v�2�=��y��m�4�� |:0 Y���!��@��k��~�ob�H�$#ml�Bz��o���now���w��6���~��n�Mˈ��fl��ӫz�p�7�’��5ׁ���z�V�^�ocw_�#�zg���ovؾ���F��^�*�)_AS�l�#ˈB�o”����b��^�l����P�p�5�U�Ƴ�’�k׭��8j�r�”���)h�C�’L�2� j7���o^�@��{����C�E�q�Ԃm��6c���+�����q@v�m���.�r@ {<|R/��kв����m�9n��4�fEY�-�;�8�@�:�Bu�������B�E1��ֱ���h�Y��hՅ�jھ� �4��j��-�VR���).�w������}ڤ��}�{�v��5燰�DIf�`�a�M/�C�’A93��K_.�hbZU_’�O�C����Z�V�;��!k3��_�J/�%�k�1��F �8�Ϯ�’^�!|�����b��.qj��j�9v���&�=`�1,�iu d�1���=7�9�����w�H�u~+����b��&���oM��k�5�Z�’���lw���uf���#m�Ő���Ib&�V���_wQJP���v��™�.��:sl>27N��”�z���-Q_j�3T��m0 ��n’��c��l��Z&[�M�B�(�ζ��ߧP�OGơ��Q��v�C�g�V[�tdz��~{��}Lx87R�U�������0*�ac?�oo����(�F�����jt�x�hb{(����n�KE};���G=H����c��������(]�j�ற���$ӆ����#���ˡo�Y���$m��w��VG� t������.�O5=U�E��Z�1L^O��}�:KE+����r��ѭ ��ۮ>u�!n )�@Fo�(TI�Ǿ�pt��(94���n����i_�R�0?r3�&hO�:�CoB@��KhӚFѩ��~�VK��[�=�|��߅�og���PO� ���g߿5`�n�����Hk�R<�,��Ly�ШJ�h�����_��y��{�L�徳�ӂ�@i��:rNGÏ���5=���wVW����#Q���=|k���` h���>�t�N������ ]��V&<�$��Z-`j����D�m�<�jG*9$*�[.�����!��}� r�c�r��������/Gé��<�AG�]���})_ʾ��^e�x@r7<�-�g�Tk4�����)��5�kӃ�c��Qa�Q�.�ZD}��x*�А{���+8�߿{��}�����7wS�jg�ծd��'r��z�p��6�/0Ԣ����� .� d�SmO�(6øv��]���s�zG���hrt�RAP*0+�Z���7w��e~h�n߽ׯ������’�`�>tk��3���9��G���� � ������C�=-g���Qr�f|�`լ-ƪV����C�ğS��i�+��v�z{ݽ�A���y=��m�f�g^�� }�}A�v+|�]9��PS�{�?j�Пi�U,S,'[%�է����)<�؀`0�kz��(Z.��E����q_��ɋw���� ����p������`�;�9��Ѵ�ܫת�ֲđ�F� U(��1��[�b����g�XN�/�+{E=‰OR`۬`��R�K'�U�s�Ua�@��9h��KBEp��T�k�s���(�$��^�0��sfs���=�” ���|�6X��z�Vm�đ5Y��oɔ�h�c�E6��$�WW[_J��rS>Z�d 5|�Xl*���/o��YK`�Y�1�7;ݔ9��Nic��In�YP��GLك�i�G��0� Z1妠;��0�0��$�Uŋ�6H�I8byQI5s- ��4܇d��mS�U�3�hE�Zn��iMr�3Ld�g�����`则`�����$�h �B���%��,kH�R���1�SSbB0�ESm�*5�v����=U�f��z���K<�E��'��j�$ E��*&GK�Y����y����0J �6j�!��36�a ę K{)`�Aa'���8�=9��V�#'c�+��kQ�Z�l��/M��zZR�;��eJ �}���N�hA_X2@���r�5u��ֺ�[��rz^e������%t(��T��_�ɲ�_uY�.�ٰР� i�)��b�"�h�K`p+5�N�<'�iE�G�eע���}���޲�w��n%Q�o���e�=���~�T��mѪO.o]���8Zo�V�i�lu�ܡ���~g+]}��nz�;��;�%�C�̘G1��N��S�Ԛ�!�1J�θ�pa�zM��3��r4g0����`"~W�T��C�-떀}�Wu���ѣ��j�`,;�).���-�qLs�O�Nc���f$�ABX�-������.��� �1;�۟y*]^gR��/L�Y��s�l6Ch � @U� H�p~�̐���$�� BX,�q�N�/i�M/�}�}pp='�C��@Vl@!�/0������ߺ��E�ꂋ��g���g�����m�[����)���z~�.�n{o;)R� W��[*�e�@?'����d����ވ�-�^�rij k2�t�JrdZ��-]);��v{�cy�J����

SpyEye Makers Get 24 Years in Prison
FBI Hints It Paid Hackers $1 Million to Get Into San Bernardino iPhone
700 Million People Just Got Encryption That Congress Can’t Touch
Anonymous Shutdown Denver Police Website Against Fatal Shooting
Crooks Target Apple Users with ‘Apple ID Expiration’ Phishing Scam

CVE-2016-3960 (XSA-173) Ling Liu and Yihan Lian of the Cloud Security Team, Qihoo 360 discovered an integer overflow in the x86 shadow pagetable code. A HVM guest using shadow pagetables can cause the host to crash. A PV guest using shadow pagetables (i.e. being migrated) with PV superpages enabled (which is not the default) can […]

Anonymous Hacker Arrested for Hacking, Leaking Filipinos’ Voters Data
Ubuntu Snap doesn’t have the security issue — X11 does

Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3553-1 security@debian.org https://www.debian.org/security/ Sebastien Delafond April 22, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : varnish CVE ID : CVE-2015-8852 Debian Bug : 783510 Régis Leroy from Makina Corpus discovered that varnish, a caching HTTP reverse proxy, is vulnerable to HTTP smuggling issues, potentially resulting in cache poisoning or […]