ATENTIONβΌ New - CVE-2019-19913
π Read
via "National Vulnerability Database".
In Intland codeBeamer ALM 9.5 and earlier, there is stored XSS via the Trackers Title parameter.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-19912
π Read
via "National Vulnerability Database".
In Intland codeBeamer ALM 9.5 and earlier, a cross-site scripting (XSS) vulnerability in the Upload Flash File feature allows authenticated remote attackers to inject arbitrary scripts via an active script embedded in an SWF file.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-19606
π Read
via "National Vulnerability Database".
X-Plane 11.41 and earlier has multiple improper path validations that could allow reading and writing files from/to arbitrary paths (or a leak of OS credentials to a remote system) via crafted network packets. This could be used to execute arbitrary commands on the system.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-19605
π Read
via "National Vulnerability Database".
X-Plane 11.41 and earlier allows Arbitrary Memory Write via crafted network packets, which could cause a denial of service or arbitrary code execution.π Read
via "National Vulnerability Database".
β βInstant bank fraudβ warning spread on WhatsApp is a hoax β
π Read
via "Naked Security".
No, we don't know why people start hoaxes like this. You can do your bit by not forwarding them, not even "just in case".π Read
via "Naked Security".
Naked Security
βInstant bank fraudβ warning spread on WhatsApp is a hoax
No, we donβt know why people start hoaxes like this. You can do your bit by not forwarding them, not even βjust in caseβ.
β Covid-19 Poll Results: One in Four Prioritize Health Over Privacy β
π Read
via "Threatpost".
An informal Threatpost reader poll shows the majority of site visitors are privacy absolutists. But attitudes shift when the trade off is saving lives.π Read
via "Threatpost".
Threat Post
Covid-19 Poll Results: One in Four Prioritize Health Over Privacy
An informal Threatpost reader poll shows the majority of site visitors are privacy absolutists. But attitudes shift when the trade off is saving lives.
β Researchers speed the death of βbadβ data in the race against good β
π Read
via "Naked Security".
They have a way to inject 'good' data - i.e., accurate COVID-19 news or security patches - to outpace the spread of fake news or malware.π Read
via "Naked Security".
Naked Security
Researchers speed the death of βbadβ data in the race against good
They have a way to inject βgoodβ data β i.e., accurate COVID-19 news or security patches β to outpace the spread of fake news or malware.
β Data on almost every citizen of Georgia posted on hacker forum β
π Read
via "Naked Security".
Where did it all come from? 4.9m records were posted on a hacking forum - and the country only has an estimated population of 3.7m.π Read
via "Naked Security".
Naked Security
Data on almost every citizen of Georgia posted on hacker forum
Where did it all come from? 4.9m records were posted on a hacking forum β and the country only has an estimated population of 3.7m.
π΄ Limited-Time Free Offers to Secure the Enterprise Amid COVID-19 π΄
π Read
via "Dark Reading: ".
These products and services could be of immediate help to infosec pros now protecting their organizations while working from home.π Read
via "Dark Reading: ".
Dark Reading
Limited-Time Free Offers to Secure the Enterprise Amid COVID-19
These products and services could be of immediate help to infosec pros now protecting their organizations while working from home.
π΄ How Much Downtime Can Your Company Handle? π΄
π Read
via "Dark Reading: ".
Why every business needs cyber resilience and quick recovery times.π Read
via "Dark Reading: ".
β Dharma ransomware source code on sale for $2,000 β
π Read
via "Naked Security".
The source code for ransomware-as-a-service strain Dharma has been put up for sale by hackers.π Read
via "Naked Security".
Naked Security
Dharma ransomware source code on sale for $2,000
The source code for ransomware-as-a-service strain Dharma has been put up for sale by hackers.
β Patch now! Critical flaw found in OpenWrt router software β
π Read
via "Naked Security".
OpenWrt is an open source operating system used by millions of home and small business routers and embedded devices.π Read
via "Naked Security".
Naked Security
Patch now! Critical flaw found in OpenWrt router software
OpenWrt is an open source operating system used by millions of home and small business routers and embedded devices.
π OpenSSL Toolkit 1.1.1f π
π Go!
via "Security Tool Files β Packet Storm".
OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1) protocols with full-strength cryptography world-wide.π Go!
via "Security Tool Files β Packet Storm".
Packetstormsecurity
OpenSSL Toolkit 1.1.1f β Packet Storm
Information Security Services, News, Files, Tools, Exploits, Advisories and Whitepapers
π΄ Does the 2020 Online Census Account for Security Risk? π΄
π Read
via "Dark Reading: ".
Experts discuss the security issues surrounding a census conducted online and explain how COVID-19 could exacerbate the risk.π Read
via "Dark Reading: ".
Dark Reading
Does the 2020 Online Census Account for Security Risk?
Experts discuss the security issues surrounding a census conducted online and explain how COVID-19 could exacerbate the risk.
π΄ Palo Alto Networks to Buy CloudGenix for $420M π΄
π Read
via "Dark Reading: ".
Palo Alto Networks plans to integrate CloudGenix's SD-WAN technology into its Prisma SASE platform following the deal.π Read
via "Dark Reading: ".
Dark Reading
Palo Alto Networks to Buy CloudGenix for $420M
Palo Alto Networks plans to integrate CloudGenix's SD-WAN technology into its Prisma SASE platform following the deal.
β Marriott International confirms data breach of up to 5.2 million guests β
π Read
via "Naked Security".
Marriott International has today announced that it has suffered a data breach affecting up to 5.2 million people.π Read
via "Naked Security".
Naked Security
Marriott International confirms data breach of up to 5.2 million guests
Marriott International has today announced that it has suffered a data breach affecting up to 5.2 million people.
ATENTIONβΌ New - CVE-2019-2391
π Read
via "National Vulnerability Database".
Incorrect parsing of certain JSON input may result in js-bson not correctly serializing BSON. This may cause unexpected application behaviour including data disclosure.π Read
via "National Vulnerability Database".
π Phishing emails claim recipient has been infected with coronavirus π
π Read
via "Security on TechRepublic".
A new phishing campaign is using the fear of being infected as a way to spread malware, as spotted by security trainer KnowBe4.π Read
via "Security on TechRepublic".
TechRepublic
Phishing emails claim recipient has been infected with coronavirus
A new phishing campaign is using the fear of being infected as a way to spread malware, as spotted by security trainer KnowBe4.
π IBM providing 9 free public cloud business services to customers during coronavirus pandemic π
π Read
via "Security on TechRepublic".
With companies sending employees home to work during the COVID-19 threat, IBM offers a range of tools to support critical IT applications.π Read
via "Security on TechRepublic".
TechRepublic
IBM providing 9 free public cloud business services to customers during coronavirus pandemic
With companies sending employees home to work during the COVID-19 threat, IBM offers a range of tools to support critical IT applications.
π How to better secure your Microsoft Remote Desktop Protocol connections π
π Read
via "Security on TechRepublic".
Microsoft's Remote Desktop Protocol has been saddled with security bugs and weaknesses, which means you need to take certain precautions when using RDP for remote connections.π Read
via "Security on TechRepublic".
TechRepublic
How to better secure your Microsoft Remote Desktop Protocol connections
Microsoft's Remote Desktop Protocol has been saddled with security bugs and weaknesses, which means you need to take certain precautions when using RDP for remote connections.
β 8-Year-Old VelvetSweatshop Bug Resurrected in LimeRAT Campaign β
π Read
via "Threatpost".
An old RAT learns an old trick.π Read
via "Threatpost".
Threat Post
8-Year-Old VelvetSweatshop Bug Resurrected in LimeRAT Campaign
An old RAT learns an old trick.