β Microsoft June Patch Tuesday Fixes 129 Flaws in Largest-Ever Update β
π Read
via "Threatpost".
The June Patch Tuesday update included CVEs for 11 critical remote code-execution vulnerabilities and concerning SMB bugs.π Read
via "Threatpost".
Threat Post
Microsoft June Patch Tuesday Fixes 129 Flaws in Largest-Ever Update
The June Patch Tuesday update included CVEs for 11 critical remote code-execution vulnerabilities and concerning SMB bugs.
π Macyβs to Settle 2018 Data Breach Class Action Suit π
π Read
via "Subscriber Blog RSS Feed ".
Two years after it happened, the popular department store is electing to settle a class action data breach lawsuit that alleged the company failed to properly secure customer data online.π Read
via "Subscriber Blog RSS Feed ".
π΄ DHS Warns on New Exploit of Windows 10 Vulnerability π΄
π Read
via "Dark Reading: ".
The vulnerability was patched in March, but a new proof of concept raises the stakes for organizations that haven't yet updated their software.π Read
via "Dark Reading: ".
Dark Reading
DHS Warns on New Exploit of Windows 10 Vulnerability
The vulnerability was patched in March, but a new proof of concept raises the stakes for organizations that haven't yet updated their software.
π΄ Vulnerability in Plug-and-Play Protocol Puts Billions of Devices at Risk π΄
π Read
via "Dark Reading: ".
"CallStranger" flaw in UPnP allows attackers to launch DDoS attacks and scan internal ports, security researcher says.π Read
via "Dark Reading: ".
Dark Reading
Vulnerability in Plug-and-Play Protocol Puts Billions of Devices at Risk
CallStranger flaw in UPnP allows attackers to launch DDoS attacks and scan internal ports, security researcher says.
π How to install sudo 1.9 and use the new policy tool π
π Read
via "Security on TechRepublic".
The sudo system is about to undergo some radical changes. Find out how to begin working with the new policy system, to make sudo even more powerful.π Read
via "Security on TechRepublic".
TechRepublic
How to install sudo 1.9 and use the new policy tool
The sudo system is about to undergo some radical changes. Find out how to begin working with the new policy system, to make sudo even more powerful.
π΄ Microsoft Fixes 129 Bugs in Largest Patch Tuesday Release π΄
π Read
via "Dark Reading: ".
The June release of security updates addresses several remote code execution vulnerabilities in SharePoint, Excel, Windows OLE, and other services.π Read
via "Dark Reading: ".
Darkreading
Microsoft Fixes 129 Bugs in Largest Patch Tuesday Release
The June release of security updates addresses several remote code execution vulnerabilities in SharePoint, Excel, Windows OLE, and other services.
ATENTIONβΌ New - CVE-2019-3617
π Read
via "National Vulnerability Database".
Privilege escalation vulnerability in McAfee Total Protection (ToPS) for Mac OS prior to 4.6 allows local users to gain root privileges via incorrect protection of temporary files.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-3613
π Read
via "National Vulnerability Database".
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.π Read
via "National Vulnerability Database".
β Billions of devices affected by UPnP vulnerability β
π Read
via "Naked Security".
Stop us if youβve heard this before but a researcher has uncovered a new security vulnerability affecting many devices running the Universal Plug and Play (UPnP) protocol.π Read
via "Naked Security".
Sophos News
Naked Security β Sophos News
β Babylon mobile health app mixes up patient consultation videos β
π Read
via "Naked Security".
A heatlh care app user found 50 "consultation replay" videos in his personal profile - but they weren't his.π Read
via "Naked Security".
Naked Security
Babylon mobile health app mixes up patient consultation videos
A heatlh care app user found 50 βconsultation replayβ videos in his personal profile β but they werenβt his.
β βBot or Not?β β a game to train us to spot chatbots faking it as humans β
π Read
via "Naked Security".
Can you tell whether you're talking to a human or AI?π Read
via "Naked Security".
Naked Security
βBot or Not?β β a game to train us to spot chatbots faking it as humans
Can you tell whether youβre talking to a human or AI?
π Honda hit by cyberattack that impacted its global operations π
π Read
via "Security on TechRepublic".
The automaker's customer service and financial services are unavailable as it deals with an attack that experts believe is ransomware.π Read
via "Security on TechRepublic".
TechRepublic
Honda hit by cyberattack that impacted its global operations
The automaker's customer service and financial services are unavailable as it deals with an attack that experts believe is ransomware.
π 92% of SMBs think they can recover from a disaster, but many don't have plans in place π
π Read
via "Security on TechRepublic".
New research shows that the vast majority of small and midsize leaders believe they expect, and can handle, the unexpectedβbut 16% don't even know their recovery time objective.π Read
via "Security on TechRepublic".
TechRepublic
92% of SMBs think they can recover from a disaster, but many don't have plans in place
New research shows that the vast majority of small and midsize leaders believe they expect, and can handle, the unexpectedβbut 16% don't even know their recovery time objective.
π How DNS attacks threaten organizations π
π Read
via "Security on TechRepublic".
Application downtime was the most significant side effect of a DNS attack, according to EfficientIP.π Read
via "Security on TechRepublic".
TechRepublic
How DNS attacks threaten organizations
Application downtime was the most significant side effect of a DNS attack, according to EfficientIP and IDC.
β Thanos Ransomware First to Weaponize RIPlace Tactic β
π Read
via "Threatpost".
Thanos is the first ransomware family to feature the weaponized RIPlace tactic, enabling it to bypass ransomware protections.π Read
via "Threatpost".
Threat Post
Thanos Ransomware First to Weaponize RIPlace Tactic
Researchers say the new Thanos ransomware-as-a-service is the first ransomware family to feature the weaponized RIPlace tactic.
β Encryption Utility Firm Accused of Bundling Malware Functions in Product β
π Read
via "Threatpost".
The increasingly prevalent GuLoader malware has been traced back to a far-reaching encryption service that attempts to pass as above-board.π Read
via "Threatpost".
Threat Post
Encryption Utility Firm Accused of Bundling Malware Functions in Product
The increasingly prevalent GuLoader malware has been traced back to a far-reaching encryption service that attempts, according to researchers.
π΄ 3 Ways the Pandemic Will Affect Enterprise Security in the Future π΄
π Read
via "Dark Reading: ".
While CISOs have been focused on immediate threats, it's time to look ahead to what a post-COVID-19 future will look like.π Read
via "Dark Reading: ".
Dark Reading
3 Ways the Pandemic Will Affect Enterprise Security in the Future
While CISOs have been focused on immediate threats, it's time to look ahead to what a post-COVID-19 future will look like.
π What is Cyber Security? Definition, Best Practices & More π
π Read
via "Subscriber Blog RSS Feed ".
Learn about cyber security, why it's important, and how to get started building a cyber security program in this installment of our Data Protection 101 series.π Read
via "Subscriber Blog RSS Feed ".
Digitalguardian
What is Cyber Security? Definition, Best Practices & Examples
Learn about cyber security, why it's important, and how to get started building a cyber security program in this installment of our Data Protection 101 series.
ATENTIONβΌ New - CVE-2019-4576
π Read
via "National Vulnerability Database".
IBM QRadar Network Packet Capture 7.3.0 - 7.3.3 Patch 1 and 7.4.0 GA does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 166803.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-3588
π Read
via "National Vulnerability Database".
Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 14 may allow unauthorized users to interact with the On-Access Scan Messages - Threat Alert Window when the Windows Login Screen is locked.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2019-3585
π Read
via "National Vulnerability Database".
Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 14 may allow local users to interact with the On-Access Scan Messages - Threat Alert Window with elevated privileges via running McAfee Tray with elevated privileges.π Read
via "National Vulnerability Database".