β Monday review β the hot 24 stories of the week β
π Read
via "Naked Security".
From hidden cameras in Airbnb rentals to iPads locked for 48 years - here's everything we wrote last week.π Read
via "Naked Security".
Sophos
Monday review β the hot 24 stories of the week β Naked Security
From hidden cameras in Airbnb rentals to iPads locked for 48 years - here's everything we wrote last week.
β Dragonblood: Data-leaking flaw in WPA3 Wi-Fi authentication β
π Read
via "Naked Security".
Researchers have discovered several holes in a new security protocol for wireless networks.π Read
via "Naked Security".
Naked Security
Dragonblood: Data-leaking flaw in WPA3 Wi-Fi authentication
Researchers have discovered several holes in a new security protocol for wireless networks.
β Rogue Waves: Preparing the Internet for the Next Mega DDoS Attack β
π Read
via "Threatpost".
Why many attack techniques can be reused β but organizations can't defend against them.π Read
via "Threatpost".
Threat Post
Rogue Waves: Preparing the Internet for the Next Mega DDoS Attack
Why many attack techniques can be reused β but organizations can't defend against them. We look at some likely attack vectors for the next 12 months, and analyze some of the most recent and successful adversarial groups, and the types of attacks they deployedβ¦
ATENTIONβΌ New - CVE-2018-16259 (wp_all_import)
π Read
via "National Vulnerability Database".
There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via pmxi-admin-settings large_feed_limit.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-16258 (wp_all_import)
π Read
via "National Vulnerability Database".
There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via pmxi-admin-import custom_type.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-16257
π Read
via "National Vulnerability Database".
There are multiple XSS vulnerabilities in WP All Import plugin 3.4.9 for WordPress via action=template.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-16256 (wp_all_import)
π Read
via "National Vulnerability Database".
There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via Add Filtering Options(Add Rule).π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-16255
π Read
via "National Vulnerability Database".
There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via action=evaluate.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-16254
π Read
via "National Vulnerability Database".
There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via action=options.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2018-13137
π Read
via "National Vulnerability Database".
The Events Manager plugin 5.9.4 for WordPress has XSS via the dbem_event_reapproved_email_body parameter to the wp-admin/edit.php?post_type=event&page=events-manager-options URI.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2017-7772
π Read
via "National Vulnerability Database".
Heap-based Buffer Overflow in Graphite2 library in Firefox before 54 in lz4::decompress function.π Read
via "National Vulnerability Database".
β Is there a link between videogaming and cybercrime? Police think so β
π Read
via "Naked Security".
UK police are planning to issue online warnings to young gamers hoping to deter them from a life of cybercrime, they revealed last week.π Read
via "Naked Security".
Naked Security
Is there a link between videogaming and cybercrime? Police think so
UK police are planning to issue online warnings to young gamers hoping to deter them from a life of cybercrime, they revealed last week.
β Microsoftβs Edge browser reborn after Chromium makeover β
π Read
via "Naked Security".
After three years of embarrassing rejection, might Microsoftβs newly-Chromed Edge browser be on the up?π Read
via "Naked Security".
Sophos News
Naked Security β Sophos News
β Flood of exploits targetting ancient WinRAR flaw continues β
π Read
via "Naked Security".
An ancient WinRAR vulnerability made public in February is now well on its way to becoming one of the most widely and rapidly-exploited security flaws of recent times.π Read
via "Naked Security".
Naked Security
Flood of exploits targetting ancient WinRAR flaw continues
An ancient WinRAR vulnerability made public in February is now well on its way to becoming one of the most widely and rapidly-exploited security flaws of recent times.
β Microsoft Outlook Breach Widens in Scope, Impacting MSN And Hotmail β Report β
π Read
via "Threatpost".
A Microsoft Outlook breach that was disclosed on Friday is thought to be much larger than previously said, a new report found.π Read
via "Threatpost".
Threat Post
Microsoft Outlook Breach Widens in Scope, Impacting MSN And Hotmail β Report
A Microsoft Outlook breach that was disclosed on Friday is thought to be much larger than previously said, a new report found.
π Hackers accessed Outlook.com users' emails: How to secure your personal information π
π Read
via "Security on TechRepublic".
Microsoft has declined to disclose how many users were affected by the breach, though the knock-on effects can be significant. Here's what professionals should do in the wake of the breach.π Read
via "Security on TechRepublic".
π΄ The Single Cybersecurity Question Every CISO Should Ask π΄
π Read
via "Dark Reading: ".
The answer can lead to a scalable enterprise security solution for 2019 and beyond.π Read
via "Dark Reading: ".
Dark Reading
The Single Cybersecurity Question Every CISO Should Ask
The answer can lead to a scalable enterprise security solution for 2019 and beyond.
ATENTIONβΌ New - CVE-2017-7777
π Read
via "National Vulnerability Database".
Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2017-7776
π Read
via "National Vulnerability Database".
Heap-based Buffer Overflow read in Graphite2 library in Firefox before 54 in graphite2::Silf::getClassGlyph.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2017-7774
π Read
via "National Vulnerability Database".
Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2017-7773
π Read
via "National Vulnerability Database".
Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor.π Read
via "National Vulnerability Database".