SysAdmin 24x7
4.34K subscribers
41 photos
2 videos
8 files
6.02K links
Noticias y alertas de seguridad informática.
Chat y contacto:
t.me/sysadmin24x7chat
Download Telegram
US-CERT Current Activity
Cisco Releases Security Update
https://www.us-cert.gov/ncas/current-activity/2017/09/11/Cisco-Releases-Security-Update

Original release date: September 11, 2017

Cisco has released an update to address an Apache Struts 2 vulnerability affecting multiple Cisco products. A remote attacker could exploit this vulnerability to take control of an affected system.

US-CERT encourages users and administrators to review the #Cisco Security Advisory and apply the necessary update.
http://e-r00t.net/test-de-penetracion-de-pasarelas-que-realizan-nat-basado-en-connection-tracking/

Test de penetración de pasarelas que realizan NAT basado en “Connection Tracking”.

Connection Tracking, es un método para que las pasarelas realicen automáticamente el reenvío de puertos basado en la inspección de paquetes. Como algunos protocolos (IRC, FTP, SIP, …) requieren que se establezca un canal de comunicación secundario, los dispositivos que realizan NATting requieren un mecanismo que detecte las instrucciones de este protocolo y reenvíe los […]
Bashware Attack Undetectable by All Anti-Virus & Security Solutions


According to CheckPoint researchers, the Bashware attack technique could be abused even by a known Linux malware family, because security solutions for Windows are not designed to detect such threats.

http://thehackernews.com/2017/09/windows-10-linux-evade-malware.html?m=1