science and technology US Says It Can Prove Huawei Has Backdoor Access To Mobile Phone Networks By packetstormsecurity.com Published On :: Wed, 12 Feb 2020 18:13:47 GMT Full Article headline government usa phone china cyberwar backdoor
science and technology DISA Breach Likely Exposed Personal Data On At Least 200,000 By packetstormsecurity.com Published On :: Tue, 25 Feb 2020 14:59:51 GMT Full Article headline government privacy usa data loss flaw cyberwar military
science and technology U.S. Agencies Get Ready For Election Interference By packetstormsecurity.com Published On :: Tue, 03 Mar 2020 14:01:08 GMT Full Article headline government usa russia fraud cyberwar
science and technology Russian-Led Troll Network Based In West Africa Uncovered By packetstormsecurity.com Published On :: Sun, 15 Mar 2020 14:22:47 GMT Full Article headline government usa russia fraud africa cyberwar
science and technology FSB Contractor Breach Exposes Secret Cyber Weapons Program By packetstormsecurity.com Published On :: Tue, 24 Mar 2020 14:15:28 GMT Full Article headline government russia cyberwar
science and technology Never-Before-Seen Attackers Are Targeting Mideast Industrial Organizations By packetstormsecurity.com Published On :: Wed, 25 Mar 2020 14:07:39 GMT Full Article headline hacker malware cyberwar scada
science and technology DarkHotel Hackers Use VPN Zero-Day To Breach Chinese Government Agencies By packetstormsecurity.com Published On :: Mon, 06 Apr 2020 18:18:05 GMT Full Article headline hacker government malware virus china cyberwar
science and technology Officials Say State-Backed Hackers Taking Advantage Of Outbreak By packetstormsecurity.com Published On :: Thu, 09 Apr 2020 14:33:43 GMT Full Article headline government malware virus cyberwar
science and technology Russian State Hackers Behind San Francisco Airport Hack By packetstormsecurity.com Published On :: Tue, 14 Apr 2020 14:33:09 GMT Full Article headline government malware russia cyberwar
science and technology Vietnam-Linked Hackers Targeted Chinese Government By packetstormsecurity.com Published On :: Wed, 22 Apr 2020 15:04:59 GMT Full Article headline hacker government virus china cyberwar vietnam
science and technology Israel Government Tells Water Treatment Companies To Change Passwords By packetstormsecurity.com Published On :: Mon, 27 Apr 2020 14:34:10 GMT Full Article headline malware cyberwar israel scada
science and technology Naikon APT Hid Five Year Espionage Attack Under Radar By packetstormsecurity.com Published On :: Fri, 08 May 2020 14:22:52 GMT Full Article headline malware china cyberwar govenrment
science and technology Ubuntu Security Notice USN-3457-1 By packetstormsecurity.com Published On :: Mon, 23 Oct 2017 13:51:09 GMT Ubuntu Security Notice 3457-1 - Brian Carpenter discovered that curl incorrectly handled IMAP FETCH response lines. A remote attacker could use this issue to cause curl to crash, resulting in a denial of service, or possibly execute arbitrary code. Full Article
science and technology Red Hat Security Advisory 2017-3263-01 By packetstormsecurity.com Published On :: Mon, 27 Nov 2017 10:10:00 GMT Red Hat Security Advisory 2017-3263-01 - The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP. Security Fix: A buffer overrun flaw was found in the IMAP handler of libcurl. By tricking an unsuspecting user into connecting to a malicious IMAP server, an attacker could exploit this flaw to potentially cause information disclosure or crash the application. Full Article
science and technology Debian Security Advisory 4181-1 By packetstormsecurity.com Published On :: Sat, 28 Apr 2018 18:18:00 GMT Debian Linux Security Advisory 4181-1 - Andrea Basile discovered that the 'archive' plugin in roundcube, a skinnable AJAX based webmail solution for IMAP servers, does not properly sanitize a user-controlled parameter, allowing a remote attacker to inject arbitrary IMAP commands and perform malicious actions. Full Article
science and technology Malbait TCP/UDP Honeypot By packetstormsecurity.com Published On :: Wed, 20 Jun 2018 17:02:22 GMT Malbait is a honeypot written in perl. It creates fake servers and supports both TCP and UDP protocols, either singly or in combination. It outputs in CSV format as well as giving more detailed text reports. You can serve fake Telnet, FTP, SMTP, POP3, HTTP, TR-69, IMAP, asciitime, systat and echo servers, as well as serving blank or random output. Full Article
science and technology Ubuntu Security Notice USN-3724-1 By packetstormsecurity.com Published On :: Thu, 26 Jul 2018 00:00:01 GMT Ubuntu Security Notice 3724-1 - Jon Kristensen discovered that Evolution Data Server would automatically downgrade a connection to an IMAP server if the IMAP server did not support SSL. This would result in the user's password being unexpectedly sent in clear text, even though the user had requested to use SSL. Full Article
science and technology Red Hat Security Advisory 2018-2526-01 By packetstormsecurity.com Published On :: Mon, 20 Aug 2018 17:06:08 GMT Red Hat Security Advisory 2018-2526-01 - Mutt is a low resource, highly configurable, text-based MIME e-mail client. Mutt supports most e-mail storing formats, such as mbox and Maildir, as well as most protocols, including POP3 and IMAP. Issues addressed include code execution and traversal vulnerabilities. Full Article
science and technology PHP 5.2.3 imap_open Bypass By packetstormsecurity.com Published On :: Thu, 15 Nov 2018 17:45:50 GMT PHP version 5.2.3 (Debian) suffers from an imap imap_open disable functions bypass vulnerability. Full Article
science and technology Debian Security Advisory 4344-1 By packetstormsecurity.com Published On :: Mon, 26 Nov 2018 08:32:22 GMT Debian Linux Security Advisory 4344-1 - Aidan Marlin discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, is prone to a cross-site scripting vulnerability in handling invalid style tag content. Full Article
science and technology PHP imap_open Remote Code Execution By packetstormsecurity.com Published On :: Wed, 28 Nov 2018 01:52:56 GMT The imap_open function within PHP, if called without the /norsh flag, will attempt to preauthenticate an IMAP session. On Debian based systems, including Ubuntu, rsh is mapped to the ssh binary. Ssh's ProxyCommand option can be passed from imap_open to execute arbitrary commands. While many custom applications may use imap_open, this exploit works against the following applications: e107 v2, prestashop, SuiteCRM, as well as Custom, which simply prints the exploit strings for use. Prestashop exploitation requires the admin URI, and administrator credentials. suiteCRM/e107/hostcms require administrator credentials. Full Article
science and technology Hydra Network Logon Cracker 8.9.1 By packetstormsecurity.com Published On :: Wed, 27 Feb 2019 12:12:12 GMT THC-Hydra is a high quality parallelized login hacker for Samba, Smbnt, Cisco AAA, FTP, POP3, IMAP, Telnet, HTTP Auth, LDAP, NNTP, MySQL, VNC, ICQ, Socks5, PCNFS, Cisco and more. Includes SSL support, parallel scans, and is part of Nessus. Full Article
science and technology Hydra Network Logon Cracker 9.0 By packetstormsecurity.com Published On :: Fri, 17 May 2019 20:22:22 GMT THC-Hydra is a high quality parallelized login hacker for Samba, Smbnt, Cisco AAA, FTP, POP3, IMAP, Telnet, HTTP Auth, LDAP, NNTP, MySQL, VNC, ICQ, Socks5, PCNFS, Cisco and more. Includes SSL support, parallel scans, and is part of Nessus. Full Article
science and technology Debian Security Advisory 4458-1 By packetstormsecurity.com Published On :: Sat, 08 Jun 2019 18:32:22 GMT Debian Linux Security Advisory 4458-1 - A flaw was discovered in the CalDAV feature in httpd of the Cyrus IMAP server, leading to denial of service or potentially the execution of arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name. Full Article
science and technology Red Hat Security Advisory 2019-1771-01 By packetstormsecurity.com Published On :: Mon, 15 Jul 2019 15:17:18 GMT Red Hat Security Advisory 2019-1771-01 - The cyrus-imapd packages contain a high-performance mail server with IMAP, POP3, NNTP, and SIEVE support. Issues addressed include a buffer overflow vulnerability. Full Article
science and technology Debian Security Advisory 4510-1 By packetstormsecurity.com Published On :: Wed, 28 Aug 2019 18:24:06 GMT Debian Linux Security Advisory 4510-1 - Nick Roessler and Rafi Rubin discovered that the IMAP and ManageSieve protocol parsers in the Dovecot email server do not properly validate input (both pre- and post-login). A remote attacker can take advantage of this flaw to trigger out of bounds heap memory writes, leading to information leaks or potentially the execution of arbitrary code. Full Article
science and technology Red Hat Security Advisory 2019-2799-01 By packetstormsecurity.com Published On :: Thu, 19 Sep 2019 16:28:51 GMT Red Hat Security Advisory 2019-2799-01 - Nginx is a web server and a reverse proxy server for HTTP, SMTP, POP3 and IMAP protocols, with a focus on high concurrency, performance and low memory usage. Issues addressed include a denial of service vulnerability. Full Article
science and technology Red Hat Security Advisory 2019-2822-01 By packetstormsecurity.com Published On :: Fri, 20 Sep 2019 14:57:21 GMT Red Hat Security Advisory 2019-2822-01 - Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Issues addressed include an out of bounds write vulnerability. Full Article
science and technology Red Hat Security Advisory 2019-2836-01 By packetstormsecurity.com Published On :: Fri, 20 Sep 2019 14:59:48 GMT Red Hat Security Advisory 2019-2836-01 - Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Issues addressed include an out of bounds write vulnerability. Full Article
science and technology Red Hat Security Advisory 2019-2885-01 By packetstormsecurity.com Published On :: Tue, 24 Sep 2019 17:01:54 GMT Red Hat Security Advisory 2019-2885-01 - Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Issues addressed include an out of bounds write vulnerability. Full Article
science and technology Ubuntu Security Notice USN-4160-1 By packetstormsecurity.com Published On :: Mon, 21 Oct 2019 23:23:12 GMT Ubuntu Security Notice 4160-1 - It was discovered that UW IMAP incorrectly handled inputs. A remote attacker could possibly use this issue to execute arbitrary OS commands. Full Article
science and technology Red Hat Security Advisory 2019-3467-01 By packetstormsecurity.com Published On :: Wed, 06 Nov 2019 15:40:34 GMT Red Hat Security Advisory 2019-3467-01 - Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. An improper certificate validation flaw was addressed. Full Article
science and technology Debian Security Advisory 4590-1 By packetstormsecurity.com Published On :: Sat, 21 Dec 2019 07:00:07 GMT Debian Linux Security Advisory 4590-1 - It was discovered that the lmtpd component of the Cyrus IMAP server created mailboxes with administrator privileges if the "fileinto" was used, bypassing ACL checks. Full Article
science and technology Red Hat Security Advisory 2020-1126-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 14:58:03 GMT Red Hat Security Advisory 2020-1126-01 - Mutt is a low resource, highly configurable, text-based MIME e-mail client. Mutt supports most e-mail storing formats, such as mbox and Maildir, as well as most protocols, including POP3 and IMAP. Issues addressed include a traversal vulnerability. Full Article
science and technology Red Hat Security Advisory 2020-1062-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:13:48 GMT Red Hat Security Advisory 2020-1062-01 - Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Issues addressed include a buffer overflow vulnerability. Full Article
science and technology Spy Campaign Spams Pro-Tibet Group With ExileRAT By packetstormsecurity.com Published On :: Tue, 05 Feb 2019 15:02:59 GMT Full Article headline malware email fraud cyberwar spyware phish
science and technology Analyzing A Massive Office 365 Phishing Campaign By packetstormsecurity.com Published On :: Tue, 05 Mar 2019 01:03:51 GMT Full Article headline microsoft password phish
science and technology Facebook Phishing Campaign Hitting iOS Users By packetstormsecurity.com Published On :: Tue, 12 Mar 2019 14:50:22 GMT Full Article headline phone phish facebook social
science and technology India's Wipro Investigating Phishing Of Employee Accounts By packetstormsecurity.com Published On :: Tue, 16 Apr 2019 22:07:35 GMT Full Article headline india password phish
science and technology Further Details On Wipro Phishing Attack Revealed By packetstormsecurity.com Published On :: Thu, 02 May 2019 01:38:59 GMT Full Article headline hacker india cyberwar phish
science and technology Hackers Publish List Of Phished Discord Credentials By packetstormsecurity.com Published On :: Fri, 19 Jul 2019 17:35:21 GMT Full Article headline hacker data loss fraud password phish
science and technology Phishing Emails Spoof WebEx Invites, Abuse Open Redirect By packetstormsecurity.com Published On :: Tue, 12 Nov 2019 15:24:24 GMT Full Article headline fraud flaw cisco phish
science and technology Thousands Of Hacked Disney+ Accounts Are Already For Sale By packetstormsecurity.com Published On :: Sat, 16 Nov 2019 15:34:58 GMT Full Article headline cybercrime fraud phish
science and technology Extensive Hacking Operation Discovered In Kazakhstan By packetstormsecurity.com Published On :: Sun, 24 Nov 2019 20:33:26 GMT Full Article headline hacker government fraud cyberwar phish
science and technology Black Friday Shoppers Targeted By Scams And Fake Domains By packetstormsecurity.com Published On :: Wed, 27 Nov 2019 16:03:13 GMT Full Article headline cybercrime fraud scam phish
science and technology Researcher Releases Data On 100,000 Phishing Attempts By packetstormsecurity.com Published On :: Wed, 18 Dec 2019 13:57:26 GMT Full Article headline cybercrime fraud password phish
science and technology Phishing Campaign Leads To UPS Store Data Breach By packetstormsecurity.com Published On :: Thu, 23 Jan 2020 16:22:26 GMT Full Article headline hacker privacy data loss phish
science and technology SIM Swappers Are Phishing Telco Employees To Get Access By packetstormsecurity.com Published On :: Wed, 29 Jan 2020 15:36:10 GMT Full Article headline privacy phone cybercrime fraud phish
science and technology Charming Kitten Uses Fake Interview Requests To Target Public Figures By packetstormsecurity.com Published On :: Thu, 06 Feb 2020 17:27:44 GMT Full Article headline cybercrime fraud phish
science and technology U.S. Finance Sector Hit With Targeted Backdoor Campaign By packetstormsecurity.com Published On :: Fri, 07 Feb 2020 13:39:27 GMT Full Article headline hacker malware bank phish