is Debian Security Advisory 4479-1 By packetstormsecurity.com Published On :: Fri, 12 Jul 2019 12:12:44 GMT Debian Linux Security Advisory 4479-1 - Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, cross-site scripting, spoofing, information disclosure, denial of service or cross-site request forgery. Full Article
is Debian Security Advisory 4482-1 By packetstormsecurity.com Published On :: Mon, 15 Jul 2019 15:28:59 GMT Debian Linux Security Advisory 4482-1 - Multiple security issues have been found in Thunderbird which could potentially result in the execution of arbitrary code, cross-site scripting, spoofing, information disclosure, denial of service or cross-site request forgery. Full Article
is Debian Security Advisory 4524-1 By packetstormsecurity.com Published On :: Tue, 17 Sep 2019 16:47:28 GMT Debian Linux Security Advisory 4524-1 - Multiple vulnerabilities have been discovered in the Dino XMPP client, which could allow spoofing message, manipulation of a user's roster (contact list) and unauthorised sending of message carbons. Full Article
is Apple Security Advisory 2019-9-26-9 By packetstormsecurity.com Published On :: Sun, 29 Sep 2019 17:32:22 GMT Apple Security Advisory 2019-9-26-9 - Safari 13.0.1 addresses user interface spoofing and browser history leakage vulnerabilities. Full Article
is Fortinet FortiSIEM 5.0 / 5.2.1 Improper Certification Validation By packetstormsecurity.com Published On :: Tue, 01 Oct 2019 20:48:19 GMT A FortiSIEM collector connects to a Supervisor/Worker over HTTPS TLS (443/TCP) to register itself as well as relaying event data such as syslog, netflow, SNMP, etc. When the Collector (the client) connects to the Supervisor/Worker (the server), the client does not validate the server-provided certificate against its root-CA store. Since the client does no server certificate validation, this means any certificate presented to the client will be considered valid and the connection will succeed. If an attacker spoofs a Worker/Supervisor using an ARP or DNS poisoning attack (or any other MITM attack), the Collector will blindly connect to the attacker's HTTPS TLS server. It will disclose the authentication password used along with any data being relayed. Versions 5.0 and 5.2.1 have been tested and are affected. Full Article
is Apple Security Advisory 2020-1-28-5 By packetstormsecurity.com Published On :: Wed, 29 Jan 2020 17:16:14 GMT Apple Security Advisory 2020-1-28-5 - Safari 13.0.5 is now available and addresses address bar spoofing and password disclosure in transit issues. Full Article
is Google Invisible RECAPTCHA 3 Spoof Bypass By packetstormsecurity.com Published On :: Mon, 10 Feb 2020 15:23:32 GMT Google Invisible RECAPTCHA version 3 suffers from a spoofing bypass vulnerability. Full Article
is Red Hat Security Advisory 2020-1080-01 By packetstormsecurity.com Published On :: Tue, 31 Mar 2020 22:22:22 GMT Red Hat Security Advisory 2020-1080-01 - Evolution is a GNOME application that provides integrated email, calendar, contact management, and communications functionality. The evolution-data-server packages provide a unified back end for applications which interact with contacts, tasks and calendar information. Issues addressed include OpenPGP signature spoofing and certificate errors being ignored. Full Article
is Red Hat Security Advisory 2020-1600-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:24:19 GMT Red Hat Security Advisory 2020-1600-01 - Evolution is a GNOME application that provides integrated email, calendar, contact management, and communications functionality. The evolution-data-server packages provide a unified back end for applications which interact with contacts, tasks and calendar information. Evolution Data Server was originally developed as a back end for the Evolution information management application, but is now used by various other applications. Issues addressed include a spoofing vulnerability. Full Article
is Red Hat Security Advisory 2020-1047-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:10:20 GMT Red Hat Security Advisory 2020-1047-01 - The wireshark packages contain a network protocol analyzer used to capture and browse the traffic running on a computer network. Issues addressed include crash and out of bounds read vulnerabilities. Full Article
is Red Hat Security Advisory 2020-1084-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:11:25 GMT Red Hat Security Advisory 2020-1084-01 - Samba is an open-source implementation of the Server Message Block protocol and the related Common Internet File System protocol, which allow PC-compatible machines to share files, printers, and various information. Full Article
is Red Hat Security Advisory 2020-1167-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:12:28 GMT Red Hat Security Advisory 2020-1167-01 - Network Block Device is a protocol for accessing hard disks and other disk-like devices over the network. The nbdkit toolkit utilizes NBD to create servers with minimal dependencies. The package contains plug-in support for the C and Python programming languages. Issues addressed include a denial of service vulnerability. Full Article
is Red Hat Security Advisory 2020-1081-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:12:38 GMT Red Hat Security Advisory 2020-1081-01 - The net-snmp packages provide various libraries and tools for the Simple Network Management Protocol, including an SNMP library, an extensible agent, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl Management Information Base browser. Issues addressed include denial of service and null pointer vulnerabilities. Full Article
is Red Hat Security Advisory 2020-1045-01 By packetstormsecurity.com Published On :: Wed, 01 Apr 2020 15:15:59 GMT Red Hat Security Advisory 2020-1045-01 - LFTP is a file transfer utility for File Transfer Protocol, Secure File Transfer Protocol, Hypertext Transfer Protocol, and other commonly used protocols. It uses the readline library for input, and provides support for bookmarks, built-in monitoring, job control, and parallel transfer of multiple files at the same time. Full Article
is Gentoo Linux Security Advisory 202004-06 By packetstormsecurity.com Published On :: Fri, 03 Apr 2020 02:51:49 GMT Gentoo Linux Security Advisory 202004-6 - A regression in GnuTLS breaks the security guarantees of the DTLS protocol. Versions less than 3.6.13 are affected. Full Article
is Red Hat Security Advisory 2020-1318-01 By packetstormsecurity.com Published On :: Mon, 06 Apr 2020 18:30:11 GMT Red Hat Security Advisory 2020-1318-01 - Telnet is a popular protocol for logging in to remote systems over the Internet. The telnet-server packages include a telnet service that supports remote logins into the host machine. The telnet service is disabled by default. An arbitrary code execution vulnerability was addressed. Full Article
is Red Hat Security Advisory 2020-1335-01 By packetstormsecurity.com Published On :: Mon, 06 Apr 2020 18:54:37 GMT Red Hat Security Advisory 2020-1335-01 - Telnet is a popular protocol for logging in to remote systems over the Internet. The telnet-server packages include a telnet service that supports remote logins into the host machine. The telnet service is disabled by default. An arbitrary code execution vulnerability was addressed. Full Article
is Red Hat Security Advisory 2020-1334-01 By packetstormsecurity.com Published On :: Mon, 06 Apr 2020 18:58:34 GMT Red Hat Security Advisory 2020-1334-01 - Telnet is a popular protocol for logging in to remote systems over the Internet. The telnet-server packages include a telnet service that supports remote logins into the host machine. The telnet service is disabled by default. An arbitrary code execution vulnerability was addressed. Full Article
is Red Hat Security Advisory 2020-1342-01 By packetstormsecurity.com Published On :: Tue, 07 Apr 2020 16:40:28 GMT Red Hat Security Advisory 2020-1342-01 - Telnet is a popular protocol for logging in to remote systems over the Internet. The telnet-server packages include a telnet service that supports remote logins into the host machine. The telnet service is disabled by default. Issues addressed include a code execution vulnerability. Full Article
is Red Hat Security Advisory 2020-1445-01 By packetstormsecurity.com Published On :: Tue, 14 Apr 2020 15:39:41 GMT Red Hat Security Advisory 2020-1445-01 - AMQ Broker is a high-performance messaging implementation based on ActiveMQ Artemis. It uses an asynchronous journal for fast message persistence, and supports multiple languages, protocols, and platforms. This release of Red Hat AMQ Broker 7.4.3 serves as a replacement for Red Hat AMQ Broker 7.4.2, and includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section. Issues addressed include cross site scripting, denial of service, and information leakage vulnerabilities. Full Article
is Red Hat Security Advisory 2020-1470-01 By packetstormsecurity.com Published On :: Tue, 14 Apr 2020 23:09:22 GMT Red Hat Security Advisory 2020-1470-01 - The Network Time Protocol is used to synchronize a computer's time with another referenced time source. These packages include the ntpd service which continuously adjusts system time and utilities used to query and configure the ntpd service. Issues addressed include buffer overflow, code execution, and denial of service vulnerabilities. Full Article
is Red Hat Security Advisory 2020-1840-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:18:54 GMT Red Hat Security Advisory 2020-1840-01 - OpenSSL is a toolkit that implements the Secure Sockets Layer and Transport Layer Security protocols, as well as a full-strength general-purpose cryptography library. Issues addressed include an information leakage vulnerability. Full Article
is Red Hat Security Advisory 2020-1878-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:21:10 GMT Red Hat Security Advisory 2020-1878-01 - Samba is an open-source implementation of the Server Message Block protocol and the related Common Internet File System protocol, which allow PC-compatible machines to share files, printers, and various information. Full Article
is Red Hat Security Advisory 2020-1845-01 By packetstormsecurity.com Published On :: Tue, 28 Apr 2020 20:34:31 GMT Red Hat Security Advisory 2020-1845-01 - The Berkeley Internet Name Domain is an implementation of the Domain Name System protocols. BIND includes a DNS server ; a resolver library ; and tools for verifying that the DNS server is operating correctly. Full Article
is Red Hat Security Advisory 2020-1998-01 By packetstormsecurity.com Published On :: Thu, 30 Apr 2020 23:46:22 GMT Red Hat Security Advisory 2020-1998-01 - The gnutls packages provide the GNU Transport Layer Security library, which implements cryptographic algorithms and protocols such as SSL, TLS, and DTLS. An issue was addressed where the DTLS client hello contains a random value of all zeroes. Full Article
is Online Course Registration 2.0 SQL Injection By packetstormsecurity.com Published On :: Mon, 27 Apr 2020 15:05:54 GMT Online Course Registration 2.0 suffers from authentication bypass and remote SQL injection vulnerabilities. Full Article
is Fishing Reservation System SQL Injection By packetstormsecurity.com Published On :: Mon, 04 May 2020 09:02:22 GMT Fishing Reservation System suffers from multiple remote SQL injection vulnerabilities. Full Article
is Pisay Online E-Learning System 1.0 SQL Injection / Code Execution By packetstormsecurity.com Published On :: Wed, 06 May 2020 14:40:34 GMT Pisay Online E-Learning System version 1.0 suffers from remote SQL Injection and code execution vulnerabilities. Full Article
is Brain Hack Devices Must Be Scrutinized, Say Top Scientists By packetstormsecurity.com Published On :: Mon, 09 Sep 2019 23:41:11 GMT Full Article headline hacker science
is Team That Made Gene-Edited Babies Sentenced To Prison, Fined By packetstormsecurity.com Published On :: Thu, 02 Jan 2020 16:04:59 GMT Full Article headline china fraud science
is Coronavirus Has Slashed Air Pollution. This Interactive Map Shows How. By packetstormsecurity.com Published On :: Wed, 25 Mar 2020 14:07:37 GMT Full Article headline virus science
is FreeBSD Project Reveals Servers Were Compromised By packetstormsecurity.com Published On :: Mon, 19 Nov 2012 16:04:03 GMT Full Article headline hacker data loss bsd backdoor
is British Airways E-Ticketing Flaw Exposes Passenger Flight, Personal Data By packetstormsecurity.com Published On :: Tue, 13 Aug 2019 14:29:35 GMT Full Article headline privacy britain data loss terror
is Morrisons Is To Blame For 100k Payroll Theft And Leak By packetstormsecurity.com Published On :: Sat, 09 Nov 2019 13:44:36 GMT Full Article headline hacker privacy britain data loss
is Hacker Who Blackmailed Apple In 2017 Gets No Prison Time By packetstormsecurity.com Published On :: Sat, 21 Dec 2019 06:49:02 GMT Full Article headline hacker britain fraud apple
is Travelex Suspends Services Post Malware Discovery By packetstormsecurity.com Published On :: Fri, 03 Jan 2020 19:15:15 GMT Full Article headline malware britain
is UK To Launch Specialist Cyber Force Able To Target Terror By packetstormsecurity.com Published On :: Fri, 28 Feb 2020 07:05:28 GMT Full Article headline hacker government britain cyberwar terror military
is British Rail Station Wi-Fi Provider Exposed Traveler Data By packetstormsecurity.com Published On :: Mon, 02 Mar 2020 15:21:04 GMT Full Article headline privacy britain wireless data loss
is Office 365 Declared Illegal In German Schools Due To Privacy Risks By packetstormsecurity.com Published On :: Tue, 16 Jul 2019 13:53:53 GMT Full Article headline government privacy microsoft flaw germany
is Pressure Mounts For Swiss Probe Into Spying Operation By packetstormsecurity.com Published On :: Thu, 13 Feb 2020 15:20:34 GMT Full Article headline government privacy usa phone germany spyware cryptography switzerland goverment
is Delta Industrial Automation DCISoft 1.12.09 Stack Buffer Overflow By packetstormsecurity.com Published On :: Sun, 14 Feb 2016 01:26:22 GMT Delta Industrial Automation DCISoft version 1.12.09 suffers from a stack buffer overflow vulnerability. Full Article
is How Does IS Communicate Securely? By packetstormsecurity.com Published On :: Tue, 17 Nov 2015 16:53:15 GMT Full Article headline government spyware france terror cryptography
is After Paris, Encryption Will Be A Key Issue In The 2016 Race By packetstormsecurity.com Published On :: Tue, 17 Nov 2015 16:53:20 GMT Full Article headline government privacy usa france terror cryptography
is Anonymous Declares War On Islamic State By packetstormsecurity.com Published On :: Tue, 17 Nov 2015 16:53:26 GMT Full Article headline hacker france terror anonymous
is Anonymous Leaks Paris Climate Summit Officials' Private Data By packetstormsecurity.com Published On :: Sat, 05 Dec 2015 02:08:03 GMT Full Article headline government data loss france anonymous
is Terror In Paris Must Not Lead To Internet Clampdowns By packetstormsecurity.com Published On :: Thu, 24 Dec 2015 17:23:10 GMT Full Article headline government privacy cyberwar france terror cryptography
is French, German Ministers Demand New Encryption Backdoor Law By packetstormsecurity.com Published On :: Thu, 25 Aug 2016 13:39:27 GMT Full Article headline privacy germany france backdoor cryptography
is French Spies Warn Politicians Of Hack Risk As Election Draws Near By packetstormsecurity.com Published On :: Tue, 17 Jan 2017 02:51:06 GMT Full Article headline government russia fraud spyware france
is Team Macron Praised For Feeding Phishing Spies Duff Info By packetstormsecurity.com Published On :: Tue, 09 May 2017 00:45:07 GMT Full Article headline government russia fraud spyware france phish
is French Cybercops Dismantle Pirate Computer Network By packetstormsecurity.com Published On :: Wed, 28 Aug 2019 15:11:00 GMT Full Article headline hacker government cybercrime botnet fraud france