or VLC For iOS Insecure Direct Object Reference By packetstormsecurity.com Published On :: Fri, 27 Mar 2020 13:00:39 GMT VLC for iOS was vulnerable to an unauthenticated insecure direct object reference vulnerability allowing for an attacker to compromise media. This issue was patched in the March, 2020 release. Full Article
or Sky File 2.1.0 Cross Site Scripting / Directory Traversal By packetstormsecurity.com Published On :: Tue, 21 Apr 2020 14:33:56 GMT Sky File version 2.1.0 for iOS suffers from cross site scripting and directory traversal vulnerabilities. Full Article
or Secunia Security Advisory 29803 By packetstormsecurity.com Published On :: Tue, 15 Apr 2008 17:23:16 GMT Secunia Security Advisory - A vulnerability has been reported in MirBSD Korn Shell, which can be exploited by malicious, local users to gain escalated privileges. Full Article
or Firefox Gets Patch For Critical 0-Day That's Being Actively Exploited By packetstormsecurity.com Published On :: Thu, 09 Jan 2020 14:56:59 GMT Full Article headline flaw patch mozilla firefox zero day
or Quantum Processor's Prime Feat Raises Security Issues By packetstormsecurity.com Published On :: Wed, 29 Aug 2012 04:41:13 GMT Full Article headline flaw science rsa
or Password Divided To Foil Hackers By packetstormsecurity.com Published On :: Wed, 10 Oct 2012 16:33:32 GMT Full Article headline hacker password rsa
or RSA Warns Over NSA Link To Encryption Algorithm By packetstormsecurity.com Published On :: Fri, 20 Sep 2013 15:16:59 GMT Full Article headline government privacy flaw nsa cryptography rsa
or NSA Paid $10m To Put A Backdoor In RSA Crypto By packetstormsecurity.com Published On :: Sun, 22 Dec 2013 18:18:00 GMT Full Article headline government usa flaw backdoor nsa cryptography rsa
or RSA Denies Taking $10m To Implement NSA Backdoor By packetstormsecurity.com Published On :: Mon, 23 Dec 2013 14:13:12 GMT Full Article headline flaw backdoor nsa cryptography rsa
or NSA Infiltrated RSA Security More Deeply Than Thought By packetstormsecurity.com Published On :: Mon, 31 Mar 2014 14:37:20 GMT Full Article headline government usa backdoor nsa cryptography rsa
or RSA Boss Packs His Fishing Rod And Heads For The Hills By packetstormsecurity.com Published On :: Wed, 04 Feb 2015 14:55:59 GMT Full Article headline backdoor nsa rsa
or RSA Fails To Assess Vendor, Leaks Attendee Details By packetstormsecurity.com Published On :: Sat, 21 Apr 2018 15:11:25 GMT Full Article headline privacy phone data loss flaw conference rsa
or Adi Shamir Couldn't Get US Visa To Attend RSA Conference Named For Him By packetstormsecurity.com Published On :: Wed, 06 Mar 2019 15:36:10 GMT Full Article headline government usa conference cryptography rsa
or RSA Conference 2019: The Sky's The Limit For Satellite Hacks By packetstormsecurity.com Published On :: Thu, 07 Mar 2019 15:10:13 GMT Full Article headline hacker space conference rsa
or McAfee Buys Stonesoft Security For $389m By packetstormsecurity.com Published On :: Tue, 07 May 2013 14:31:04 GMT Full Article headline mcafee
or John McAfee Will Help You Block The NSA For $100 By packetstormsecurity.com Published On :: Wed, 02 Oct 2013 15:08:33 GMT Full Article headline government privacy spyware mcafee nsa
or John McAfee Announces He's Running For President By packetstormsecurity.com Published On :: Wed, 09 Sep 2015 05:35:06 GMT Full Article headline government usa mcafee
or John McAfee Found Liable For 2012 Death Of Belize Neighbor By packetstormsecurity.com Published On :: Fri, 16 Nov 2018 15:27:55 GMT Full Article headline mcafee
or Bing.com Hostname / IP Enumerator 1.0 By packetstormsecurity.com Published On :: Tue, 19 Nov 2019 15:21:05 GMT This tool enumerates hostnames from Bing.com for an IP address. Bing.com is Microsoft's search engine which has an IP: search parameter. Written in Bash for Linux. Requires wget. Full Article
or WebSploit Framework 4.0.1 By packetstormsecurity.com Published On :: Tue, 21 Jan 2020 17:22:22 GMT WebSploit is an advanced man-in-the-middle framework. Full Article
or EnumJavaLibs Java Classpath Enumerator By packetstormsecurity.com Published On :: Fri, 14 Feb 2020 15:20:32 GMT EnumJavaLibs is a tool that can be used to discover which libraries are loaded (i.e. available on the classpath) by a remote Java application when it supports deserialization. Full Article
or FreeBSD Security Advisory - ntp Authentication Bypass By packetstormsecurity.com Published On :: Mon, 26 Oct 2015 19:32:22 GMT FreeBSD Security Advisory - Crypto-NAK packets can be used to cause ntpd(8) to accept time from an unauthenticated ephemeral symmetric peer by bypassing the authentication required to mobilize peer associations. FreeBSD 9.3 and 10.1 are not affected. Various other issues have also been addressed. Full Article
or Debian Security Advisory 3417-1 By packetstormsecurity.com Published On :: Mon, 14 Dec 2015 16:40:50 GMT Debian Linux Security Advisory 3417-1 - Tibor Jager, Jorg Schwenk, and Juraj Somorovsky, from Horst Gortz Institute for IT Security, published a paper in ESORICS 2015 where they describe an invalid curve attack in Bouncy Castle Crypto, a Java library for cryptography. An attacker is able to recover private Elliptic Curve keys from different applications, for example, TLS servers. Full Article
or XMB - eXtreme Message Board 1.9.11.13 Weak Crypto / Insecure Password Storage By packetstormsecurity.com Published On :: Sat, 23 Jan 2016 13:03:33 GMT XMB - eXtreme Message Board version 1.9.11.13 suffers from weak crypto and insecure password storage vulnerabilities. Full Article
or Debian Security Advisory 3457-1 By packetstormsecurity.com Published On :: Thu, 28 Jan 2016 17:19:51 GMT Debian Linux Security Advisory 3457-1 - Multiple security issues have been found in Iceweasel, Debian's version buffer overflow may lead to the execution of arbitrary code. In addition the bundled NSS crypto library addresses the SLOTH attack on TLS 1.2. Full Article
or Apple Security Advisory 2016-03-21-7 By packetstormsecurity.com Published On :: Tue, 22 Mar 2016 15:23:11 GMT Apple Security Advisory 2016-03-21-7 - OS X Server 5.1 is now available and addresses RC4 crypto weaknesses, file access, and information disclosure vulnerabilities. Full Article
or Ubiquiti Networks UniFi Cloud Key Command Injection / Privilege Escalation By packetstormsecurity.com Published On :: Thu, 27 Jul 2017 18:22:22 GMT Ubiquiti Networks UniFi Cloud Key with firmware versions 0.5.9 and 0.6.0 suffer from weak crypto, privilege escalation, and command injection vulnerabilities. Full Article
or Debian Security Advisory 3967-1 By packetstormsecurity.com Published On :: Fri, 08 Sep 2017 13:34:00 GMT Debian Linux Security Advisory 3967-1 - An authentication bypass vulnerability was discovered in mbed TLS, a lightweight crypto and SSL/TLS library, when the authentication mode is configured as 'optional'. A remote attacker can take advantage of this flaw to mount a man-in-the-middle attack and impersonate an intended peer via an X.509 certificate chain with many intermediates. Full Article
or Key Reinstallation: Forcing Nonce Reuse In WPA2 By packetstormsecurity.com Published On :: Mon, 16 Oct 2017 13:34:29 GMT Whitepaper called Reinstallation Attacks: Forcing Nonce Reuse in WPA2. This research paper will be presented on at the Computer and Communications Security (CCS) conference on November 1, 2017. This paper details a flaw in the WPA2 protocol itself and most devices that makes use of WPA2 are affected. Full Article
or Debian Security Advisory 4138-1 By packetstormsecurity.com Published On :: Thu, 15 Mar 2018 15:57:24 GMT Debian Linux Security Advisory 4138-1 - Several vulnerabilities were discovered in mbed TLS, a lightweight crypto and SSL/TLS library, that allowed a remote attacker to either cause a denial-of-service by application crash, or execute arbitrary code. Full Article
or Debian Security Advisory 4147-1 By packetstormsecurity.com Published On :: Thu, 22 Mar 2018 22:23:00 GMT Debian Linux Security Advisory 4147-1 - Several vulnerabilities were discovered in PolarSSL, a lightweight crypto and SSL/TLS library, that allowed a remote attacker to either cause a denial-of-service by application crash, or execute arbitrary code. Full Article
or Debian Security Advisory 4296-1 By packetstormsecurity.com Published On :: Tue, 18 Sep 2018 02:18:40 GMT Debian Linux Security Advisory 4296-1 - Two vulnerabilities were discovered in mbedtls, a lightweight crypto and SSL/TLS library which could result in plain text recovery via side-channel attacks. Full Article
or Android Securty Research: Crypto Local Storage Attack By packetstormsecurity.com Published On :: Thu, 28 Feb 2019 20:22:22 GMT Whitepaper called Android Security Research: Crypto Wallet Local Storage Attack. Full Article
or REVULN 19Q4 Call For Papers By packetstormsecurity.com Published On :: Thu, 15 Aug 2019 20:23:53 GMT The Call For Papers has been announced for REVULN 19Q4, an international cyber-security conference taking place December 11th and 12th, 2019 in Hong Kong at the Best Western Plus Hotel Hong Kong. Full Article
or No cON Name 2019 Call For Papers By packetstormsecurity.com Published On :: Tue, 20 Aug 2019 22:21:33 GMT The No cON Name 2019 call for papers has been announced. It will be held in Barcelona, Spain, from November 14th and 15th, 2019. Full Article
or BSidesLisbon 2019 Call For Papers By packetstormsecurity.com Published On :: Sat, 24 Aug 2019 10:21:11 GMT BSidesLisbon 2019 has announced its call for papers. It will be held November 28th and 29th at Auditorio FMD-UL. Full Article
or ZeroNights 2019 Call For Papers By packetstormsecurity.com Published On :: Tue, 03 Sep 2019 23:43:07 GMT The ZeroNights 2019 Call For Papers has been announced. It will be held in Saint-Petersburg, Russia November 12th through the 13th, 2019. Full Article
or RootedCON 2020 Call For Papers By packetstormsecurity.com Published On :: Fri, 01 Nov 2019 16:55:55 GMT RootedCON is a technology congress that will be held in Madrid (Spain) March 5th through the 7th, 2020. With an estimated seating from 2,000 and 2,500 people, is the most relevant specialized congress that is held in the country, and one of the most relevant in Europe, with attendee profiles ranging from students, Law Enforcement Agencies to professionals in the technology and information security market and, even, just passionate people. Full Article
or c0c0n 2020 Call For Papers By packetstormsecurity.com Published On :: Fri, 15 Nov 2019 21:25:45 GMT The c0c0n 2020 Middle East call for papers has been announced. It will take place June 15th through the 18th, 2020 at the St. Regis in Abu Dhabi. Full Article
or BSidesLjubljana 2020 Call For Papers By packetstormsecurity.com Published On :: Wed, 27 Nov 2019 15:39:12 GMT B-Sides Ljubljana will be held April 4th, 2020 in Ljubljana, Slovenia. Full Article
or CarolinaCon 16 Call For Papers By packetstormsecurity.com Published On :: Wed, 04 Dec 2019 23:33:01 GMT The 16th CarolinaCon will be hosted in Charlotte at the Embassy Suites April 10th through the 11th, 2020. Full Article
or Positive Hack Days 10 Call For Papers By packetstormsecurity.com Published On :: Tue, 28 Jan 2020 20:32:22 GMT Call For Papers for Positive Hack Days 10 which will take place in Moscow, Russia May 13th through the 14th, 2020. Full Article
or LeHACK 2020 Call For Papers By packetstormsecurity.com Published On :: Mon, 03 Feb 2020 16:12:37 GMT LeHACK 2020 is a yearly rendezvous where hackers and aficionados are meeting with both technical and non-technical talks and workshops about hacking. It is a great place to discover, to learn, to teach and be taught in the magical city of Paris. LeHACK 2020 will be held in La Cite des Sciences et de l'Industire in Paris, France from June 26th through the 27th, 2020. Full Article
or REVULN 20x1 Call For Papers By packetstormsecurity.com Published On :: Mon, 03 Feb 2020 16:40:33 GMT REVULN 20x1 is an international conference taking place the April 28th through the 30th, 2020 in Metro Manila (Philippines) at the RED Hotel Cubao. Full Article
or REVULN 20x2 Call For Papers By packetstormsecurity.com Published On :: Mon, 03 Feb 2020 16:42:52 GMT REVULN 20x2 is an international conference taking place the June 25th through the 26th, 2020 in St. Paul's Bay (Malta) at the Hotel Santana. Full Article
or Bsides Brussels 2020 Call For Papers By packetstormsecurity.com Published On :: Fri, 07 Feb 2020 14:21:30 GMT BSides Brussels is a security conference in Brussels, Belgium, with talks, workshops and villages. The goal is to strengthen the exchange of knowledge, cooperation, communication, and integration between the different actors active in the IT security industry. We are pleased to announce that the first edition of BSides Brussels will be held on May 28th, 2020. Full Article
or Russian Disinformation Ongoing Problem, Says FBI Chief By packetstormsecurity.com Published On :: Thu, 06 Feb 2020 17:27:36 GMT Full Article headline government usa russia fraud cyberwar facebook social fbi
or Facebook Sues SDK Maker For Secretly Harvesting User Data By packetstormsecurity.com Published On :: Fri, 28 Feb 2020 07:05:36 GMT Full Article headline privacy data loss facebook
or Facebook Sued By Australian Information Watchdog Over Cambridge Analytica-Linked Data Breach By packetstormsecurity.com Published On :: Mon, 09 Mar 2020 15:01:39 GMT Full Article headline government privacy australia data loss facebook
or Coronavirus Conspiracies Go Viral On WhatsApp As Crisis Deepens By packetstormsecurity.com Published On :: Thu, 19 Mar 2020 15:12:47 GMT Full Article headline virus fraud facebook