News

  • 2021 Cybersecurity Trends to Prepare For Thu, 14 Jan 2021 20:46:09 +0000

    While few people foresaw the dramatic developments of the past year, CIS experts interviewed in 2020 identified several cybersecurity trends that persisted or even accelerated in the midst of the COVID-19 pandemic. This year, we asked a group of CIS thought leaders what cybersecurity trends the world might expect in 2021. They foresee a continuance […]

    The post 2021 Cybersecurity Trends to Prepare For appeared first on CIS.

Looking Glass Cyber Malware Patrol SecList
  • Sunburst backdoor – code overlaps with Kazuar
    While looking at the Sunburst backdoor, we discovered several features that overlap with a previously identified backdoor known as Kazuar. Our observations shows that Kazuar was used together with Turla tools during multiple breaches in past years.
securingtomorrow.mcafee.com
    Quick Heal Threat Post Naked Security Security Affairs

    Security Awareness Tips of the week

    Exploits

    Last 20 Website Defacements - Zone-h

    Advisories

    Symantec Packet Stoem Security

    • Ubuntu Security Notice USN-4693-1 Fri, 15 Jan 2021 15:41:53 GMT
      Ubuntu Security Notice 4693-1 - It was discovered that an SQL injection vulnerability exists in the Ampache search engine. Any user able to perform searches could dump any data contained in the database. An attacker could use this to disclose sensitive information. It was discovered that an XSS vulnerability in Ampache. An attacker could use this vulnerability to force an admin to create a new privileged user. Various other issues were also addressed.
    • Ubuntu Security Notice USN-4694-1 Fri, 15 Jan 2021 15:13:26 GMT
      Ubuntu Security Notice 4694-1 - It was discovered that the LIO SCSI target implementation in the Linux kernel performed insufficient identifier checking in certain XCOPY requests. An attacker with access to at least one LUN in a multiple backstore environment could use this to expose sensitive information or modify data.
    • Red Hat Security Advisory 2021-0146-01 Fri, 15 Jan 2021 15:06:55 GMT
      Red Hat Security Advisory 2021-0146-01 - Red Hat OpenShift Serverless 1.12.0 is a generally available release of the OpenShift Serverless Operator. This version of the OpenShift Serverless Operator is supported on Red Hat OpenShift Container Platform version 4.6, and includes security and bug fixes and enhancements. For more information, see the documentation listed in the References section. Issues addressed include code execution and cross site scripting vulnerabilities.
    • Red Hat Security Advisory 2021-0145-01 Thu, 14 Jan 2021 15:22:03 GMT
      Red Hat Security Advisory 2021-0145-01 - Red Hat OpenShift Serverless Client kn CLI is delivered as an RPM package for installation on RHEL platforms, and as binaries for non-Linux platforms. Red Hat OpenShift Serverless Client kn 1.12.0 provides a CLI to interact with Red Hat OpenShift Serverless 1.12.0, and includes security and bug fixes and enhancements. For more information, see the release notes listed in the References section. Issues addressed include code execution and cross site scripting vulnerabilities.
    • Red Hat Security Advisory 2021-0136-01 Thu, 14 Jan 2021 15:18:49 GMT
      Red Hat Security Advisory 2021-0136-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include a denial of service vulnerability.
    • Ubuntu Security Notice USN-4692-1 Wed, 13 Jan 2021 23:19:36 GMT
      Ubuntu Security Notice 4692-1 - Chris Siebenmann discovered that tar incorrectly handled extracting files resized during extraction when invoked with the --sparse flag. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 12.04 ESM, Ubuntu 14.04 ESM, Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. Daniel Axtens discovered that tar incorrectly handled certain malformed tar files. If a user or automated system were tricked into processing a specially crafted tar archive, a remote attacker could use this issue to cause tar to crash, resulting in a denial of service. Various other issues were also addressed.
    • Red Hat Security Advisory 2021-0114-01 Wed, 13 Jan 2021 23:19:30 GMT
      Red Hat Security Advisory 2021-0114-01 - .NET Core is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET Core that address a security vulnerability are now available. The updated versions are .NET Core SDK 3.1.111 and .NET Core Runtime 3.1.11.
    • Red Hat Security Advisory 2021-0110-01 Wed, 13 Jan 2021 23:19:23 GMT
      Red Hat Security Advisory 2021-0110-01 - This release of Red Hat Integration - Camel K - Tech-Preview 2 serves as a replacement for tech-preview 1, and includes bug fixes and enhancements, which are documented in the Release Notes document linked to in the References. Issues addressed include an XML injection vulnerability.
    • Ubuntu Security Notice USN-4691-1 Wed, 13 Jan 2021 23:19:15 GMT
      Ubuntu Security Notice 4691-1 - Jonas Rudloff discovered that Open vSwitch incorrectly handled certain malformed LLDP packets. A remote attacker could use this issue to cause Open vSwitch to crash, resulting in a denial of service, or possibly execute arbitrary code.
    • Red Hat Security Advisory 2021-0030-01 Wed, 13 Jan 2021 23:19:10 GMT
      Red Hat Security Advisory 2021-0030-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments.
    • Red Hat Security Advisory 2021-0106-01 Wed, 13 Jan 2021 23:19:04 GMT
      Red Hat Security Advisory 2021-0106-01 - Red Hat Decision Manager is an open source decision management platform that combines business rules management, complex event processing, Decision Model & Notation execution, and Business Optimizer for solving planning problems. It automates business decisions and makes that logic available to the entire business. This release of Red Hat Decision Manager 7.9.1 serves as an update to Red Hat Decision Manager 7.9.0, and includes bug fixes and enhancements, which are documented in the Release Notes document linked to in the References. Issues addressed include code execution and deserialization vulnerabilities.
    • Red Hat Security Advisory 2021-0105-01 Wed, 13 Jan 2021 23:18:57 GMT
      Red Hat Security Advisory 2021-0105-01 - Red Hat Process Automation Manager is an open source business process management suite that combines process management and decision service management and enables business and IT users to create, manage, validate, and deploy process applications and decision services. This release of Red Hat Process Automation Manager 7.9.1 serves as an update to Red Hat Process Automation Manager 7.9.0, and includes bug fixes and enhancements, which are documented in the Release Notes document linked to in the References. Issues addressed include code execution and deserialization vulnerabilities.
    • Ubuntu Security Notice USN-4690-1 Wed, 13 Jan 2021 15:21:35 GMT
      Ubuntu Security Notice 4690-1 - It was discovered that coTURN allowed peers to connect and relay packets to loopback addresses in the range of 127.x.x.x. A malicious user could use this vulnerability to insert packages into the loopback interface.
    • Gentoo Linux Security Advisory 202101-10 Wed, 13 Jan 2021 15:21:24 GMT
      Gentoo Linux Security Advisory 202101-10 - Multiple vulnerabilities have been found in Asterisk, the worst of which could result in a Denial of Service condition. Versions less than 13.38.1 are affected.
    • Red Hat Security Advisory 2021-0095-01 Wed, 13 Jan 2021 15:19:08 GMT
      Red Hat Security Advisory 2021-0095-01 - .NET Core is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET Core that address a security vulnerability are now available. The updated versions are .NET Core SDK 3.1.111 and .NET Core Runtime 3.1.11.
    • Red Hat Security Advisory 2021-0094-01 Wed, 13 Jan 2021 15:18:53 GMT
      Red Hat Security Advisory 2021-0094-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 5.0.102 and .NET Runtime 5.0.2.
    • Gentoo Linux Security Advisory 202101-09 Wed, 13 Jan 2021 15:12:11 GMT
      Gentoo Linux Security Advisory 202101-9 - Multiple vulnerabilities have been found in VirtualBox, the worst of which could allow an attacker to take control of VirtualBox. Versions prior to 6.1.12 are affected.
    • Red Hat Security Advisory 2021-0096-01 Wed, 13 Jan 2021 15:11:46 GMT
      Red Hat Security Advisory 2021-0096-01 - .NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 5.0.102 and .NET Runtime 5.0.2.
    • Red Hat Security Advisory 2021-0087-01 Wed, 13 Jan 2021 15:06:22 GMT
      Red Hat Security Advisory 2021-0087-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 78.6.1. Issues addressed include a use-after-free vulnerability.
    • Red Hat Security Advisory 2021-0088-01 Wed, 13 Jan 2021 15:06:05 GMT
      Red Hat Security Advisory 2021-0088-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 78.6.1. Issues addressed include a use-after-free vulnerability.
    • Red Hat Security Advisory 2021-0089-01 Wed, 13 Jan 2021 15:05:42 GMT
      Red Hat Security Advisory 2021-0089-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 78.6.1. Issues addressed include a use-after-free vulnerability.
    • Red Hat Security Advisory 2021-0084-01 Wed, 13 Jan 2021 15:05:15 GMT
      Red Hat Security Advisory 2021-0084-01 - This release of Red Hat build of Quarkus 1.7.6 includes security updates, bug fixes, and enhancements. For more information, see the release notes page listed in the References section.
    • Red Hat Security Advisory 2021-0083-01 Tue, 12 Jan 2021 16:26:30 GMT
      Red Hat Security Advisory 2021-0083-01 - The rhceph-4.2 image is based on Red Hat Ceph Storage 4.2 and Red Hat Enterprise Linux. Issues addressed include a server-side request forgery vulnerability.
    • Ubuntu Security Notice USN-4689-2 Tue, 12 Jan 2021 16:26:24 GMT
      Ubuntu Security Notice 4689-2 - USN-4689-1 fixed vulnerabilities in the NVIDIA graphics drivers. This update provides the corresponding updates for the NVIDIA Linux DKMS kernel modules. It was discovered that the NVIDIA GPU display driver for the Linux kernel contained a vulnerability that allowed user-mode clients to access legacy privileged APIs. A local attacker could use this to cause a denial of service or escalate privileges. Various other issues were also addressed.
    • Red Hat Security Advisory 2021-0081-01 Tue, 12 Jan 2021 16:21:13 GMT
      Red Hat Security Advisory 2021-0081-01 - Red Hat Ceph Storage is a scalable, open, software-defined storage platform that combines the most stable version of the Ceph storage system with a Ceph management platform, deployment utilities, and support services. The ceph-ansible package provides Ansible playbooks for installing, maintaining, and upgrading Red Hat Ceph Storage. This package contains a new implementation of the original libtirpc, transport-independent RPC library for NFS-Ganesha. NFS-GANESHA is a NFS Server running in user space. It comes with various back-end modules provided as shared objects to support different file systems and name-spaces.