The Saudi and Canadian Cyber Security Centres have issued reports on a vulnerability in Microsoft’s SharePoint that is being exploited in the wild. The vulnerability, CVE-2019-0604, has been patched by Microsoft, but if exploited can give an attacker the ability to execute commands and download and upload files, reported AT&T Alien Labs. The malware involved is a backdoor that is likely an ...
Read More »Author Archives: firewallfirmadmin
Cybersecurity Workforce Executive Order to Help with Workforce Shortage
President Trump signed an Executive Order directing the federal government to take critical steps to strengthen America’s cybersecurity workforce. The Executive Order enhances mobility of frontline cybersecurity practitioners, supports the development of their skills to encourage excellence in the field and helps ensure the US keeps its competitive edge in cybersecurity. The United States currently has a shortage of 300,000 cybersecurity practitioners. “America’s cybersecurity practitioners—whether working ...
Read More »Fake site pretending as KeePass Password Manager found distributing adware
The fake site is part of a large network of sites that are involved in the distribution of adware bundles as free programs. The site is named as keepass[.]com and contains four links for Windows, Windows Portable, Mac and Linux. A fake site that appears to promote the popular KeePass password management software has been found distributing adware to unsuspecting ...
Read More »Unprotected MongoDB database leaks over 80 million records belonging to an SMS marketing firm ApexSMS
The leaky database also kept a track of users who clicked on messages through Grand Slam Marketing, another small advertising company. The data exposed in the incident includes MD5-hashed emails, IP addresses, Phone numbers, and ZIP codes. ApexSMS Inc., an SMS text marketing company that also does business under the name of Mobile Drip, has suffered a data breach due ...
Read More »Augustana College hit with ransomware attack
Augustana College confirmed that the ransomware infected server contained personal information of students. The college is providing 24 months of complimentary credit monitoring and identity restoration services for all potentially affected individuals. Attackers infected one of the Augustana college’s servers that contained personal information of students with ransomware. What happened? On February 18, 2019, Augustana discovered a ransomware attack on ...
Read More »Fake site pretending as KeePass Password Manager found distributing adware
The fake site is part of a large network of sites that are involved in the distribution of adware bundles as free programs. The site is named as keepass[.]com and contains four links for Windows, Windows Portable, Mac and Linux. A fake site that appears to promote the popular KeePass password management software has been found distributing adware to unsuspecting ...
Read More »Alpine Linux Docker images found using NULL password for the admin account
This vulnerability (CVE-2019-5021) has been found in v3.3 impacting all Glider Labs Alpine Linux Docker images as well as official images. Researchers noted that existing systems should be modified to either set a custom password for the root account or disable the root account. Security researchers from Cisco Talos have revealed that Alpine Linux Docker images distributed via the official ...
Read More »The latest versions of UC Browser and UC Browser Mini Android apps have been found to be vulnerable to URL spoofing attacks. These browsers have over 600 million installs across the world.
It is masquerading as an ESET AV Remover Installer to trick users into downloading it. The new variant is distributed via spam emails. A new variant of Dharma ransomware has been found that uses a new technique to hide its malicious activities. It is masquerading as an ESET AV Remover Installer to trick users into downloading it. How does it ...
Read More »Latest versions of UC Browser and UC Browser Mini Android apps vulnerable to URL spoofing attacks
These browsers have over 600 million installs across the world. The flaw affects UC Browser 12.11.2.1184 and UC Browser Mini 12.10.1.1192. The latest versions of UC Browser and UC Browser Mini Android apps have been found to be vulnerable to URL spoofing attacks. These browsers have over 600 million installs across the world. What is URL spoofing attack? URL spoofing ...
Read More »Critical Flaw in Cisco Elastic Services Controller Allows Full System Takeover
Cisco has patched a critical flaw in its virtualized function automation tool, Cisco Elastic Services Controller. A critical vulnerability in the Cisco Elastic Services Controller could allow an unauthenticated, remote attacker to take full control of impacted systems – merely by sending a crafted request. Cisco Elastic Services Controller is a virtual network functions manager, which enables businesses to automate the ...
Read More »