Vuln: Oracle Java SE CVE-2014-6531 Remote Security Vulnerability
Oracle Java SE CVE-2014-6531 Remote Security VulnerabilitySource: http://www.securityfocus.com/bid/70572
View ArticleISC StormCast for Thursday, October 16th 2014...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.Source: https://isc.sans.edu/diary.html?storyid=18843&rss
View ArticleBugtraq: Bypassing blacklists based on IPy
Bypassing blacklists based on IPySource: http://www.securityfocus.com/archive/1/533709
View ArticleBugtraq: [security bulletin] HPSBHF03125 rev. ...
[security bulletin] HPSBHF03125 rev.1 - HP Next Generation Firewall (NGFW) running Bash Shell, Remote Code ExecutionSource: http://www.securityfocus.com/archive/1/533711
View ArticleBugtraq: [security bulletin] HPSBMU03126 rev. ...
[security bulletin] HPSBMU03126 rev.1 - HP Operations Manager (formerly OpenView Communications Broker), Remote Cross-site Scripting (XSS)Source: http://www.securityfocus.com/archive/1/533712
View ArticleBugtraq: [SECURITY] [DSA 3052-1] wpa security update
[SECURITY] [DSA 3052-1] wpa security updateSource: http://www.securityfocus.com/archive/1/533713
View ArticleOpenSSL Patches Four Vulnerabilities
Original release date: October 16, 2014OpenSSL has released updates patching four vulnerabilities, some of which may allow an attacker to cause a Denial of Service (DoS) condition or execute...
View ArticleLogging SSL, (Thu, Oct 16th)
With POODLE behind us, it is time to get ready for the next SSL firedrill. One of the questions that keeps coming up is which ciphers and SSL/TLS versions are actually in use. If you decide to turn off...
View ArticlePoodle: Vulnerability in old version of SSL represents new threat
New vulnerability in SSL 3.0 can allow attackers to extract data from supposedly secure connections. Summary:Â New vulnerability in SSL 3.0 can allow attackers to extract data from supposedly secure...
View ArticleEbola Phishing Scams and Malware Campaigns
Original release date: October 16, 2014US-CERT reminds users to protect against email scams and cyber campaigns using the Ebola virus disease (EVD) as a theme. Phishing emails may contain links that...
View ArticleISC StormCast for Friday, October 17th 2014...
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.Source: https://isc.sans.edu/diary.html?storyid=18849&rss
View ArticleGoogle Releases Security Updates for Chrome and Chrome OS
Original release date: October 16, 2014Google has released security updates to address multiple vulnerabilities in Chrome and Chrome OS, one of which could potentially allow an attacker to take control...
View ArticleBugtraq: APPLE-SA-2014-10-16-4 OS X Server v3.2.2
APPLE-SA-2014-10-16-4 OS X Server v3.2.2Source: http://www.securityfocus.com/archive/1/533724
View ArticleBugtraq: APPLE-SA-2014-10-16-5 OS X Server v2.2.5
APPLE-SA-2014-10-16-5 OS X Server v2.2.5Source: http://www.securityfocus.com/archive/1/533725
View ArticleDrupal Releases Security Advisory
Original release date: October 17, 2014Drupal has released a security advisory to address an application program interface (API) vulnerability (CVE-2014-3704) that could allow an attacker to execute...
View ArticleApple Updates (not just Yosemite), (Fri, Oct 17th)
Apple yesterday released the latest version of its operating system, OS X 10.10 Yosemite. As usual, the new version of the operating system does include a number of security related bug fixes, and...
View ArticleApple Releases Security Update 2014-005
Original release date: October 17, 2014Apple has released Security Update 2014-005 to address vulnerabilities in SSL 3.0.US-CERT recommends users and administrators review Apple Security Update HT6531...
View ArticleOpenSSL 3.0 Protocol Vulnerability
Original release date: October 17, 2014US-CERT is aware of a design vulnerability found in the way SSL 3.0 handles block cipher mode padding. Exploitation of this vulnerability may allow a remote...
View ArticleVuln: WebKit CVE-2013-2928 Multiple Unspecified Security Vulnerabilities
WebKit CVE-2013-2928 Multiple Unspecified Security VulnerabilitiesSource: http://www.securityfocus.com/bid/63024
View ArticleVuln: WebKit CVE-2013-5228 Use After Free Memory Corruption Vulnerability
WebKit CVE-2013-5228 Use After Free Memory Corruption VulnerabilitySource: http://www.securityfocus.com/bid/64362
View Article