Databáze Hot News 2017 August - 2017 January February March April May June July August September October November December


31.8.2017

Bugtraq

 

Malware

Backdoor.Gazer

Phishing

 

Vulnerebility

Openstack instack-undercloud CVE-2017-7549 Insecure Temporary File Handling Vulnerability
2017-08-31
http://www.securityfocus.com/bid/100407

FasterXML Jackson-databind CVE-2017-7525 Deserialization Remote Code Execution Vulnerability
2017-08-31
http://www.securityfocus.com/bid/99623

Apache Batik CVE-2017-5662 XML External Entity Information Disclosure Vulnerability
2017-08-31
http://www.securityfocus.com/bid/97948

libgcrypt CVE-2017-0379 Information Disclosure Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100503

Ledger CLI CVE-2017-2808 Remote Code Execution Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100546

Wireshark Modbus Dissector CVE-2017-13764 Denial of Service Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100545

Drupal 'Commerce Invoices' Module SQL Injection and Cross-Site Scripting Vulnerabilities
2017-08-30
http://www.securityfocus.com/bid/100544

Ledger CLI CVE-2017-2807 Remote Code Execution Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100543

gdk-pixbuf Integer Overflow and Heap Based Buffer Overflow Vulnerabilities
2017-08-30
http://www.securityfocus.com/bid/100541

QEMU 'hw/display/vga.c' Denial of Service Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100540

Linux kernel CVE-2017-11176 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99919

Linux Kernel 'brcmf_cfg80211_mgmt_tx()' Function Local Memory Corruption Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99955

Linux Kernel 'securelevel/secureboot' Local Security Bypass Vulnerability
2017-08-29
http://www.securityfocus.com/bid/77097

Linux Kernel CVE-2017-7495 Local Information Disclosure Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98491

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2017-08-29
http://www.securityfocus.com/bid/87087

Linux kernel 'net/ipx/af_ipx.c' Use After Free Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98439

Nginx CVE-2017-7529 Remote Integer Overflow Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99534

Linux Kernel CVE-2017-7616 Multiple Local Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/97527

Linux Kernel CVE-2017-7261 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97096

Linux Kernel Multiple Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/94138

Linux Kernel CVE-2017-7273 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97190

FFmpeg 'libavcodec/dnxhddec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100020

FFmpeg CVE-2017-9608 NULL pointer Dereference Remote Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100348

FFmpeg 'libavcodec/apedec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100019

FFmpeg 'libavformat/rtmppkt.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100017

FFmpeg CVE-2017-9993 Arbitrary File Read Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99315

Wireshark IrCOMM Dissector CVE-2017-13765 Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100551

Wireshark MSDP Dissector CVE-2017-13767 Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100549

Apache Atlas CVE-2017-3151 HTML Injection Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100547

Wireshark Profinet I/O Dissector CVE-2017-13766 Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100542

SANS News

Remote SOC Workers Concerns

Threatpost

Intel Confirms Its Much-Loathed ME Feature Has A Kill Switch

Turla APT Used WhiteBear Espionage Tools Against Defense Industry, Embassies

New Locky Variant ‘IKARUSdilapidated’ Strikes Again

Siemens Fixes Session Hijacking Bug in LOGO!, Warns of Man-in-the-Middle Attacks

Exploit

Git <= 2.7.5 - Command Injection (Metasploit)

Joomla Component Huge-IT Video Gallery 1.0.9 - SQL Injection

Joomla Component Huge-IT Portfolio Gallery Plugin 1.0.7 - SQL Injection

Joomla! Component Quiz Deluxe 3.7.4 - SQL Injection

Joomla! Component Joomanager 2.0.0 - Arbitrary File Download

iBall Baton 150M Wireless Router - Authentication Bypass

Invoice Manager 3.1 - Cross-Site Request Forgery (Add Admin)

Linux/x86 - Fork Bomb Shellcode (9 bytes)

30.8.2017

Bugtraq

 

Malware

Trojan.Downblocker

OSX.Demsty

Ransom.Defray

Backdoor.Notestuk

Phishing

Nationwide

30th August 2017

Important message from
Nationwide.

Apple

29th August 2017

Reminder: [Apple Service ]
Your Apple ID has been Locked.

Nationwide

29th August 2017

Important message from
Nationwide.

BankofAmerica

29th August 2017

Account Suspended

Dear Customer

29th August 2017

NEW STATMENT RECEIPT ORDER ID
: IN83486438369 DOCUMENT NO
:165153293544

Vulnerebility

libgcrypt CVE-2017-0379 Information Disclosure Vulnerability
2017-08-30
http://www.securityfocus.com/bid/100503

Linux kernel CVE-2017-11176 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99919

Linux Kernel 'brcmf_cfg80211_mgmt_tx()' Function Local Memory Corruption Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99955

Linux Kernel 'securelevel/secureboot' Local Security Bypass Vulnerability
2017-08-29
http://www.securityfocus.com/bid/77097

Linux Kernel CVE-2017-7495 Local Information Disclosure Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98491

PHP LibGD CVE-2016-3074 Heap Buffer Overflow Vulnerability
2017-08-29
http://www.securityfocus.com/bid/87087

Linux kernel 'net/ipx/af_ipx.c' Use After Free Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98439

Nginx CVE-2017-7529 Remote Integer Overflow Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99534

Linux Kernel CVE-2017-7616 Multiple Local Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/97527

Linux Kernel CVE-2017-7261 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97096

Linux Kernel Multiple Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/94138

Linux Kernel CVE-2017-7273 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97190

FFmpeg 'libavcodec/dnxhddec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100020

FFmpeg CVE-2017-9608 NULL pointer Dereference Remote Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100348

FFmpeg 'libavcodec/apedec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100019

FFmpeg 'libavformat/rtmppkt.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100017

FFmpeg CVE-2017-9993 Arbitrary File Read Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99315

LibTIFF 'tif_dirwrite.c' Multiple Denial of Service Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/100524

Multiple Abbott Pacemakers Multiple Security Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/100523

AzeoTech DAQFactory ICSA-17-241-01 Multiple Local Security Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100522

SQLite CVE-2017-13685 Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100521

National Instruments LabVIEW CVE-2017-2779 Memory Corruption Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100519

Akeo Consulting Rufus CVE-2017-13083 Arbitrary Code Execution Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100516

JasPer Multiple Denial of Service Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/100514

GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/100513

Oracle Java SE CVE-2013-0443 Remote Java Runtime Environment Vulnerability
2017-08-28
http://www.securityfocus.com/bid/57702

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99827

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99719

SANS News

Second Google Chrome Extension Banker Malware in Two Weeks

Threatpost

Google Reminding Admins HTTP Pages Will Be Marked ‘Not Secure’ in October

Researchers Figure Out How to Blind ISPs from Smart Home Device Traffic

Revamped Nukebot Malware Changes Targets, Adds Functions

Telnet Credential Leak Reinforces Bleak State of IoT Security

Exploit

QNAP Transcode Server - Command Execution (Metasploit)

NethServer 7.3.1611 - Cross-Site Request Forgery / Cross-Site Scripting

NethServer 7.3.1611 - Cross-Site Request Forgery (Create User / Enable SSH Access)

D-Link DIR-600 - Authentication Bypass

Car or Cab Booking Script - Authentication Bypass

PHP Appointment Booking Script - Authentication Bypass

User Login and Management - Multiple Vulnerabilities

PHP Video Battle Script 1.0 - SQL Injection

Easy Vedio to PSP Converter 1.6.20 - Buffer Overflow (SEH)

29.8.2017

Bugtraq

[SECURITY] [DSA 3957-1] ffmpeg security update 2017-08-28
Luciano Bello (luciano debian org)

[security bulletin] HPESBHF03770 rev.1 - HPE Comware 7 MSR Routers using PHP, Go, Apache Http Server, and Tomcat, Remote Arbitrary Code Execution 2017-08-28
HPE Product Security Response Team (security-alert hpe com)

Malware

 

Phishing

AdministrationFacebook

29th August 2017

You have 2 unread messages
that will be deleted in a few
days berets

Vulnerebility

Linux Kernel CVE-2017-7616 Multiple Local Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/97527

Linux Kernel CVE-2017-7495 Local Information Disclosure Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98491

Linux kernel 'net/ipx/af_ipx.c' Use After Free Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/98439

Linux Kernel CVE-2017-7261 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97096

Linux Kernel Multiple Information Disclosure Vulnerabilities
2017-08-29
http://www.securityfocus.com/bid/94138

Linux Kernel CVE-2017-7273 Local Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/97190

FFmpeg 'libavcodec/dnxhddec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100020

FFmpeg CVE-2017-9608 NULL pointer Dereference Remote Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100348

FFmpeg 'libavcodec/apedec.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100019

FFmpeg 'libavformat/rtmppkt.c' Denial of Service Vulnerability
2017-08-29
http://www.securityfocus.com/bid/100017

FFmpeg CVE-2017-9993 Arbitrary File Read Vulnerability
2017-08-29
http://www.securityfocus.com/bid/99315

Oracle Java SE CVE-2013-0443 Remote Java Runtime Environment Vulnerability
2017-08-28
http://www.securityfocus.com/bid/57702

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99827

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99719

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99846

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99712

Oracle Java SE CVE-2017-10105 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99851

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99670

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99756

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99842

Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99674

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99643

Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99703

Multiple OpenStack Products CVE-2017-12440 Security Bypass Vulnerability
2017-08-28
http://www.securityfocus.com/bid/100455

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99788

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99839

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99706

SANS News

An Update On DVR Malware: A DVR Torture Chamber

Threatpost

Fraudulent Donations Lead to Disbanding of Hutchins Legal Defense Fund

CEOs Resign from Trump’s Cybersecurity Commission


Anonymous Messaging App Sarahah to Halt Collection of User Data With Next Update

Exploit

NethServer 7.3.1611 - Cross-Site Request Forgery / Cross-Site Scripting

NethServer 7.3.1611 - Cross-Site Request Forgery (Create User / Enable SSH Access)

D-Link DIR-600 - Authentication Bypass

Car or Cab Booking Script - Authentication Bypass

PHP Appointment Booking Script - Authentication Bypass

User Login and Management - Multiple Vulnerabilities

PHP Video Battle Script 1.0 - SQL Injection

Easy Vedio to PSP Converter 1.6.20 - Buffer Overflow (SEH)

28.8.2017

Bugtraq

[SECURITY] [DSA 3956-1] connman security update 2017-08-27
Luciano Bello (luciano debian org)

Trend Micro Hosted Email Security (HES) - Email Interception and Direct Object Reference 2017-08-24
Patrick Webster (patrick osisecurity com au)

Malware

 

Phishing

 

Vulnerebility

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99827

Oracle Java SE CVE-2017-10087 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99703

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99846

Multiple OpenStack Products CVE-2017-12440 Security Bypass Vulnerability
2017-08-28
http://www.securityfocus.com/bid/100455

Oracle Java SE CVE-2017-10107 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99719

Oracle Java SE and JRockit CVE-2017-10109 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99847

Oracle Java SE and JRockit CVE-2017-10176 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99788

Oracle Java SE CVE-2017-10096 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99670

Oracle Java SE and JRockit CVE-2017-10135 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99839

Oracle Java SE CVE-2017-10090 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99706

Oracle Java SE CVE-2017-10067 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99756

Oracle Java SE CVE-2017-10074 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99731

Oracle Java SE CVE-2017-10110 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99643

Oracle Java SE and JRockit CVE-2017-10198 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99818

Oracle Java SE and JRockit CVE-2017-10116 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99734

Oracle Java SE CVE-2017-10101 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99674

Oracle Java SE CVE-2017-10102 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99712

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99842

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99853

Oracle Java SE and JRockit CVE-2017-10115 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99774

Oracle Java SE and JRockit CVE-2017-10118 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99782

Oracle MySQL Server CVE-2017-3641 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99767

Oracle MySQL Server CVE-2017-3653 Remote Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99810

Oracle MySQL Server CVE-2017-3636 Local Security Vulnerability
2017-08-28
http://www.securityfocus.com/bid/99736

Oracle Java SE CVE-2012-5068 Remote Java Runtime Environment Vulnerability
2017-08-28
http://www.securityfocus.com/bid/56076

GraphicsMagick CVE-2017-11642 Denial of Service Vulnerability
2017-08-26
http://www.securityfocus.com/bid/100395

SAP NetWeaver Central Technical Configuration Unspecified Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97566

SAP NetWeaver Knowledge Management XML External Entity Injection Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97572

IBM Rhapsody DM CVE-2016-8975 Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/100124

FortiManager Multiple Security Vulnerabilities
2017-08-25
http://www.securityfocus.com/bid/74444

SANS News

 

Threatpost

 

Exploit

Dup Scout Enterprise 9.9.14 - Buffer Overflow (SEH)

Disk Savvy Enterprise 9.9.14 - Buffer Overflow (SEH)

Sync Breeze Enterprise 9.9.16 - Buffer Overflow (SEH)

Disk Pulse Enterprise 9.9.16 - Buffer Overflow (SEH)

Joomla! Component Photo Contest 1.0.2 - SQL Injection

Joomla! Component OSDownloads 1.7.4 - SQL Injection

AutoCar 1.1 - 'category' Parameter SQL Injection

Joomla! Component Responsive Portfolio 1.6.1 - SQL Injection

Matrimonial Script 2.7 - Authentication bypass

Smart Chat 1.0.0 - SQL Injection

FTP Made Easy PRO 1.2 - SQL Injection

Easy RM RMVB to DVD Burner 1.8.11 - Buffer Overflow (SEH)

Easy DVD Creator 2.5.11 - Buffer Overflow (SEH)

Easy WMV/ASF/ASX to DVD Burner 2.3.11 - Buffer Overflow (SEH)

27.8.2017

Bugtraq

 

Malware

 

Phishing

NatWestCreditCards@natwest.com

26th August 2017

Your recent bill is ready -
NatWest credit card.

Vulnerebility

SAP NetWeaver Central Technical Configuration Unspecified Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97566

SAP NetWeaver Knowledge Management XML External Entity Injection Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97572

IBM Rhapsody DM CVE-2016-8975 Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/100124

FortiManager Multiple Security Vulnerabilities
2017-08-25
http://www.securityfocus.com/bid/74444

Cisco IOS and IOS XE Software Multiple Remote Code Execution Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/99345

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-08-24
http://www.securityfocus.com/bid/99339

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-08-24
http://www.securityfocus.com/bid/99337

augeas CVE-2017-7555 Memory Corruption Vulnerability
2017-08-24
http://www.securityfocus.com/bid/100378

Multiple Westermo Routers Multiple Security Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/100470

HP Integrated Lights-Out CVE-2017-12542 Multiple Unspecified Security Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/100467

Adobe Digital Editions CVE-2017-11272 XML Entity Parsing Information Disclosure Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100193

Adobe Digital Editions APSB17-27 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100244

Adobe Digital Editions CVE-2017-11274 Unspecified Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100194

TeX Live CVE-2016-10243 Remote Code Execution Vulnerability
2017-08-23
http://www.securityfocus.com/bid/96593

Ansible CVE-2017-7481 Security Bypass Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98492

Smb4K CVE-2017-8849 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98690

Google Android Libraries Multiple Remote Code Execution Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/98877

libxml2 CVE-2017-9049 Heap Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98601

Libxml2 CVE-2017-9047 Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98599

libxml2 CVE-2017-9050 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98568

libxml2 CVE-2017-9048 Local Stack Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98556

RedHat CVS CVE-2017-12836 Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100279

Multiple Cisco ADSL Routers CVE-2017-11587 Directory Traversal Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100484

Linux Kernel CVE-2017-7558 Multiple Local Information Disclosure Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100466

Cisco Meeting Server CVE-2017-6794 Local Command Injection and Privilege Escalation Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100464

GNU Binutils CVE-2017-12967 Remote Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100462

Trend Micro Smart Protection CVE-2017-11395 OS Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100461

libzip CVE-2017-12858 Double Free Local Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100459

Multiple Automated Logic Corporation Products CVE-2017-9644 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100454

SANS News

Malware analysis: searching for dots

Threatpost

Defray Ransomware Seen Targeting Education, Healthcare Industry

Cryptocurrency Mining Malware Hosted in Amazon S3 Bucket

Security Lacking in Previous AppleAVEDriver iOS Kernel Extension

Exploit

Apple iOS <= 10.3.1 - Kernel Exploit

25.8.2017

Bugtraq

Trend Micro Hosted Email Security (HES) - Email Interception and Direct Object Reference 2017-08-24
Patrick Webster (patrick osisecurity com au)

[security bulletin] HPESBHF03769 rev.1 - HPE Integrated Lights-out 4 (iLO 4) Multiple Remote Vulnerabilities 2017-08-23
security-alert hpe com

[SECURITY] [DSA 3953-1] aodh security update 2017-08-23
Luciano Bello (luciano debian org)

Malware

 

Phishing

Amazon Customer Support

25th August 2017

Your Amazon.com Order

AppleID

24th August 2017

Your Apple ID has been locked
for security reasons.

Daily Brand Winner

24th August 2017

Do you want a $100 [Amazon]
Gift Card ?

Vulnerebility

GraphicsMagick CVE-2017-11642 Denial of Service Vulnerability
2017-08-26
http://www.securityfocus.com/bid/100395

SAP NetWeaver Central Technical Configuration Unspecified Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97566

SAP NetWeaver Knowledge Management XML External Entity Injection Vulnerability
2017-08-25
http://www.securityfocus.com/bid/97572

IBM Rhapsody DM CVE-2016-8975 Cross Site Scripting Vulnerability
2017-08-25
http://www.securityfocus.com/bid/100124

FortiManager Multiple Security Vulnerabilities
2017-08-25
http://www.securityfocus.com/bid/74444

Cisco IOS and IOS XE Software Multiple Remote Code Execution Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/99345

ISC BIND CVE-2017-3142 Security Bypass Vulnerability
2017-08-24
http://www.securityfocus.com/bid/99339

ISC BIND CVE-2017-3143 Security Bypass Vulnerability
2017-08-24
http://www.securityfocus.com/bid/99337

augeas CVE-2017-7555 Memory Corruption Vulnerability
2017-08-24
http://www.securityfocus.com/bid/100378

Multiple Westermo Routers Multiple Security Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/100470

HP Integrated Lights-Out CVE-2017-12542 Multiple Unspecified Security Vulnerabilities
2017-08-24
http://www.securityfocus.com/bid/100467

Adobe Digital Editions CVE-2017-11272 XML Entity Parsing Information Disclosure Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100193

Adobe Digital Editions APSB17-27 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100244

Adobe Digital Editions CVE-2017-11274 Unspecified Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100194

TeX Live CVE-2016-10243 Remote Code Execution Vulnerability
2017-08-23
http://www.securityfocus.com/bid/96593

Ansible CVE-2017-7481 Security Bypass Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98492

Smb4K CVE-2017-8849 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98690

Google Android Libraries Multiple Remote Code Execution Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/98877

libxml2 CVE-2017-9049 Heap Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98601

Libxml2 CVE-2017-9047 Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98599

libxml2 CVE-2017-9050 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98568

libxml2 CVE-2017-9048 Local Stack Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98556

RedHat CVS CVE-2017-12836 Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100279

Multiple Cisco ADSL Routers CVE-2017-11587 Directory Traversal Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100484

Linux Kernel CVE-2017-7558 Multiple Local Information Disclosure Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100466

Cisco Meeting Server CVE-2017-6794 Local Command Injection and Privilege Escalation Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100464

GNU Binutils CVE-2017-12967 Remote Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100462

Trend Micro Smart Protection CVE-2017-11395 OS Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100461

libzip CVE-2017-12858 Double Free Local Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100459

Multiple Automated Logic Corporation Products CVE-2017-9644 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100454

SANS News

Malicious AutoIT script delivered in a self-extracting RAR file

Threatpost

Security Lacking in Previous AppleAVEDriver iOS Kernel Extension

Adware Spreading Via Social Engineering, Facebook Messenger

Exploit

Joomla! Component Bargain Product VM3 1.0 - 'product_id' Parameter SQL Injection

Joomla! Component Price Alert 3.0.2 - 'product_id' Parameter SQL Injection

Joomla! Component MasterForms 1.0.3 - SQL Injection

Easy Video to iPod/MP4/PSP/3GP Converter 1.5.20 - Buffer Overflow (SEH)

MP3 WAV to CD Burner 1.4.24 - Buffer Overflow (SEH)

My Video Converter 1.5.24 - Buffer Overflow (SEH)

Easy AVI DivX Converter 1.2.24 - Buffer Overflow (SEH)

24.8.2017

Bugtraq

Trend Micro Hosted Email Security (HES) - Email Interception and Direct Object Reference 2017-08-24
Patrick Webster (patrick osisecurity com au)

[security bulletin] HPESBHF03769 rev.1 - HPE Integrated Lights-out 4 (iLO 4) Multiple Remote Vulnerabilities 2017-08-23
security-alert hpe com

[SECURITY] [DSA 3953-1] aodh security update 2017-08-23
Luciano Bello (luciano debian org)

[SECURITY] [DSA 3951-1] smb4k security update 2017-08-22
Moritz Muehlenhoff (jmm debian org)

[RT-SA-2015-008] WebClientPrint Processor 2.0: Remote Code Execution via Print Jobs 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-009] WebClientPrint Processor 2.0: Remote Code Execution via Updates 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-010] WebClientPrint Processor 2.0: Unauthorised Proxy Modification 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-011] WebClientPrint Processor 2.0: No Validation of TLS Certificates 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

Malware

 

Phishing

 

Vulnerebility

augeas CVE-2017-7555 Memory Corruption Vulnerability
2017-08-24
http://www.securityfocus.com/bid/100378

Adobe Digital Editions CVE-2017-11272 XML Entity Parsing Information Disclosure Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100193

Adobe Digital Editions APSB17-27 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100244

Adobe Digital Editions CVE-2017-11274 Unspecified Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100194

TeX Live CVE-2016-10243 Remote Code Execution Vulnerability
2017-08-23
http://www.securityfocus.com/bid/96593

Ansible CVE-2017-7481 Security Bypass Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98492

Smb4K CVE-2017-8849 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98690

Google Android Libraries Multiple Remote Code Execution Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/98877

libxml2 CVE-2017-9049 Heap Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98601

Libxml2 CVE-2017-9047 Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98599

libxml2 CVE-2017-9050 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98568

libxml2 CVE-2017-9048 Local Stack Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98556

RedHat CVS CVE-2017-12836 Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100279

GNU Binutils CVE-2017-12967 Remote Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100462

Trend Micro Smart Protection CVE-2017-11395 OS Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100461

libzip CVE-2017-12858 Double Free Local Denial of Service Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100459

Multiple Automated Logic Corporation Products CVE-2017-9644 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100454

Jenkins Git Plugin CVE-2017-1000092 Cross Site Request Forgery Vulnerability
2017-08-22
http://www.securityfocus.com/bid/100435

Avira Antivirus Remote Heap Underflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/84841

Oracle Java SE CVE-2013-5812 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63126

Oracle Java SE CVE-2013-5809 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63118

Oracle Java SE CVE-2013-5803 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63082

Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63135

Oracle Java SE CVE-2013-5804 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63149

Oracle Java SE CVE-2013-5797 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63095

Oracle Java SE CVE-2013-5790 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63102

Oracle Java SE CVE-2013-5801 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63147

Oracle Java SE CVE-2013-5787 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63155

Oracle Java SE CVE-2013-5789 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63156

SANS News

 

Threatpost

Zerodium Offers $500K for Secure Messaging App Zero Days

Business Email Compromise Campaign Harvesting Credentials in Numerous Industries

Exploit

Matrimonial Script - SQL Injection

Automated Logic WebCTRL 6.5 - Unrestricted File Upload / Remote Code Execution

Automated Logic WebCTRL 6.1 - Path Traversal / Arbitrary File Write

Automated Logic WebCTRL 6.5 - Local Privilege Escalation

libgig 4.0.0 - LinuxSampler Multiple Vulnerabilities

23.8.2017

Bugtraq

[SECURITY] [DSA 3951-1] smb4k security update 2017-08-22
Moritz Muehlenhoff (jmm debian org)

[RT-SA-2015-008] WebClientPrint Processor 2.0: Remote Code Execution via Print Jobs 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-009] WebClientPrint Processor 2.0: Remote Code Execution via Updates 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-010] WebClientPrint Processor 2.0: Unauthorised Proxy Modification 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[RT-SA-2015-011] WebClientPrint Processor 2.0: No Validation of TLS Certificates 2017-08-22
RedTeam Pentesting GmbH (release redteam-pentesting de)

[SECURITY] [DSA 3950-1] libraw security update 2017-08-21
Luciano Bello (luciano debian org)

Malware

 

Phishing

DailyBet

22nd August 2017

Free trial of Unique Daily
Betting Picks- Check it !

NatWest Online

22nd August 2017

ACCOUNT ACTIVITY

Vulnerebility

GraphicsMagick CVE-2017-11642 Denial of Service Vulnerability
2017-08-26
http://www.securityfocus.com/bid/100395

Adobe Digital Editions CVE-2017-11272 XML Entity Parsing Information Disclosure Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100193

Adobe Digital Editions APSB17-27 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/100244

Adobe Digital Editions CVE-2017-11274 Unspecified Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100194

TeX Live CVE-2016-10243 Remote Code Execution Vulnerability
2017-08-23
http://www.securityfocus.com/bid/96593

Ansible CVE-2017-7481 Security Bypass Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98492

Smb4K CVE-2017-8849 Local Privilege Escalation Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98690

Google Android Libraries Multiple Remote Code Execution Vulnerabilities
2017-08-23
http://www.securityfocus.com/bid/98877

libxml2 CVE-2017-9049 Heap Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98601

Libxml2 CVE-2017-9047 Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98599

libxml2 CVE-2017-9050 Incomplete Fix Local Heap Based Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98568

libxml2 CVE-2017-9048 Local Stack Buffer Overflow Vulnerability
2017-08-23
http://www.securityfocus.com/bid/98556

RedHat CVS CVE-2017-12836 Command Injection Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100279

augeas CVE-2017-7555 Memory Corruption Vulnerability
2017-08-23
http://www.securityfocus.com/bid/100378

Jenkins Git Plugin CVE-2017-1000092 Cross Site Request Forgery Vulnerability
2017-08-22
http://www.securityfocus.com/bid/100435

Avira Antivirus Remote Heap Underflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/84841

Oracle Java SE CVE-2013-5812 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63126

Oracle Java SE CVE-2013-5809 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63118

Oracle Java SE CVE-2013-5803 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63082

Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63135

Oracle Java SE CVE-2013-5804 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63149

Oracle Java SE CVE-2013-5797 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63095

Oracle Java SE CVE-2013-5790 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63102

Oracle Java SE CVE-2013-5801 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63147

Oracle Java SE CVE-2013-5787 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63155

Oracle Java SE CVE-2013-5789 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63156

Oracle Java SE CVE-2013-5784 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63098

Oracle Java SE CVE-2013-5783 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63154

Oracle Java SE CVE-2013-5780 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63115

Oracle Java SE CVE-2013-5782 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63103
ity Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63152

Oracle Java SE CVE-2013-3829 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63120

SANS News

Malicious script dropping an executable signed by Avast?

Threatpost

Neptune Exploit Kit Dropping Cryptocurrency Miners Through Malvertisements

Android Spyware Linked to Chinese SDK Forces Google to Boot 500 Apps

Foxit to Fix PDF Reader Zero Days by Friday

Exploit

IBM OpenAdmin Tool - SOAP welcomeServer PHP Code Execution (Metasploit)

Matrimonial Script - SQL Injection

Automated Logic WebCTRL 6.5 - Unrestricted File Upload / Remote Code Execution

Automated Logic WebCTRL 6.1 - Path Traversal / Arbitrary File Write

VX Search Enterprise 9.9.12 - 'Import Command' Buffer Overflow

Microsoft Windows - Escalate UAC Protection Bypass (Via COM Handler Hijack)...

Disk Pulse Enterprise 9.9.16 - 'Import Command' Buffer Overflow

Disk Savvy Enterprise 9.9.14 - 'Import Command' Buffer Overflow

22.8.2017

Bugtraq

[SECURITY] [DSA 3950-1] libraw security update 2017-08-21
Luciano Bello (luciano debian org)

[SECURITY] [DSA 3948-1] ioquake3 security update 2017-08-19
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3946-1] libmspack security update 2017-08-18
Sebastien Delafond (seb debian org)

[SECURITY] [DSA 3928-2] firefox-esr security update 2017-08-16
Moritz Muehlenhoff (jmm debian org)

Microsoft Resnet - DNS Configuration Web Vulnerability 2017-08-16
Vulnerability Lab (research vulnerability-lab com)

FreeBSD <= 10.3 jail SHM hole 2017-08-16
WhiteWinterWolf (bugtraq lists whitewinterwolf com)

[SECURITY] [DSA 3943-1] gajim security update 2017-08-14
Salvatore Bonaccorso (carnil debian org)

CVE-2017-9802: Apache Sling XSS vulnerability 2017-08-14
Robert Munteanu (rombert apache org)

[CVE-2017-9767] Quali CloudShell (v7.1.0.6508 Patch 6) Multiple Stored Cross Site Scripting Vulnerability 2017-08-14
x62x65x6e gmail com

Malware

 

Phishing

 

Vulnerebility

GraphicsMagick CVE-2017-11642 Denial of Service Vulnerability
2017-08-26
http://www.securityfocus.com/bid/100395

Avira Antivirus Remote Heap Underflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/84841

Oracle Java SE CVE-2013-5812 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63126

Oracle Java SE CVE-2013-5809 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63118

Oracle Java SE CVE-2013-5803 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63082

Oracle Java SE CVE-2013-5802 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63135

Oracle Java SE CVE-2013-5804 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63149

Oracle Java SE CVE-2013-5797 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63095

Oracle Java SE CVE-2013-5790 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63102

Oracle Java SE CVE-2013-5801 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63147

Oracle Java SE CVE-2013-5787 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63155

Oracle Java SE CVE-2013-5789 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63156

Oracle Java SE CVE-2013-5784 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63098

Oracle Java SE CVE-2013-5783 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63154

Oracle Java SE CVE-2013-5780 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63115

Oracle Java SE CVE-2013-5782 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63103

Oracle Java SE CVE-2013-5778 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63134

Oracle Java SE CVE-2013-5774 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63128

Oracle Java SE CVE-2013-5776 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63152

Oracle Java SE CVE-2013-3829 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63120

Oracle Java SE CVE-2013-5772 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/63089

Google Web Toolkit CVE-2013-4204 Multiple Cross Site Scripting Vulnerabilities
2017-08-22
http://www.securityfocus.com/bid/61590

Oracle Java SE CVE-2013-2472 Buffer Overflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60656

Oracle Java SE CVE-2013-3743 Remote Security Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60626

Oracle Java SE CVE-2013-2473 Buffer Overflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60623

Oracle Java SE CVE-2013-2469 Memory Corruption Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60658

Oracle Java SE CVE-2013-2471 Buffer Overflow Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60659

Oracle Java SE CVE-2013-2470 Memory Corruption Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60651

Oracle Java SE CVE-2013-2464 Memory Corruption Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60631

Oracle Java SE CVE-2013-2465 Memory Corruption Vulnerability
2017-08-22
http://www.securityfocus.com/bid/60657

SANS News

Defang all the things!

Threatpost

Fuze Patches TPN Handset Vulnerabilities

Facebook Awards $100K to Researchers for Credential Spearphishing Detection Method


Meeting and Hotel Booking Provider’s Data Found in Public Amazon S3 Bucket

Exploit

Easy DVD Creater 2.5.11 - Buffer Overflow (SEH)

Apache2Triad 1.5.4 - Multiple Vulnerabilities

Joomla! Component Flip Wall 8.0 - 'wallid' Parameter SQL Injection

Joomla! Component Sponsor Wall 8.0 - SQL Injection

PHP Classifieds Script 5.6.2 - SQL Injection

Affiliate Niche Script 3.4.0 - SQL Injection

PHP Coupon Script 6.0 - 'cid' Parameter SQL Injection

iTech Social Networking Script 3.08 - SQL Injection

VX Search Enterprise 9.9.12 - 'Import Command' Buffer Overflow

Disk Pulse Enterprise 9.9.16 - 'Import Command' Buffer Overflow

Disk Savvy Enterprise 9.9.14 - 'Import Command' Buffer Overflow

Linux/x86_64 - Fork Bomb Shellcode (11 bytes)

Linux/x86_64 - kill All Processes Shellcode (19 bytes)

21.8.2017

Bugtraq

[SECURITY] [DSA 3948-1] ioquake3 security update 2017-08-19
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3946-1] libmspack security update 2017-08-18
Sebastien Delafond (seb debian org)

[SECURITY] [DSA 3928-2] firefox-esr security update 2017-08-16
Moritz Muehlenhoff (jmm debian org)

Microsoft Resnet - DNS Configuration Web Vulnerability 2017-08-16
Vulnerability Lab (research vulnerability-lab com)

FreeBSD <= 10.3 jail SHM hole 2017-08-16
WhiteWinterWolf (bugtraq lists whitewinterwolf com)

Malware

 

Phishing

service@paypal-support.co.uk

20th August 2017

Last Reminder: Your account is
limited.

Chase Online

19th August 2017

Urgent! Update your details
with Chase Today!

Vulnerebility

 

SANS News

It's Not An Invoice ...

Threatpost

 

Exploit

Apache2Triad 1.5.4 - Multiple Vulnerabilities

Joomla! Component Flip Wall 8.0 - 'wallid' Parameter SQL Injection

Joomla! Component Sponsor Wall 8.0 - SQL Injection

PHP Classifieds Script 5.6.2 - SQL Injection

Easy DVD Creater 2.5.11 - Buffer Overflow (SEH)

Linux/x86_64 - kill All Processes Shellcode (19 bytes)

Linux/x86_64 - Fork Bomb Shellcode (11 bytes)

20.8.2017

Bugtraq

 

Malware

Backdoor.Shadowpad

Phishing

 

Vulnerebility

Mozilla Firefox CVE-2017-7806 Use After Free Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100389

Mozilla Firefox CVE-2017-7781 Man in the Middle Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100383

Mozilla Firefox CVE-2017-7788 Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100379

Mozilla Firefox CVE-2017-7789 Remote Security Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100374

Mozilla Firefox CVE-2017-7808 Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100373

Mozilla Firefox CVE-2017-7753 Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100315

Mozilla Firefox CVE-2017-7791 Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100240

Mozilla Firefox and Firefox ESR Multiple Security Bypass Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/100234

Mozilla Firefox and Firefox ESR Multiple Buffer Overflow Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/100206

Mozilla Firefox and Firefox ESR CVE-2017-7809 Use After Free Remote Code Execution Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100203

Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/100201

Mozilla Firefox and Firefox ESR Multiple Use After Free Remote Code Execution Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/100202

Mozilla Firefox CVE-2017-7780 Multiple Memory Corruption Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/100199

Mozilla Firefox CVE-2017-7798 XUL Injection Arbitrary Code Execution Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100198

Mozilla Firefox CVE-2017-7801 Use After Free Remote Code Execution Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100197

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100196

Mozilla Firefox CVE-2017-7799 Cross Site Scripting Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100377

Mozilla Firefox CVE-2017-7807 Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100242

Mozilla Firefox CVE-2017-7783 Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100401

Linux Kernel 'brcmf_cfg80211_mgmt_tx()' Function Local Memory Corruption Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99955

Linux Kernel CVE-2017-7533 Local Race Condition Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100123

Linux kernel CVE-2017-11176 Local Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99919

Xen 'blkif' Response Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99162

Linux Kernel CVE-2017-7482 Local Buffer Overflow Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99299

Linux Kernel 'drivers/gpu/drm/vmwgfx/vmwgfx_surface.c' Local Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99095

Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-08-18
http://www.securityfocus.com/bid/98651

Linux Kernel CVE-2017-7346 Local Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/97257

Linux Kernel CVE-2017-1000365 Local Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99156

Linux Kernel CVE-2017-7889 Multiple Local Security Bypass Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/97690

SANS News

tshark 2.4 New Feature - Command Line Export Objects

Threatpost

It’s Not Exactly Open Season on the iOS Secure Enclave

Vendor Exposes Backup of Chicago Voter Roll via AWS Bucket

Exploit

Symantec Messaging Gateway 10.6.3-2 - Unauthenticated root Remote Command Execution

Symantec Messaging Gateway 10.6.3-2 - Unauthenticated root Remote Command Execution

Symantec Messaging Gateway 10.6.3-2 - Unauthenticated root Remote Command Execution

Symantec Messaging Gateway 10.6.3-2 - Unauthenticated root Remote Command Execution

Symantec Messaging Gateway 10.6.3-2 - Unauthenticated root Remote Command Execution

18.8.2017

Bugtraq

[SECURITY] [DSA 3946-1] libmspack security update 2017-08-18
Sebastien Delafond (seb debian org)

[SECURITY] [DSA 3928-2] firefox-esr security update 2017-08-16
Moritz Muehlenhoff (jmm debian org)

Microsoft Resnet - DNS Configuration Web Vulnerability 2017-08-16
Vulnerability Lab (research vulnerability-lab com)

FreeBSD <= 10.3 jail SHM hole 2017-08-16
WhiteWinterWolf (bugtraq lists whitewinterwolf com)

[SECURITY] [DSA 3943-1] gajim security update 2017-08-14
Salvatore Bonaccorso (carnil debian org)

Malware

 

Phishing

Wells Fargo Online

18th August 2017

Wells Fargo Account Online
Access Limitation!

Vulnerebility

GraphicsMagick CVE-2017-11642 Denial of Service Vulnerability
2017-08-26
http://www.securityfocus.com/bid/100395

Linux Kernel 'brcmf_cfg80211_mgmt_tx()' Function Local Memory Corruption Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99955

Linux Kernel CVE-2017-7533 Local Race Condition Vulnerability
2017-08-18
http://www.securityfocus.com/bid/100123

Linux kernel CVE-2017-11176 Local Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99919

Xen 'blkif' Response Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99162

Linux Kernel CVE-2017-7482 Local Buffer Overflow Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99299

Linux Kernel 'drivers/gpu/drm/vmwgfx/vmwgfx_surface.c' Local Information Disclosure Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99095

Linux Kernel CVE-2017-1000363 Integer Overflow Vulnerability
2017-08-18
http://www.securityfocus.com/bid/98651

Linux Kernel CVE-2017-7346 Local Denial of Service Vulnerability
2017-08-18
http://www.securityfocus.com/bid/97257

Linux Kernel CVE-2017-1000365 Local Security Bypass Vulnerability
2017-08-18
http://www.securityfocus.com/bid/99156

Linux Kernel CVE-2017-7889 Multiple Local Security Bypass Vulnerabilities
2017-08-18
http://www.securityfocus.com/bid/97690

Linux kernel CVE-2014-9940 Local Privilege Escalation Vulnerability
2017-08-18
http://www.securityfocus.com/bid/98195

Git CVE-2017-1000117 Remote Command Injection Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100283

Mozilla Firefox and Firefox ESR Multiple Security Bypass Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100234

Mozilla Firefox CVE-2017-7753 Information Disclosure Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100315

Mozilla Firefox and Firefox ESR CVE-2017-7809 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100203

Mozilla Firefox and Firefox ESR Multiple Use After Free Remote Code Execution Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100202

Mozilla Firefox and Firefox ESR Multiple Buffer Overflow Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100206

Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100201

Mozilla Firefox CVE-2017-7801 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100197

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100196

Mozilla Firefox CVE-2017-7791 Security Bypass Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100240

Mozilla Firefox CVE-2017-7798 XUL Injection Arbitrary Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100198

Mozilla Firefox CVE-2017-7807 Security Bypass Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100242

ISC BIND CVE-2017-3141 Local Privilege Escalation Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99089

tnef Multiple Integer Overflow, Type Confusion and Out of Bounds Write Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/96427

ISC BIND CVE-2017-3140 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99088

ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97653

ISC BIND CVE-2017-3138 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97657

ISC BIND CVE-2017-3137 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97651

SANS News

EngineBox Malware Supports 10+ Brazilian Banks

Threatpost

Cisco Patches Privilege Escalation Bugs in APIC

Drupal Patches Critical Access Bypass in Core Engine

Exploit

MyDoomScanner 1.00 - Local Buffer Overflow (PoC)

Microsoft Edge Chakra - 'PreVisitCatch' Missing Call

Microsoft Edge Chakra - 'chakra!Js::GlobalObject' Integer overflow

Microsoft Edge Chakra - Buffer Overflow

Microsoft Edge Chakra - NULL Pointer Dereference

Microsoft Edge Chakra - Heap Buffer Overflow

Microsoft Edge Chakra - 'InterpreterStackFrame::ProcessLinkFailedAsmJsModule'...

Microsoft Edge Chakra - Incorrect Usage of 'PushPopFrameHelper' in...

Microsoft Edge Chakra - Incorrect Usage of 'TryUndeleteProperty'

Microsoft Edge Chakra - 'EmitAssignment' uses the 'this' Register Without Initializing

Microsoft Edge Chakra - Incorrect JIT Optimization with TypedArray Setter #2

Microsoft Edge Chakra - 'JavascriptArray::ConcatArgs' Type Confusion

Microsoft Edge Chakra - 'JavascriptFunction::EntryCall' Fails to Handle 'CallInfo'...

Microsoft Edge Chakra - Uninitialized Arguments (1)

Microsoft Edge Chakra - Uninitialized Arguments (2)

Microsoft Edge Chakra - 'EmitNew' Integer Overflow

Microsoft Edge 40.15063.0.0 Chakra - Incorrect JIT Optimization with TypedArray Setter #3

Adobe Flash - Invoke Accesses Trait Out-of-Bounds

Microsoft Edge - Out-of-Bounds Access when Fetching Source

MyDoomScanner 1.00 - Local Buffer Overflow (PoC)

Mozilla Firefox < 45.0 - 'nsHtml5TreeBuilder' Use-After-Free (EMET 5.52 Bypass)

Food Ordering Script 1.0 - SQL Injection

Online Quiz Project 1.0 - SQL Injection

Photogallery Project 1.0 - SQL Injection

Doctor Patient Project 1.0 - SQL Injection

17.8.2017

Bugtraq

[SECURITY] [DSA 3928-2] firefox-esr security update 2017-08-16
Moritz Muehlenhoff (jmm debian org)

Microsoft Resnet - DNS Configuration Web Vulnerability 2017-08-16
Vulnerability Lab (research vulnerability-lab com)

FreeBSD <= 10.3 jail SHM hole 2017-08-16
WhiteWinterWolf (bugtraq lists whitewinterwolf com)

Malware

Backdoor.Shadowpad

Phishing

NatWest InfoDesk

16th August 2017

ENHANCED SECURITY UPDATE
REQUIRED

PayPal

16th August 2017

[NEW REMINDER] : THANK YOU FOR
USING PAYPAL TO TRANSACTION
SUCCESSFULLY, ORDER NUMBER
#3077-1552-9643-8058

Vulnerebility

Git CVE-2017-1000117 Remote Command Injection Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100283

Mozilla Firefox and Firefox ESR Multiple Security Bypass Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100234

Mozilla Firefox CVE-2017-7753 Information Disclosure Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100315

Mozilla Firefox and Firefox ESR CVE-2017-7809 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100203

Mozilla Firefox and Firefox ESR Multiple Use After Free Remote Code Execution Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100202

Mozilla Firefox and Firefox ESR Multiple Buffer Overflow Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100206

Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/100201

Mozilla Firefox CVE-2017-7801 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100197

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100196

Mozilla Firefox CVE-2017-7791 Security Bypass Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100240

Mozilla Firefox CVE-2017-7798 XUL Injection Arbitrary Code Execution Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100198

Mozilla Firefox CVE-2017-7807 Security Bypass Vulnerability
2017-08-17
http://www.securityfocus.com/bid/100242

ISC BIND CVE-2017-3141 Local Privilege Escalation Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99089

tnef Multiple Integer Overflow, Type Confusion and Out of Bounds Write Vulnerabilities
2017-08-17
http://www.securityfocus.com/bid/96427

ISC BIND CVE-2017-3140 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99088

ISC BIND CVE-2017-3136 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97653

ISC BIND CVE-2017-3138 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97657

ISC BIND CVE-2017-3137 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97651

ISC BIND CVE-2016-9444 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/95393

ISC BIND CVE-2016-9147 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/95390

ISC BIND CVE-2017-3135 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/96150

ISC BIND CVE-2016-9778 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/95388

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-08-17
http://www.securityfocus.com/bid/95386

Oracle MySQL Server CVE-2017-3653 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99810

Oracle MySQL Server CVE-2017-3641 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99767

Oracle MySQL Server CVE-2017-3636 Local Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/99736

Oracle MySQL Server CVE-2017-3456 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97831

Oracle MySQL Server CVE-2017-3464 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97818

Oracle MySQL Server CVE-2017-3309 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97742

Oracle MySQL Server CVE-2017-3453 Remote Security Vulnerability
2017-08-17
http://www.securityfocus.com/bid/97776

SANS News

Maldoc with auto-updated link

Threatpost

Locky Ransomware Variant Slips Past Some Defenses

Maersk Shipping Reports $300M Loss Stemming from NotPetya Attack

Google Removes Chrome Extension Used in Banking Fraud

Exploit

 

16.8.2017

Bugtraq

FreeBSD <= 10.3 jail SHM hole 2017-08-16
WhiteWinterWolf (bugtraq lists whitewinterwolf com)

[SECURITY] [DSA 3943-1] gajim security update 2017-08-14
Salvatore Bonaccorso (carnil debian org)

CVE-2017-9802: Apache Sling XSS vulnerability 2017-08-14
Robert Munteanu (rombert apache org)

[CVE-2017-9767] Quali CloudShell (v7.1.0.6508 Patch 6) Multiple Stored Cross Site Scripting Vulnerability 2017-08-14
x62x65x6e gmail com

[SECURITY] [DSA 3940-1] iortcw security update 2017-08-13
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

 

Vulnerebility

Advantech WebOP Designer Heap Buffer Overflow Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99476

Linux kernel CVE-2017-8831 Local Denial of Service Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99619

Linux Kernel CVE-2017-7895 Multiple Security Bypass Vulnerabilities
2017-08-16
http://www.securityfocus.com/bid/98085

Linux Kernel CVE-2017-7533 Local Race Condition Vulnerability
2017-08-16
http://www.securityfocus.com/bid/100123

Apache HTTP Server CVE-2017-9788 Memory Corruption Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99569

Apache HTTP Server CVE-2017-3169 Denial of Service Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99134

Apache HTTP Server CVE-2017-7679 Buffer Overflow Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99170

Apache HTTP Server CVE-2017-3167 Authentication Bypass Vulnerability
2017-08-16
http://www.securityfocus.com/bid/99135

Adobe Flash Player CVE-2017-3106 Type Confusion Remote Code Execution Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100190

Adobe Flash Player CVE-2017-3085 Unspecified Security Bypass Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100191

Oracle Java SE CVE-2013-1473 Java Runtime Environment Remote Security Vulnerability
2017-08-15
http://www.securityfocus.com/bid/57731

Xen CVE-2017-12135 Multiple Denial of Service Vulnerabilities
2017-08-15
http://www.securityfocus.com/bid/100344

Xen CVE-2017-12134 Memory Corruption Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100343

Xen CVE-2017-12137 Privilege Escalation Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100342

Xen CVE-2017-12855 Local Information Disclosure Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100341

Juniper Junos CVE-2017-10602 Local Buffer Overflow Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100323

Oracle Java SE CVE-2013-2451 Local Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60625

Oracle Java SE CVE-2013-2452 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60617

Oracle Java SE CVE-2013-2450 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60638

Oracle Java SE CVE-2013-2448 Remote Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60640

Oracle Java SE CVE-2013-2446 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60620

Oracle Java SE CVE-2013-2447 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60629

Oracle Java SE CVE-2013-2444 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60633

Oracle Java SE CVE-2013-2445 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60639

Oracle Java SE CVE-2013-2442 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60643

Oracle Java SE CVE-2013-2443 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60646

Oracle Java SE CVE-2013-2440 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59124

Oracle Java SE CVE-2013-2439 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59178

Oracle Java SE CVE-2013-2437 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60636

Oracle Java SE CVE-2013-2435 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59089

SANS News

Analysis of a Paypal phishing kit

Threatpost

Seven More Chrome Extensions Compromised

Spam Domains Imitating Popular Banks Spreading Trickbot Banking Trojan

Exploit

Microsoft Edge 38.14393.1066.0 -...

15.8.2017

Bugtraq

[SECURITY] [DSA 3943-1] gajim security update 2017-08-14
Salvatore Bonaccorso (carnil debian org)

CVE-2017-9802: Apache Sling XSS vulnerability 2017-08-14
Robert Munteanu (rombert apache org)

[CVE-2017-9767] Quali CloudShell (v7.1.0.6508 Patch 6) Multiple Stored Cross Site Scripting Vulnerability 2017-08-14
x62x65x6e gmail com

[SECURITY] [DSA 3940-1] iortcw security update 2017-08-13
Moritz Muehlenhoff (jmm debian org)

Malware

JS.Bateleur

Phishing

 

Vulnerebility

Adobe Flash Player CVE-2017-3106 Type Confusion Remote Code Execution Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100190

Adobe Flash Player CVE-2017-3085 Unspecified Security Bypass Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100191

Oracle Java SE CVE-2013-1473 Java Runtime Environment Remote Security Vulnerability
2017-08-15
http://www.securityfocus.com/bid/57731

Juniper Junos CVE-2017-10602 Local Buffer Overflow Vulnerability
2017-08-15
http://www.securityfocus.com/bid/100323

Oracle Java SE CVE-2013-2451 Local Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60625

Oracle Java SE CVE-2013-2452 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60617

Oracle Java SE CVE-2013-2450 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60638

Oracle Java SE CVE-2013-2448 Remote Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60640

Oracle Java SE CVE-2013-2446 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60620

Oracle Java SE CVE-2013-2447 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60629

Oracle Java SE CVE-2013-2444 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60633

Oracle Java SE CVE-2013-2445 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60639

Oracle Java SE CVE-2013-2442 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60643

Oracle Java SE CVE-2013-2443 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60646

Oracle Java SE CVE-2013-2440 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59124

Oracle Java SE CVE-2013-2439 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59178

Oracle Java SE CVE-2013-2437 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/60636

Oracle Java SE CVE-2013-2435 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59089

Oracle Java SE CVE-2013-2433 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59220

Oracle Java SE CVE-2013-2432 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59154

Oracle Java SE CVE-2013-2430 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59243

Oracle Java SE CVE-2013-2429 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59184

Oracle Java SE CVE-2013-2424 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59159

Oracle Java SE CVE-2013-2422 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59228

Apache Subversion CVE-2017-9800 Remote Command Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100259

Oracle Java SE CVE-2017-10078 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/99752

Oracle Java SE CVE-2013-1518 Remote Java Runtime Environment Vulnerability
2017-08-14
http://www.securityfocus.com/bid/59141

Oracle Java SE CVE-2017-10105 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/99851

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/99842

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-08-14
http://www.securityfocus.com/bid/99846

SANS News

Malspam pushing Trickbot banking Trojan

Threatpost

Researchers Find Phishing Site Encrypted with AES

Smart Locks Bricked by Bad Update

Smart Locks Bricked by Bad Update

Exploit

Quali CloudShell 7.1.0.6508 (Patch 6) - Persistent Cross-Site Scripting

Xamarin Studio for Mac 6.2.1 (build 3)/6.3 (build 863) - Privilege Escalation

Tomabo MP4 Converter 3.19.15 - Denial of Service

ClipBucket 2.8.3 - Multiple Vulnerabilities

14.8.2017

Bugtraq

CVE-2017-9802: Apache Sling XSS vulnerability 2017-08-14
Robert Munteanu (rombert apache org)

[CVE-2017-9767] Quali CloudShell (v7.1.0.6508 Patch 6) Multiple Stored Cross Site Scripting Vulnerability 2017-08-14
x62x65x6e gmail com

[SECURITY] [DSA 3940-1] iortcw security update 2017-08-13
Moritz Muehlenhoff (jmm debian org)

[slackware-security] mercurial (SSA:2017-223-03) 2017-08-11
Slackware Security Team (security slackware com)

[SECURITY] [DSA 3937-1] zabbix security update 2017-08-12
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3936-1] postgresql-9.6 security update 2017-08-10
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

service@intI.paypaI.com

14th August 2017

REMINDER : YOUR PURCHASE
INVOICE HAS BEEN ISSUED -REF
#5YJ60743M42534507

PayPal Account Limited

12th August 2017

PAYPAL ACCOUNT LIMITED

Vulnerebility

Mozilla Firefox CVE-2017-7807 Security Bypass Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100242

Mozilla Firefox and Firefox ESR Multiple Security Bypass Vulnerabilities
2017-08-14
http://www.securityfocus.com/bid/100234

Mozilla Firefox and Firefox ESR Multiple Buffer Overflow Vulnerabilities
2017-08-14
http://www.securityfocus.com/bid/100206

Mozilla Firefox and Firefox ESR CVE-2017-7809 Use After Free Remote Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100203

Mozilla Firefox and Firefox ESR Multiple Use After Free Remote Code Execution Vulnerabilities
2017-08-14
http://www.securityfocus.com/bid/100202

Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-14
http://www.securityfocus.com/bid/100201

Mozilla Firefox CVE-2017-7798 XUL Injection Arbitrary Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100198

Mozilla Firefox CVE-2017-7801 Use After Free Remote Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100197

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-14
http://www.securityfocus.com/bid/100196

Randombit Botan CVE-2017-2801 Certificate Validation Security Bypass Vulnerability
2017-08-14
http://www.securityfocus.com/bid/98106

PHP 'gd_gif_in.c' Memory Corruption Vulnerability
2017-08-14
http://www.securityfocus.com/bid/99492

Zabbix Proxy Server CVE-2017-2825 Man in the Middle Security Bypass Vulnerability
2017-08-14
http://www.securityfocus.com/bid/98094

Zabbix CVE-2017-2824 Command Injection Vulnerability
2017-08-14
http://www.securityfocus.com/bid/98083

Oracle Java SE CVE-2013-2420 Integer Overflow Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59167

Oracle Java SE CVE-2013-2419 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59131

Oracle Java SE CVE-2013-2418 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59145

Oracle Java SE CVE-2013-2417 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59187

Oracle Java SE CVE-2013-2412 Remote Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60618

Oracle Java SE CVE-2013-2407 Remote Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60653

Oracle Java SE CVE-2013-2383 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59190

Oracle Java SE CVE-2013-1571 Frame Injection Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60634

Oracle Java SE CVE-2013-1569 Stack Buffer Overflow Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59166

Oracle Java SE CVE-2013-1563 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59208

Oracle Java SE CVE-2013-1558 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59219

Oracle Java SE CVE-2013-1557 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59170

Oracle Java SE CVE-2013-1540 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59149

Oracle Java SE CVE-2013-1537 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59194

Oracle Java SE CVE-2013-1500 Local Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60627

Oracle Java SE CVE-2013-1487 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58031

Oracle Java SE CVE-2013-1493 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58238

SANS News

The Good Phishing Email

Threatpost

 

Exploit

RealTime RWR-3G-100 Router - Cross-Site Request Forgery (Change Admin Password)

13.8.2017

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

Oracle Java SE CVE-2013-2420 Integer Overflow Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59167

Oracle Java SE CVE-2013-2419 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59131

Oracle Java SE CVE-2013-2418 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59145

Oracle Java SE CVE-2013-2417 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59187

Oracle Java SE CVE-2013-2412 Remote Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60618

Oracle Java SE CVE-2013-2407 Remote Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60653

Oracle Java SE CVE-2013-2383 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59190

Oracle Java SE CVE-2013-1571 Frame Injection Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60634

Oracle Java SE CVE-2013-1569 Stack Buffer Overflow Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59166

Oracle Java SE CVE-2013-1563 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59208

Oracle Java SE CVE-2013-1558 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59219

Oracle Java SE CVE-2013-1557 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59170

Oracle Java SE CVE-2013-1540 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59149

Oracle Java SE CVE-2013-1537 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59194

Oracle Java SE CVE-2013-1500 Local Security Vulnerability
2017-08-11
http://www.securityfocus.com/bid/60627

Oracle Java SE CVE-2013-1487 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58031

Oracle Java SE CVE-2013-1493 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58238

Oracle Java SE CVE-2013-2384 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59179

Oracle Java SE CVE-2013-2394 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/59172

Oracle Java SE CVE-2013-1486 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58029

Oracle Java SE CVE-2013-1480 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57691

Oracle Java SE CVE-2013-1481 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57718

Oracle Java SE CVE-2013-1478 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57686

Oracle Java SE CVE-2013-1479 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57706

Oracle Java SE CVE-2013-1475 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57694

Oracle Java SE CVE-2013-1476 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57696

Oracle Java SE CVE-2013-0809 Remote Code Execution Vulnerability
2017-08-11
http://www.securityfocus.com/bid/58296

Oracle Java SE CVE-2013-0450 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57703

Oracle Java SE CVE-2013-0441 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57692

Oracle Java SE CVE-2013-0446 Remote Java Runtime Environment Vulnerability
2017-08-11
http://www.securityfocus.com/bid/57699

SANS News

Outlook Web Access based attacks

Threatpost

APT28 Using EternalBlue to Attack Hotels in Europe, Middle East

Many Factors Conspire in ICS/SCADA Attacks

Apps Infected With SonicSpy Spyware Removed From Google Play

Ukrainian Man Arrested, Charged in NotPetya Distribution

Exploit

DeWorkshop 1.0 - SQL Injection

De-Journal 1.0 - SQL Injection

De-Tutor 1.0 - SQL Injection

11.8.2017

Bugtraq

[SECURITY] [DSA 3936-1] postgresql-9.6 security update 2017-08-10
Moritz Muehlenhoff (jmm debian org)

[SECURITY] [DSA 3935-1] postgresql-9.4 security update 2017-08-10
Moritz Muehlenhoff (jmm debian org)

[security bulletin] HPESB3P03762 rev.1 - HPE C Switch Software using Cisco Prime Data Center Network Manager (DCNM), Remote Code Execution 2017-08-10
security-alert hpe com

[ANN] Apache Struts: S2-049 Security Bulletin update 2017-08-10
Lukasz Lenart (lukaszlenart apache org)

[SECURITY] [DSA 3932-1] subversion security update 2017-08-10
Sebastien Delafond (seb debian org)

[SECURITY] [DSA 3933-1] pjproject security update 2017-08-10
Moritz Muehlenhoff (jmm debian org)

[SECURITY][ANNOUNCE] Apache Subversion 1.9.7 released 2017-08-10
Daniel Shahaf (danielsh apache org)

[SECURITY] [DSA 3929-1] libsoup2.4 security update 2017-08-10
Salvatore Bonaccorso (carnil debian org)

[slackware-security] curl (SSA:2017-221-01) 2017-08-09
Slackware Security Team (security slackware com)

[slackware-security] mozilla-firefox (SSA:2017-221-02) 2017-08-09
Slackware Security Team (security slackware com)

DefenseCode ThunderScan SAST Advisory: WordPress Easy Modal Plugin Multiple Security Vulnerabilities 2017-08-07
DefenseCode (defensecode defensecode com)

[SECURITY] [DSA 3927-1] linux security update 2017-08-07
Salvatore Bonaccorso (carnil debian org)

Malware

 

Phishing

Chase

10th August 2017

Account Validation

Hotmailoutlook

10th August 2017

HIGH SECURITY ALERT

Vulnerebility

Microsoft Edge CVE-2017-8670 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100070

Microsoft Edge CVE-2017-8674 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100081

Microsoft Edge CVE-2017-8671 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100071

Microsoft Edge CVE-2017-8672 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100072

Microsoft Edge CVE-2017-8656 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100033

Microsoft Edge CVE-2017-8655 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100027

Microsoft Edge CVE-2017-8657 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100035

Microsoft Edge CVE-2017-8659 Scripting Engine Information Disclosure Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100029

Microsoft Edge CVE-2017-8646 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100053

Microsoft Edge CVE-2017-8647 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100054

Microsoft Edge CVE-2017-8645 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100052

Microsoft Edge CVE-2017-8634 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100043

Microsoft Internet Explorer and Edge CVE-2017-8635 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100055

Microsoft Internet Explorer and Edge CVE-2017-0228 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/98164

Microsoft Edge CVE-2017-8638 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100049

Microsoft Edge CVE-2017-8637 Security Bypass Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100045

Microsoft Internet Explorer and Edge CVE-2017-8641 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100057

Microsoft Internet Explorer and Edge CVE-2017-8636 Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100056

Microsoft Edge CVE-2017-8640 Scripting Engine Remote Memory Corruption Vulnerability
2017-08-11
http://www.securityfocus.com/bid/100051

Microsoft Windows HTTP Protocol Stack CVE-2015-1635 Remote Code Execution Vulnerability
2017-08-10
http://www.securityfocus.com/bid/74013

Persistent Systems Radia Client Automation CVE-2015-1497 Remote Code Execution Vulnerability
2017-08-10
http://www.securityfocus.com/bid/72612

HP Client Automation Remote Code Execution and Stack Buffer Overflow Vulnerabilities
2017-08-10
http://www.securityfocus.com/bid/75966

Microsoft Windows Server Service RPC Handling Remote Code Execution Vulnerability
2017-08-10
http://www.securityfocus.com/bid/31874

Microsoft Internet Information Services CVE-2017-7269 Buffer Overflow Vulnerability
2017-08-10
http://www.securityfocus.com/bid/97127

Oracle Java SE CVE-2017-10081 Remote Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99853

Oracle Java SE and JRockit CVE-2017-10108 Remote Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99846

Oracle Java SE CVE-2017-10105 Remote Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99851

Oracle Java SE and JRockit CVE-2017-10053 Remote Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99842

Oracle Java SE CVE-2017-10125 Local Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99809

Oracle Java SE and JRockit CVE-2017-10243 Remote Security Vulnerability
2017-08-10
http://www.securityfocus.com/bid/99827

SANS News

Maldoc Analysis with ViperMonkey

Threatpost

Patched Flash Player Sandbox Escape Leaked Windows Credentials

Juniper Issues Security Alert Tied to Routers and Switches

High Schooler Nets $10,000 For Google Bug

Exploit

Microsoft Edge 38.14393.1066.0 - 'textarea.defaultValue' Memory Disclosure

GIF Collection 2.0 - SQL Injection

ImageBay 1.0 - SQL Injection

WebFile Explorer 1.0 - Arbitrary File Download

10.8.2017

Bugtraq

[SECURITY] [DSA 3929-1] libsoup2.4 security update 2017-08-10
Salvatore Bonaccorso (carnil debian org)

[slackware-security] curl (SSA:2017-221-01) 2017-08-09
Slackware Security Team (security slackware com)

[slackware-security] mozilla-firefox (SSA:2017-221-02) 2017-08-09
Slackware Security Team (security slackware com)

DefenseCode ThunderScan SAST Advisory: WordPress Easy Modal Plugin Multiple Security Vulnerabilities 2017-08-07
DefenseCode (defensecode defensecode com)

[SECURITY] [DSA 3927-1] linux security update 2017-08-07
Salvatore Bonaccorso (carnil debian org)

Re: [oss-security] [CVE-2017-7533] kernel: inotify: a race between inotify_handle_event() and sys_rename() 2017-08-05
Brad Spengler (spender grsecurity net)

Malware

Backdoor.Weasel

Phishing

 

Vulnerebility

Drupal Better Field Descriptions Module Cross Site Scripting Vulnerability
2017-08-09
http://www.securityfocus.com/bid/100238

Apache Storm CVE-2017-9799 Remote Code Execution Vulnerability
2017-08-09
http://www.securityfocus.com/bid/100235

Oracle Hospitality Applications CVE-2017-10064 Remote Security Vulnerability
2017-08-09
http://www.securityfocus.com/bid/100229

Microsoft Internet Explorer and Edge CVE-2017-8635 Remote Memory Corruption Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100055

Microsoft Windows Remote Desktop Protocol CVE-2017-8673 Denial of Service Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100079

Microsoft Office SharePoint CVE-2017-8654 Cross Site Scripting Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100064

Red Hat CloudForms Management Engine CVE-2017-7530 Privilege Escalation Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100151

Red Hat CloudForms Management Engine CVE-2017-2664 Privilege Escalation Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100148

Mozilla Firefox CVE-2017-7791 Security Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100240

OpenStack Neutron CVE-2017-7543 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100237

Mozilla Firefox and Firefox ESR Multiple Security Bypass Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100234

Google Android Framework CVE-2017-0712 Privilege Escalation Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100220

Google Android Broadcom Components CVE-2017-0740 Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100217

Google Android Kernel Components Multiple Privilege Escalation Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100215

IBM Maximo Asset Management CVE-2017-1357 Security Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100214

OSIsoft PI Integrator ICSA-17-220-01 Privilege Escalation and Cross Site Scripting Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100212

Fortinet FortiOS CVE-2017-3130 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100211

Google Android Drivers Multiple Security Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100210

Moxa SoftNVR-IA Live Viewer CVE-2017-5170 DLL Loading Local Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100208

SAP SRM Multiple Unspecified Security Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100207

Mozilla Firefox and Firefox ESR Multiple Buffer Overflow Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100206

Fortinet Fortiweb CVE-2017-7737 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100205

Google Android Media Framework Multiple Security Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100204

Mozilla Firefox and Firefox ESR CVE-2017-7809 Use After Free Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100203

Mozilla Firefox and Firefox ESR Multiple Use After Free Remote Code Execution Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100202

Mozilla Firefox CVE-2017-7779 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100201

Mozilla Firefox CVE-2017-7780 Multiple Memory Corruption Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100199

Mozilla Firefox CVE-2017-7798 XUL Injection Arbitrary Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100198

Mozilla Firefox CVE-2017-7801 Use After Free Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100197

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100196

SANS News

 

Threatpost

SAP Patch Tuesday Update Resolves 19 Flaws, Three High Severity

Mystery Company Offers $250,000 Bounty for VM Escape Vulnerabilities

Signed Mughthesec Adware Hijacking Macs for Profit

Mozilla Fixes 29 Vulnerabilities in Firefox, Makes Flash Click-To-Activate

Exploit

DALIM SOFTWARE ES Core 5.0 build 7184.1 - User Enumeration

DALIM SOFTWARE ES Core 5.0 build 7184.1 - Cross-Site Scripting / Cross-Site Request

DALIM SOFTWARE ES Core 5.0 build 7184.1 - Directory Traversal

DALIM SOFTWARE ES Core 5.0 build 7184.1 - Server-Side Request Forgery

WebFile Explorer 1.0 - Arbitrary File Download

9.8.2017

Bugtraq

 

Malware

 

Phishing

Bank of America

9th August 2017

Re: Account Updated

service@intI.paypaI.com

9th August 2017

REMINDER : YOUR PURCHASE
INVOICE HAS BEEN ISSUED -REF
#5YJ60743M46734507

Vulnerebility

 

SANS News

How are people fooled by this? Email to sign a contract provides malware instead.

Threatpost

Updates to Sofacy, Turla Highlight 2017 Q2 APT Activity

Engineering Firm Leaks Sensitive Data on Dell, SBC and Oracle

Flash Player Marches Toward End, Patches Two Code Execution Bugs in Latest Update

Exploit

Microsoft Windows 8.1 (x64) - RGNOBJ Integer Overflow (MS16-098) (2)

Microsoft Windows 7 SP1 x86 - GDI Palette Objects Local Privilege Escalation...

8.8.2017

Bugtraq

DefenseCode ThunderScan SAST Advisory: WordPress Easy Modal Plugin Multiple Security Vulnerabilities 2017-08-07
DefenseCode (defensecode defensecode com)

[SECURITY] [DSA 3927-1] linux security update 2017-08-07
Salvatore Bonaccorso (carnil debian org)

Re: [oss-security] [CVE-2017-7533] kernel: inotify: a race between inotify_handle_event() and sys_rename() 2017-08-05
Brad Spengler (spender grsecurity net)

[SECURITY] [DSA 3926-1] chromium-browser security update 2017-08-04
Michael Gilbert (mgilbert debian org)

[SECURITY] [DSA 3925-1] qemu security update 2017-08-04
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

 

Vulnerebility

Microsoft Windows Remote Desktop Protocol CVE-2017-8673 Denial of Service Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100079

Microsoft Office SharePoint CVE-2017-8654 Cross Site Scripting Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100064

Red Hat CloudForms Management Engine CVE-2017-7530 Privilege Escalation Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100151

Red Hat CloudForms Management Engine CVE-2017-2664 Privilege Escalation Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100148

Mozilla Firefox CVE-2017-7800 Use After Free Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100196

Adobe Experience Manager CVE-2017-3108 Arbitrary Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100195

Adobe Digital Editions CVE-2017-11274 Unspecified Buffer Overflow Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100194

Adobe Digital Editions CVE-2017-11272 XML Entity Parsing Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100193

Adobe Experience Manager CVE-2017-3110 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100192

Adobe Flash Player CVE-2017-3085 Unspecified Security Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100191

Adobe Flash Player CVE-2017-3106 Type Confusion Remote Code Execution Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100190

Adobe Acrobat and Reader CVE-2017-3118 Security Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100189

Adobe Experience Manager CVE-2017-3107 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100188

Adobe Acrobat and Reader CVE-2017-3115 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100187

Adobe Acrobat and Reader CVE-2017-11229 Unspecified Security Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100186

Adobe Acrobat and Reader CVE-2017-11232 Information Disclosure Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100185

Adobe Acrobat and Reader APSB17-24 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100184

Adobe Acrobat and Reader APSB17-24 Use-After-Free Multiple Remote Code Execution Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100182

Adobe Acrobat and Reader Type Confusion APSB17-24 Multiple Remote Code Execution Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100181

Adobe Acrobat and Reader APSB17-24 Multiple Heap Buffer Overflow Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100180

Adobe Acrobat and Reader APSB17-24 Multiple Unspecified Memory Corruption Vulnerabilities
2017-08-08
http://www.securityfocus.com/bid/100179

SAP Netweaver ABAP Workbench Tools Authorization Bypass Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100178

SAP NetWeaver K.M. Web Page Composer URI Redirection Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100177

SAP NetWeaver Business Unspecified Cross Site Scripting Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100176

SAP NetWeaver UUID Generation Security Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100175

SAP BusinessObjects Cross-Site Ajax Request Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100174

SAP Adobe Document Services Unspecified Denial of Service Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100173

SAP NetWeaver Logon Application URI Redirection Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100172

Multiple SAP Sybase Products Unspecified Cross Site Request Forgery Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100171

SAP NetWeaver Visual Composer Remote Code Injection Vulnerability
2017-08-08
http://www.securityfocus.com/bid/100170

SANS News

Increase of phpMyAdmin scans

Microsoft Patch Tuesday August 2017

Threatpost

Tech Support Scammers Cast a Wider Net

Lawsuit Alleges Disney Illegally Tracks Children Via Apps

Marcus Hutchins’ Only Certainty is Uncertainty

Exploit

WordPress Plugin Easy Modal 2.0.17 - SQL Injection

Microsoft Windows 7 SP1 x86 - GDI Palette Objects Local Privilege Escalation...

Synology Photo Station 6.7.3-3432 / 6.3-2967 - Remote Code Execution

WildMIDI 0.4.2 - Multiple Vulnerabilities

7.8.2017

Bugtraq

DefenseCode ThunderScan SAST Advisory: WordPress Easy Modal Plugin Multiple Security Vulnerabilities 2017-08-07
DefenseCode (defensecode defensecode com)

[SECURITY] [DSA 3927-1] linux security update 2017-08-07
Salvatore Bonaccorso (carnil debian org)

Re: [oss-security] [CVE-2017-7533] kernel: inotify: a race between inotify_handle_event() and sys_rename() 2017-08-05
Brad Spengler (spender grsecurity net)

[SECURITY] [DSA 3926-1] chromium-browser security update 2017-08-04
Michael Gilbert (mgilbert debian org)

[SECURITY] [DSA 3925-1] qemu security update 2017-08-04
Moritz Muehlenhoff (jmm debian org)

SEC Consult SA-20170804-1 :: Ubiquiti Networks UniFi Cloud Key authenticated command injection 2017-08-04
SEC Consult Vulnerability Lab (research sec-consult com)

SEC Consult SA-20170804-0 :: phpBB Server Side Request Forgery (SSRF) vulnerability 2017-08-04
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESB3P03767 rev.1 - HPE Proliant ML10 Gen9 servers using Intel Xeon E3-1200M v5 and 6th Generation Intel Core Processors, Unauthorized Write to Filesystem 2017-08-04
security-alert hpe com

[SECURITY] [DSA 3924-1] varnish security update 2017-08-02
Salvatore Bonaccorso (carnil debian org)

[slackware-security] gnupg (SSA:2017-213-01) 2017-08-02
Slackware Security Team (security slackware com)

CVE-2017-1500 - Relected XSS in IBM WorkLight OAuth Server Web Api 2017-08-02
gabriele gristina gmail com

[security bulletin] HPESBHF03763 rev.1 - HPE Comware 7, IMC, VCX products using OpenSSL, Remote Denial of Service (DoS) 2017-08-01
security-alert hpe com

[security bulletin] HPESBGN03766 rev.1 - HPE Project and Portfolio Management (PPM), Remote Cross-Site Scripting 2017-08-01
security-alert hpe com

Malware

 

Phishing

 

Vulnerebility

QEMU CVE-2017-11334 Out of Bounds Read and Write Denial of Service Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99895

QEMU CVE-2017-10806 Stack Buffer Overflow Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99475

QEMU CVE-2017-9524 Denial of Service Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99011

Linux Kernel CVE-2017-1000365 Local Security Bypass Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99156

Linux Kernel CVE-2017-7482 Local Buffer Overflow Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99299

Linux Kernel CVE-2017-10810 Denial of Service Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99433

Linux Kernel 'brcmf_cfg80211_mgmt_tx()' Function Local Memory Corruption Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99955

Linux Kernel CVE-2017-7346 Local Denial of Service Vulnerability
2017-08-07
http://www.securityfocus.com/bid/97257

Linux Kernel 'drivers/gpu/drm/vmwgfx/vmwgfx_surface.c' Local Information Disclosure Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99095

Xen 'blkif' Response Information Disclosure Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99162

Linux kernel CVE-2017-11176 Local Denial of Service Vulnerability
2017-08-07
http://www.securityfocus.com/bid/99919

Linux Kernel CVE-2017-7533 Local Race Condition Vulnerability
2017-08-07
http://www.securityfocus.com/bid/100123

Libexpat Expat CVE-2017-11742 DLL Loading Remote Code Execution Vulnerability
2017-08-07
http://www.securityfocus.com/bid/100147

Oracle Java SE CVE-2013-0425 Remote Java Runtime Environment Vulnerability
2017-08-04
http://www.securityfocus.com/bid/57709

Microsoft Windows LNK CVE-2017-8464 Remote Code Execution Vulnerability
2017-08-04
http://www.securityfocus.com/bid/98818

Apache HTTP Server CVE-2017-3169 Denial of Service Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99134

Apache HTTP Server CVE-2017-7679 Buffer Overflow Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99170

Apache HTTP Server CVE-2017-3167 Authentication Bypass Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99135

Apache HTTP Server CVE-2017-7668 Denial of Service Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99137

ImageMagick CVE-2017-12428 Denial of Service Vulnerability
2017-08-04
http://www.securityfocus.com/bid/100145

Eaton ELCSoft Programming Software Multiple Buffer Overflow Vulnerabilities
2017-08-04
http://www.securityfocus.com/bid/100144

MantisBT CVE-2017-12419 Arbitrary File Read Vulnerability
2017-08-04
http://www.securityfocus.com/bid/100142

Kakadu SDK CVE-2017-2811 Buffer Overflow Vulnerability
2017-08-04
http://www.securityfocus.com/bid/100141

Kakadu SDK CVE-2017-2812 Buffer Overflow Vulnerability
2017-08-04
http://www.securityfocus.com/bid/100140

Continental AG Infineon S-Gold 2 Remote Code Execution and Stack Buffer Overflow Vulnerabilities
2017-08-04
http://www.securityfocus.com/bid/100132

Oracle Java SE CVE-2013-0419 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57714

Oracle Java SE CVE-2012-5075 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56081

Apache FOP CVE-2017-5661 XML External Entity Information Disclosure Vulnerability
2017-08-03
http://www.securityfocus.com/bid/97947

Google Android Broadcom components Multiple Security Vulnerabilities
2017-08-03
http://www.securityfocus.com/bid/99482

Oracle Java SE CVE-2013-0432 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57727

SANS News

Increase of phpMyAdmin scans

Threatpost

 

Exploit

 

6.8.2017

Bugtraq

 

Malware

 

Phishing

 

Vulnerebility

 

SANS News

Use of the Open Graph Protocol to Disguise Malicious Facebook Links

Threatpost

Tor Developer Busts Myths, Announces New Features

Exploits Available for Siemens Molecular Imaging Vulnerabilities

Attackers Use Typo-Squatting To Steal npm Credentials

Exploit

Microsoft Windows - LNK Shortcut File Code Execution

Linux x86 - /bin/sh Shellcode (24 bytes)

4.8.2017

Bugtraq

SEC Consult SA-20170804-1 :: Ubiquiti Networks UniFi Cloud Key authenticated command injection 2017-08-04
SEC Consult Vulnerability Lab (research sec-consult com)

SEC Consult SA-20170804-0 :: phpBB Server Side Request Forgery (SSRF) vulnerability 2017-08-04
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESB3P03767 rev.1 - HPE Proliant ML10 Gen9 servers using Intel Xeon E3-1200M v5 and 6th Generation Intel Core Processors, Unauthorized Write to Filesystem 2017-08-04
security-alert hpe com

[SECURITY] [DSA 3924-1] varnish security update 2017-08-02
Salvatore Bonaccorso (carnil debian org)

[slackware-security] gnupg (SSA:2017-213-01) 2017-08-02
Slackware Security Team (security slackware com)

Malware

 

Phishing

 

Vulnerebility

Oracle Java SE CVE-2013-0425 Remote Java Runtime Environment Vulnerability
2017-08-04
http://www.securityfocus.com/bid/57709

Microsoft Windows LNK CVE-2017-8464 Remote Code Execution Vulnerability
2017-08-04
http://www.securityfocus.com/bid/98818

Apache HTTP Server CVE-2017-3169 Denial of Service Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99134

Apache HTTP Server CVE-2017-7679 Buffer Overflow Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99170

Apache HTTP Server CVE-2017-3167 Authentication Bypass Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99135

Apache HTTP Server CVE-2017-7668 Denial of Service Vulnerability
2017-08-04
http://www.securityfocus.com/bid/99137

Oracle Java SE CVE-2013-0419 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57714

Oracle Java SE CVE-2012-5075 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56081

Apache FOP CVE-2017-5661 XML External Entity Information Disclosure Vulnerability
2017-08-03
http://www.securityfocus.com/bid/97947

Google Android Broadcom components Multiple Security Vulnerabilities
2017-08-03
http://www.securityfocus.com/bid/99482

Oracle Java SE CVE-2013-0432 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57727

Oracle Java SE CVE-2013-0430 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57722

Oracle Java SE CVE-2012-1721 Remote Code Execution Vulnerability
2017-08-03
http://www.securityfocus.com/bid/53959

Oracle Java SE CVE-2012-0497 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/52009

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-08-03
http://www.securityfocus.com/bid/96421

Linux Kernel CVE-2017-7187 Local Denial of Service Vulnerability
2017-08-03
http://www.securityfocus.com/bid/96989

Oracle Java SE CVE-2011-3552 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/50248

Oracle Java SE CVE-2012-0504 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/52020

Oracle Java SE CVE-2013-0429 Remote Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57710

Oracle Java SE CVE-2013-0426 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57711

Oracle Java SE CVE-2013-0423 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57716

Oracle Java SE CVE-2013-0427 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57724

Oracle Java SE CVE-2013-0428 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57713

Oracle Java SE CVE-2013-0424 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57715

Oracle Java SE CVE-2013-0409 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57728

Oracle Java SE CVE-2012-5085 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56067

Oracle Java SE CVE-2012-5084 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56063

Oracle Java SE CVE-2013-0351 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57720

Google Web Toolkit CVE-2012-5920 Cross Site Scripting Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57538

Oracle Java SE CVE-2012-5086 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56039

SANS News

 

Threatpost

Two Popular IP Cameras Riddled With Vulnerabilities

Cisco Fixes DoS, Authentication Bypass Vulnerabilities, OSPF Bug

Exploit

 

3.8.2017

Bugtraq

 

Malware

W32.Emotet.B

Phishing

 

Vulnerebility

Apache FOP CVE-2017-5661 XML External Entity Information Disclosure Vulnerability
2017-08-03
http://www.securityfocus.com/bid/97947

Google Android Broadcom components Multiple Security Vulnerabilities
2017-08-03
http://www.securityfocus.com/bid/99482

Oracle Java SE CVE-2013-0432 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57727

Oracle Java SE CVE-2013-0430 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57722

Oracle Java SE CVE-2012-1721 Remote Code Execution Vulnerability
2017-08-03
http://www.securityfocus.com/bid/53959

Oracle Java SE CVE-2012-0497 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/52009

Linux Kernel CVE-2017-6214 Remote Denial of Service Vulnerability
2017-08-03
http://www.securityfocus.com/bid/96421

Linux Kernel CVE-2017-7187 Local Denial of Service Vulnerability
2017-08-03
http://www.securityfocus.com/bid/96989

Oracle Java SE CVE-2011-3552 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/50248

Oracle Java SE CVE-2012-0504 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/52020

Oracle Java SE CVE-2013-0429 Remote Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57710

Oracle Java SE CVE-2013-0426 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57711

Oracle Java SE CVE-2013-0423 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57716

Oracle Java SE CVE-2013-0427 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57724

Oracle Java SE CVE-2013-0428 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57713

Oracle Java SE CVE-2013-0424 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57715

Oracle Java SE CVE-2013-0409 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57728

Oracle Java SE CVE-2012-5085 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56067

Oracle Java SE CVE-2012-5084 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56063

Oracle Java SE CVE-2013-0351 Java Runtime Environment Remote Security Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57720

Google Web Toolkit CVE-2012-5920 Cross Site Scripting Vulnerability
2017-08-03
http://www.securityfocus.com/bid/57538

Oracle Java SE CVE-2012-5086 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56039

Oracle Java SE CVE-2012-5083 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56025

Oracle Java SE CVE-2012-5089 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56059

Oracle Java SE CVE-2012-5079 Remote Security Bypass Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56082

Oracle Java Runtime Environment Remote Code Execution Vulnerability
2017-08-03
http://www.securityfocus.com/bid/55213

Oracle Java SE CVE-2012-5072 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56083

Oracle Java SE CVE-2012-5069 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56065

Oracle Java SE CVE-2012-5081 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56071

Oracle Java SE CVE-2012-5077 Remote Java Runtime Environment Vulnerability
2017-08-03
http://www.securityfocus.com/bid/56058

SANS News

Using a Raspberry Pi honeypot to contribute data to DShield/ISC

Threatpost

IBM Patches Reflected XSS in Worklight, MobileFirst

Exploit

Solarwinds Kiwi Syslog 9.6.1.6 - Denial of Service

Premium Servers List Tracker 1.0 - SQL Injection

EDUMOD Pro 1.3 - SQL Injection

Muviko 1.0 - 'q' Parameter SQL Injection

VirtualBox 5.1.22 - Windows Process DLL Signature Bypass Privilege Escalation

VirtualBox 5.1.22 - Windows Process DLL UNC Path Signature Bypass Privilege...

2.8.2017

Bugtraq

[slackware-security] gnupg (SSA:2017-213-01) 2017-08-02
Slackware Security Team (security slackware com)

CVE-2017-1500 - Relected XSS in IBM WorkLight OAuth Server Web Api 2017-08-02
gabriele gristina gmail com

[security bulletin] HPESBHF03763 rev.1 - HPE Comware 7, IMC, VCX products using OpenSSL, Remote Denial of Service (DoS) 2017-08-01
security-alert hpe com

[security bulletin] HPESBGN03766 rev.1 - HPE Project and Portfolio Management (PPM), Remote Cross-Site Scripting 2017-08-01
security-alert hpe com

[CVE-2017-11494] SOL.Connect ISET-mpp meter 1.2.4.2 Authentication Bypass SQL Injection Vulnerability 2017-08-01
andys3c gmail com

[SECURITY] [DSA 3923-1] freerdp security update 2017-08-01
Sebastien Delafond (seb debian org)

FortiOS <= 5.6.0 Multiple XSS Vulnerabilities 2017-07-28
msg patrykbogdan com

Malware

 

Phishing

Apple Purchase

1st August 2017

If you did not make this
purchase.

National

31st July 2017

Notification : Update your
account to get back to
watching.

Vulnerebility

Pivotal RabbitMQ Products CVE-2016-9877 Authentication Bypass Vulnerability
2017-08-02
http://www.securityfocus.com/bid/95065

Apache ActiveMQ Artemis CVE-2016-4978 Remote Code Execution Vulnerability
2017-08-02
http://www.securityfocus.com/bid/93142

FasterXML Jackson-databind CVE-2017-7525 Deserialization Remote Code Execution Vulnerability
2017-08-02
http://www.securityfocus.com/bid/99623

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98731

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98562

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98586

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98577

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98597

Linux Kernel CVE-2017-9150 Local Information Disclosure Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98635

Linux Kernel CVE-2017-7618 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97534

Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97308

Linux kernel CVE-2017-2671 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97407

Linux kernel 'net/ipx/af_ipx.c' Use After Free Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98439

Linux Kernel CVE-2017-7616 Multiple Local Information Disclosure Vulnerabilities
2017-08-01
http://www.securityfocus.com/bid/97527

Linux Kernel CVE-2017-7346 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97257

Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97177

Linux Kernel CVE-2017-7184 Local Privilege Escalation Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97018

Linux kernel CVE-2017-7308 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97234

Linux Kernel CVE-2017-7261 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97096

Linux kernel 'ip_sockglue.c' Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96233

Linux kernel CVE-2017-6345 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96510

Linux Kernel CVE-2017-6347 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96487

Linux kernel CVE-2017-6346 Use After Free Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96508

Linux Kernel CVE-2017-6353 Incomplete Fix Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96473

Linux Kernel CVE-2017-2636 Local Privilege Escalation Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96732

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98583

Linux Kernel Multiple Local Memory Corruption Vulnerabilities
2017-08-01
http://www.securityfocus.com/bid/91451

Linux Kernel CVE-2017-2584 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95430

Linux Kernel CVE-2017-2596 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95878

Linux Kernel CVE-2016-9191 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/94129

SANS News

Attacking NoSQL applications (part 2)

Threatpost

Amazon Halts Sale of Android Blu Phone Amid Spyware Concerns

Legislation Proposed to Secure Connected IoT Devices

Exploit

iOS/macOS - xpc_data Objects Sandbox Escape Privelege Escalation

SOL.Connect ISET-mpp meter 1.2.4.2 - SQL Injection

Entrepreneur B2B Script - 'pid' Parameter SQL Injection

Joomla! Component SIMGenealogy 2.1.5 - SQL Injection

Joomla! Component PHP-Bridge 1.2.3 - SQL Injection

Joomla! Component LMS King Professional 3.2.4.0 - SQL Injection

Joomla! Component Event Registration Pro Calendar 4.1.3 - SQL Injection

Joomla! Component Ultimate Property Listing 1.0.2 - SQL Injection

Advantech SUSIAccess <= 3.0 - Directory Traversal / Information Disclosure...

1.8.2017

Bugtraq

[CVE-2017-11494] SOL.Connect ISET-mpp meter 1.2.4.2 Authentication Bypass SQL Injection Vulnerability 2017-08-01
andys3c gmail com

[SECURITY] [DSA 3923-1] freerdp security update 2017-08-01
Sebastien Delafond (seb debian org)

FortiOS <= 5.6.0 Multiple XSS Vulnerabilities 2017-07-28
msg patrykbogdan com

[security bulletin] HPESBHF03765 rev.1 - HPE ConvergedSystem 700 Solution with Comware v7 Switches using OpenSSL, Remote Denial of Service (DoS) and Disclosure of Sensitive Information 2017-07-26
HPE Product Security Response Team (security-alert hpe com)

[SECURITY] [DSA 3919-1] openjdk-8 security update 2017-07-25
Moritz Muehlenhoff (jmm debian org)

Malware

 

Phishing

National

31st July 2017

Notification : Update your
account to get back to
watching.

Vulnerebility

Linux kernel CVE-2017-9242 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98731

Linux Kernel CVE-2017-8890 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98562

Linux kernel CVE-2017-9076 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98586

Linux kernel CVE-2017-9074 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98577

Linux kernel CVE-2017-9075 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98597

Linux Kernel CVE-2017-9150 Local Information Disclosure Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98635

Linux Kernel CVE-2017-7618 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97534

Linux Kernel CVE-2017-7374 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97308

Linux kernel CVE-2017-2671 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97407

Linux kernel 'net/ipx/af_ipx.c' Use After Free Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98439

Linux Kernel CVE-2017-7616 Multiple Local Information Disclosure Vulnerabilities
2017-08-01
http://www.securityfocus.com/bid/97527

Linux Kernel CVE-2017-7346 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97257

Linux Kernel CVE-2017-7294 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97177

Linux Kernel CVE-2017-7184 Local Privilege Escalation Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97018

Linux kernel CVE-2017-7308 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97234

Linux Kernel CVE-2017-7261 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/97096

Linux kernel 'ip_sockglue.c' Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96233

Linux kernel CVE-2017-6345 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96510

Linux Kernel CVE-2017-6347 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96487

Linux kernel CVE-2017-6346 Use After Free Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96508

Linux Kernel CVE-2017-6353 Incomplete Fix Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96473

Linux Kernel CVE-2017-2636 Local Privilege Escalation Vulnerability
2017-08-01
http://www.securityfocus.com/bid/96732

Linux kernel CVE-2017-9077 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/98583

Linux Kernel Multiple Local Memory Corruption Vulnerabilities
2017-08-01
http://www.securityfocus.com/bid/91451

Linux Kernel CVE-2017-2584 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95430

Linux Kernel CVE-2017-2596 Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95878

Linux Kernel CVE-2016-9191 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/94129

Linux Kernel CVE-2016-2117 Remote Buffer Overflow Vulnerability
2017-08-01
http://www.securityfocus.com/bid/84500

Linux Kernel CVE-2017-5551 Local Denial of Service Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95717

Linux Kernel CVE-2017-5577 Remote Buffer Overflow Vulnerability
2017-08-01
http://www.securityfocus.com/bid/95765

SANS News

Rooting Out Hosts that Support Older Samba Versions

Threatpost

Android Banking Trojan Svpeng Adds Keylogger

ShieldFS Can Detect Ransomware, Recover Files

Exploit

Advantech SUSIAccess <= 3.0 - Directory Traversal / Information Disclosure...

Advantech SUSIAccess <= 3.0 - 'RecoveryMgmt' File Upload

DivFix++ 0.34 - Denial of Service

Vorbis Tools oggenc 1.4.0 - '.wav' Denial of Service

Sound eXchange (SoX) 14.4.2 - Multiple Vulnerabilities

libvorbis 1.3.5 - Multiple Vulnerabilities

libao 1.2.0 - Denial of Service