Databáze Hot News 2017 February - 2017 January February March April May June July August September October November December


28.2.2017

Bugtraq

Advisory X41-2017-001: Multiple Vulnerabilities in X.org 2017-02-28
X41 D-Sec GmbH Advisories (advisories x41-dsec de)

[SECURITY] [DSA 3788-2] tomcat8 regression update 2017-02-22
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPESBHF03709 rev.1 - HPE Network products including Comware, IMC, and VCX running OpenSSL, Remote Denial of Service (DoS), Disclosure of Sensitive Information 2017-02-21
security-alert hpe com

APPLE-SA-2017-02-21-2 Logic Pro X 10.3.1 2017-02-21
Apple Product Security (product-security-noreply lists apple com)

PDFMate PDF Converter Pro 1.7.5.0 - Buffer Overflow Vulnerability 2017-02-20
Vulnerability Lab (research vulnerability-lab com)

[SECURITY] [DSA 3790-1] spice security update 2017-02-16
Salvatore Bonaccorso (carnil debian org)

Malware

Ransom:Win64/Braincrypt.A
HackTool:Win32/Vigorf.A

Trojan:DOS/Vigorf.A

Trojan:SWF/Vigorf.A

Trojan:MSIL/Vigorf.A

Ransom:Win32/Pulobe.A

Phishing

Capital One

28th February 2017

Capital One: Update Your
Account

CHASE BANK

28th February 2017

Verify Your Chase Account
Information

Economic and Financial Crimes

27th February 2017

Dear Victim

AOL

27th February 2017

An individual has already
marked your current personal
profile

Vulnerebility

Linux kernel 'ip_sockglue.c' Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96233

gtk-vnc Remote Code Execution Vulnerability and Multiple Integer Overflow Vulnerabilities
2017-02-28
http://www.securityfocus.com/bid/96016

SOGo Multiple Information Disclosure Vulnerabilities
2017-02-28
http://www.securityfocus.com/bid/96338

Apache Tomcat 'http11/AbstractInputBuffer.java' Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96293

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/93841

Mozilla Firefox CVE-2017-5373 Multiple Unspecified Memory Corruption Vulnerabilities
2017-02-28
http://www.securityfocus.com/bid/95762

WebKit CVE-2016-7762 Cross Site Scripting Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96337

Mozilla Firefox Multiple Security Vulnerabilities
2017-02-28
http://www.securityfocus.com/bid/95769

Mozilla Firefox CVE-2017-5376 Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/95758

Mozilla Firefox CVE-2017-5375 ASLR and DEP Security Bypass Vulnerability
2017-02-28
http://www.securityfocus.com/bid/95757

Apple macOS CVE-2016-7761 Local Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96336

Microsoft Windows CVE-2017-0038 Incomplete Fix Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96023

Microsoft Windows Graphic Component CVE-2016-3219 Local Privilege Escalation Vulnerability
2017-02-28
http://www.securityfocus.com/bid/91085

Microsoft Windows Graphics Component CVE-2016-3216 Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/91084

Webkit CVE-2017-2371 Security Bypass Vulnerability
2017-02-28
http://www.securityfocus.com/bid/95735

GNU glibc 'misc/hsearch_r.c' Integer Overflow Vulnerability
2017-02-28
http://www.securityfocus.com/bid/83275

GNU glibc 'strftime()' Function Memory Corruption Vulnerability
2017-02-28
http://www.securityfocus.com/bid/83277

Apple iOS CVE-2016-7759 Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96335

Apple macOS CVE-2016-7742 Arbitray Code Execution Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96331

Apple iOS/macOS CVE-2016-7667 Denial of Service Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96333

Apple iOS/macOS/watchOS CVE-2016-7714 Local Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96334

Apple macOS CVE-2016-4780 Arbitray Code Execution Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96332

Apple iOS CVE-2016-7630 Security Bypass Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96330

Multiple F5 BIG-IP Products CVE-2016-6249 Information Disclosure Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96328

TCPDF CVE-2017-6100 Local File Include Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96326

MuPDF 'jstest_main.c' Stack Buffer Overflow Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96266

IBM Rational DOORS Next Generation CVE-2016-6055 Unspecified Cross Site Scripting Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96327

Apache Camel CVE-2017-3159 Remote Code Execution Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96321

BusyBox 'udhcp/domain_codec.c' Integer Overflow Vulnerability
2017-02-28
http://www.securityfocus.com/bid/96325

SANS News

My Catch Of 4 Months In The Amazon IP Address Space

Threatpost

Google Discloses Another ‘High Severity’ Microsoft Bug

Boeing Notifies 36,000 Employees Following Breach

Torvalds Downplays SHA-1 Threat to Git

Exploit

MVPower DVR TV-7104HE 1.8.4 115215B9 - Shell Unauthenticated Command Execution...

NETGEAR DGN2200v1/v2/v3/v4 - 'dnslookup.cgi' Remote Command Execution

27.2.2017

Bugtraq

 

Malware

 

Phishing

Congratulation s

27th February 2017

You've won Steve Scott. Please
confirm receipt

KohlsGiftCards

26th February 2017

Hi (Customer ID: birdwell269)
$50_KOHLs-Gift-card expires
soon, ClaimNow

PayPal Service

26th February 2017

You just need to confirm your
billing address.

Microsoft

25th February 2017

You have unread SECURITY
message

Vulnerebility

2017-0037
2017-2682
2017-2683
2017-5925
2017-5926
2017-5927
2017-5928
2017-5946
2017-6297
2017-6341
2017-6342
2017-6343
2017-6344
2017-6349
2017-6350
2017-6127
2017-6188

SANS News

Dynamite Phishing

Threatpost

Necurs Botnet Learns New DDoS Trick

Google Releases E2EMail to Open Source

Katie Moussouris on Bug Bounty Programs, Hack the Army, and Wassenaar

Exploit

MVPower DVR TV-7104HE 1.8.4 115215B9 - Shell Unauthenticated Command Execution...

Windows x86 - Executable Directory Search Shellcode (130 bytes)

Joomla! Component Gnosis 1.1.2 - 'id' Parameter SQL Injection

Joomla! Component Appointments for JomSocial 3.8.1 - SQL Injection

Joomla! Component My MSG 3.2.1 - SQL Injection

Joomla! Component Spinner 360 1.3.0 - SQL Injection

Joomla! Component JomSocial - SQL Injection

NETGEAR DGN2200v1/v2/v3/v4 - 'dnslookup.cgi' Remote Command Execution

Trend Micro InterScan Messaging Security (Virtual Appliance) - Remote Code...

Grails PDF Plugin 0.6 - XML External Entity Injection

Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free Privilege Escalation

Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free PoC

 

26.2.2017

Bugtraq

 

Malware

 

Phishing

KohlsGiftCards

24th February 2017

Hi (Customer ID: birdwell269)
$50_KOHLs-Gift-card expires
soon, ClaimNow

Lidl

24th February 2017

AT LIDL LUCKY CUSTOMERS LIKE
YOU CAN GET A CASH BACK

Apple ID

24th February 2017

Your Apple ID information has
been updated.

Mrs.Helen Smith Shabangu

24th February 2017

PICK UP YOUR FIRST PAYMENT OF
$4,500 USD IN MONEY GRAM

Vulnerebility

2016-2226
2016-4041
2016-4042
2016-4043
2016-4487
2016-4488
2016-4489
2016-4490
2016-4491
2016-4492
2016-4493
2016-5027
2016-8998
2016-9009
2016-9975
2017-2789
2017-2790
2017-2791
2017-5669
2016-10109

SANS News

Unpatched Microsoft Edge and IE Bug

It is Tax Season - Watch out for Suspicious Attachment

Threatpost

Researchers Uncover New Leads Behind Shamoon2

Exploit

Joomla! Component JooDatabase 3.1.0 - SQL Injection

Joomla! Component JO Facebook Gallery 4.5 - SQL Injection

Joomla! Component Intranet Attendance Track 2.6.5 - SQL Injection

24.2.2017

Bugtraq

 

Malware

Trojan.Bachosens

Phishing

Apple ID

24th February 2017

Your Apple ID information has
been updated.

Mrs.Helen Smith Shabangu

24th February 2017

PICK UP YOUR FIRST PAYMENT OF
$4,500 USD IN MONEY GRAM

Microsoft

23rd February 2017

Alert Notice

Support PayPal

23rd February 2017

You sent a payment of
$1,324.74 USD to Ebay

Vulnerebility

2014-4677
2016-1245
2016-3013
2016-3052
2016-8536
2016-8537
2016-8538
2016-8539
2016-8540
2016-8541
2016-8542
2016-8543
2016-8544
2016-8545
2016-8546
2016-8547
2016-8548
2016-8549
2016-8550
2016-8551
2016-8552
2016-8553
2016-8554
2016-8555
2016-8556
2016-8557
2016-8558
2016-8559
2016-8560
2016-8636
2016-8915
2016-8986
2016-9377
2016-9378
2016-9384
2016-9400
2016-9909
2016-9910
2016-9956
2017-5585
2017-5586
2017-6077
2017-6187
2017-6188
2017-6205
2017-6206
2012-0158
2014-1903
2015-1158
2016-0189
2016-1247
2016-9244
2016-9553
2016-9554
2016-9683
2016-9684
2017-2370
2017-6074
2017-6127

SANS News

Cloudflare data leak...what does it mean to me?

Threatpost

Java, Python FTP Injection Attacks Bypass Firewalls

Impact of New Linux Kernel DCCP Vulnerability Limited

Policy Experts Push To Make Vulnerability Equities Process Law

Exploit

Microsoft Edge and Internet Explorer - 'HandleColumnBreakOnColumnSpanningElement'...

Apple WebKit 10.0.2 - 'FrameLoader::clear' Universal Cross-Site Scripting

Apple WebKit 10.0.2 - Cross-Origin or Sandboxed IFRAME Pop-up Blocker Bypass

Apple WebKit 10.0.2 - 'Frame::setDocument' Universal Cross-Site Scripting

macOS HelpViewer 10.12.1 - XSS Leads to Arbitrary File Execution and Arbitrary File...

WordPress Plugin Mail Masta 1.0 - SQL Injection

Joomla! Component Store for K2 3.8.2 - SQL Injection

Joomla! Component UserExtranet 1.3.1 - SQL Injection

Joomla! Component MultiTier 3.1 - SQL Injection

23.2.2017

Bugtraq

 

Malware

Trojan:Win32/Chuckenit.A

Ransom.Trashi

OSX.Ransom

Trojan.Bachosens

Phishing

Chase

22nd February 2017

|CHASE BANK| IMPORTANT
NOTlFlCATlON!

Customer Support

22nd February 2017

Secure your rgwalker99@aol.com
mail account.

PayPal

22nd February 2017

PAYPAL : YOUR ACCOUNT HAS BEEN
LIMITED UNTIL WE HEAR FROM YOU

Vulnerebility

 

SANS News

Practical collision attack against SHA-1

Threatpost

Criminals Monetizing Attacks Against Unpatched WordPress Sites

Publicly Disclosed Windows Vulnerabilities Await Patches

Java, Python FTP Injection Attacks Bypass Firewalls

Exploit

Google Chrome - 'layout' Out-of-Bounds Read

Linux/x86-64 - Egghunter Shellcode (38 bytes)

Disk Savvy Enterprise 9.4.18 - Buffer Overflow (SEH)

WordPress Plugin Mail Masta 1.0 - SQL Injection

Joomla! Component Store for K2 3.8.2 - SQL Injection

Joomla! Component UserExtranet 1.3.1 - SQL Injection

Joomla! Component MultiTier 3.1 - SQL Injection

Shutter 0.93.1 - Code Execution

EasyCom For PHP 4.0.0 - Buffer Overflow (PoC)

EasyCom For PHP 4.0.0 - Denial of Service

22.2.2017

Bugtraq

 

Malware

Trojan.Redaman

Phishing

PayPal

22nd February 2017

PAYPAL : YOUR ACCOUNT HAS BEEN
LIMITED UNTIL WE HEAR FROM YOU

USAA Bank.

21st February 2017

USAA: SYSTEM SECURITY SERVICE.

AOL

21st February 2017

incoming friend request

Vulnerebility

2016-4613
2016-4617
2016-4660
2016-4661
2016-4662
2016-4663
2016-4664
2016-4665
2016-4666
2016-4667
2016-4669
2016-4670
2016-4671
2016-4673
2016-4674
2016-4675
2016-4677
2016-4678
2016-4679
2016-4680
2016-4681
2016-4682
2016-4683
2016-4685
2016-4686
2016-4688
2016-4689
2016-4690
2016-4691
2016-4692
2016-4693
2016-4721
2016-4743
2016-4764
2016-4780
2016-4781
2016-7577
2016-7578
2016-7579
2016-7580
2016-7581
2016-7582
2016-7583
2016-7584
2016-7586
2016-7587
2016-7588
2016-7589
2016-7591
2016-7592
2016-7594
2016-7595
2016-7596
2016-7597
2016-7598
2016-7599
2016-7600
2016-7601
2016-7602
2016-7603
2016-7604
2016-7605
2016-7606
2016-7607
2016-7608
2016-7609
2016-7610
2016-7611
2016-7612
2016-7613
2016-7614
2016-7615
2016-7616
2016-7617
2016-7618
2016-7619
2016-7620
2016-7621
2016-7622
2016-7623
2016-7624
2016-7625
2016-7626
2016-7627
2016-7628
2016-7629
2016-7630
2016-7632
2016-7633
2016-7634
2016-7635
2016-7636
2016-7637
2016-7638
2016-7639
2016-7640
2016-7641
2016-7642
2016-7643
2016-7644
2016-7645
2016-7646
2016-7648
2016-7649
2016-7650
2016-7651
2016-7652
2016-7653
2016-7654
2016-7655
2016-7656
2016-7657
2016-7658
2016-7659
2016-7660
2016-7661
2016-7662
2016-7663
2016-7664
2016-7665
2016-7666
2016-7667
2016-7714
2016-7742
2016-7759
2016-7761
2016-7762
2016-7765
2017-2350
2017-2351
2017-2352
2017-2353
2017-2354
2017-2355
2017-2356
2017-2357
2017-2358
2017-2359
2017-2360
2017-2361
2017-2362
2017-2363
2017-2364
2017-2365
2017-2366
2017-2368
2017-2369
2017-2370
2017-2371
2017-2372
2017-2373
2017-2374

SANS News

2 Apple Updates Today as Well - GarageBand and Logic Pro X

Microsoft Patch Tuesday, or is that "Patch Next Tuesday"? - Flash Player RCE patched today

Quick and dirty generic listener

Threatpost

OpenSSL Update Fixes High-Severity DoS Vulnerability

Data Stealing Malware TeamSpy Resurfaces in Spam Campaign

Google Upspin Secure File-Sharing Released to Open Source

Exploit

Joomla! Component ContentMap 1.3.8 - 'contentid' Parameter SQL Injection

Joomla! Component VehicleManager 3.9 - SQL Injection

Joomla! Component RealEstateManager 3.9 - SQL Injection

Joomla! Component BookLibrary 3.6.1 - SQL Injection

Joomla! Component MediaLibrary Basic 3.5 - SQL Injection

EasyCom For PHP 4.0.0 - Buffer Overflow (PoC)

EasyCom For PHP 4.0.0 - Denial of Service

Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Heap Corruption

Microsoft Office PowerPoint 2010 - MSO/OART Heap Out-of-Bounds Access

Microsoft Office PowerPoint 2010 GDI - 'GDI32!ConvertDxArray' Insufficient Bounds Check

Adobe Flash - MP4 AMF Parsing Overflow

Adobe Flash - SWF Stack Corruption

Adobe Flash - Use-After-Free in Applying Bitmap Filter

Adobe Flash - YUVPlane Decoding Heap Overflow

21.2.2017

Bugtraq

 

Malware

TrojanDownloader:Win32/Pockershecv.A

Phishing

 

Vulnerebility

2016-10227
2016-6249
2016-9269
2016-9314
2016-9315
2016-9316
2017-0038
2017-5881
2017-5959
2017-6070
2017-6071
2017-6072
2017-6078
2017-6095
2017-6096
2017-6097
2017-6098
2016-4613
2016-4660
2016-4661
2016-4662
2016-4663
2016-4664
2016-4665
2016-4666
2016-4667
2016-4669
2016-4670
2016-4671
2016-4673
2016-4674
2016-4675
2016-4677
2016-4678
2016-4679
2016-4680
2016-4681
2016-4682
2016-4683
2016-4685
2016-4686
2016-4688
2016-4689
2016-4690
2016-4691
2016-4692
2016-4693
2016-4721
2016-4743
2016-4764
2016-4781
2016-6252
2016-7577
2016-7578
2016-7579
2016-7580
2016-7581
2016-7582
2016-7583
2016-7584
2016-7586
2016-7587
2016-7588
2016-7589
2016-7591
2016-7592
2016-7594
2016-7595
2016-7596
2016-7597
2016-7598
2016-7599
2016-7600
2016-7601
2016-7602
2016-7603
2016-7604
2016-7605
2016-7606
2016-7607
2016-7608
2016-7609
2016-7610
2016-7611
2016-7612
2016-7613
2016-7614
2016-7615
2016-7616
2016-7617
2016-7618
2016-7619
2016-7620
2016-7621
2016-7622
2016-7623
2016-7624
2016-7625
2016-7626
2016-7627
2016-7628
2016-7629
2016-7632
2016-7633
2016-7634
2016-7635
2016-7636
2016-7637
2016-7638
2016-7639
2016-7640
2016-7641
2016-7642
2016-7643
2016-7644
2016-7645
2016-7646
2016-7648
2016-7649
2016-7650
2016-7651
2016-7652
2016-7653
2016-7654
2016-7655
2016-7656
2016-7657
2016-7658
2016-7659
2016-7660
2016-7661
2016-7662
2016-7663
2016-7664
2016-7665
2016-7666
2017-2350
2017-2351
2017-2352
2017-2353
2017-2354
2017-2355
2017-2356
2017-2357
2017-2358
2017-2359
2017-2360
2017-2361
2017-2362
2017-2363
2017-2364
2017-2365
2017-2366
2017-2368
2017-2369
2017-2370
2017-2371
2017-2372
2017-2373

SANS News

Hardening Postfix Against FTP Relay Attacks

Investigating Off-Premise Wireless Behaviour (or, "I Know What You Connected To")

Threatpost

Windows Botnet Spreading Mirai Variant

Rook Security on Online Extortion

Exploit

Joomla! Component Eventix Events Calendar 1.0 - SQL Injection

Joomla! Component J-CruiseReservation Standard 3.0 - 'city' Parameter SQL Injection

Joomla! Component Eventix Events Calendar 1.0 - SQL Injection

DIGISOL DG-HR1400 Wireless Router - Cross-Site Request Forgery

Joomla! Component MaQma Helpdesk 4.2.7 - 'id' Parameter SQL Injection

Joomla! Component PayPal IPN for DOCman 3.1 - 'id' Parameter SQL Injection

Album Lock 4.0 iOS - Directory Traversal

Tenda N3 Wireless N150 Home Router - Authentication Bypass

20.2.2017

Bugtraq

 

Malware

TrojanDownloader:MSIL/Gendwnurl.AB!bit
TrojanDownloader:Win32/Farfli.K!bit

TrojanSpy:MSIL/Wuvsked.A

TrojanDownloader:MSIL/Efliot.A

HackTool:Win32/WinActivator

Backdoor:Win32/Rescoms.A

Backdoor:MSIL/IRCBot.L

TrojanDropper:Win32/Nabucur.D

TrojanDownloader:O97M/Powmet.A

Trojan:X97M/ShellHide.C

Exp.CVE-2017-0038

Ransom.Hermes

Phishing

PayPal Service

20th February 2017

You just need to confirm your
billing address.

N o t i c e

20th February 2017

DEAR CUSTOMER

Apple lD

20th February 2017

Your Apple lD information has
been updated

Vulnerebility

2014-9905
2016-5028
2016-5029
2016-5030
2016-5031
2016-5032
2016-5033
2016-5034
2016-5035
2016-5036
2016-5037
2016-5038
2016-5039
2016-5040
2016-5042
2016-5043
2016-5044
2016-5364
2016-6189
2016-6190
2016-6191
2016-6251
2016-6252
2016-6870
2016-6871
2016-6872
2016-6873
2016-6874
2016-6875
2016-7111
2016-7510
2016-7511
2017-6055
2017-6065
2016-6062 
2016-8495 
2016-9139 
2016-9637 
2016-9827 
2016-9828 
2016-9829 
2016-9831 
2017-5006 
2017-5007 
2017-5008 
2017-5009 
2017-5010 
2017-5011 
2017-5012 
2017-5013 
2017-5014 
2017-5015 
2017-5016 
2017-5017 
2017-5018 
2017-5019 
2017-5020 
2017-5021 
2017-5022 
2017-5023 
2017-5024 
2017-5025 
2017-5026 

SANS News

 

Threatpost

 

Exploit

Linux - Reverse Shell Shellcode (66 bytes)

Album Lock 4.0 iOS - Directory Traversal

Joomla! Component MaQma Helpdesk 4.2.7 - 'id' Parameter SQL Injection

Joomla! Component PayPal IPN for DOCman 3.1 - 'id' Parameter SQL Injection

18.2.2017

Bugtraq

 

Malware

TrojanDownloader:O97M/Powmet.A

Phishing

PayPal Service

18th February 2017

You just need to confirm your
billing address..

Amazon.com

17th February 2017

Your Amazon Account has been
Locked

sfitzgerald002

17th February 2017

Get the medication you need

Vulnerebility

2016-10134
2016-1249
2016-4311
2016-4312
2016-4314
2016-4315
2016-4316
2016-4327
2016-4861
2016-5417
2016-5919
2016-6062
2016-6233
2016-7293
2016-8652
2016-9139
2016-9637
2016-9773
2016-9814
2016-9827
2016-9828
2016-9829
2016-9831
2016-9955
2017-5006
2017-5007
2017-5008
2017-5009
2017-5010
2017-5011
2017-5012
2017-5013
2017-5014
2017-5015
2017-5016
2017-5017
2017-5018
2017-5019
2017-5020
2017-5021
2017-5022
2017-5023
2017-5024
2017-5025
2017-5026
2017-5027
2017-5344
2017-5357
2017-5998
2017-6000
2017-6014
2017-6056
2009-5028 
2011-4345 
2014-0050 
2014-4877 
2015-5125 
2015-5127 
2015-5129 
2015-5130 
2015-5131 
2015-5132 
2015-5133 
2015-5134 
2015-5539 
2015-5540 
2015-5541 
2015-5544 
2015-5545 
2015-5546 
2015-5547 
2015-5548 
2015-5549 
2015-5550 
2015-5551 
2015-5552 
2015-5553 
2015-5554 
2015-5555 
2015-5556 
2015-5557 
2015-5558 
2015-5559 
2015-5560 
2015-5561 
2015-5562 
2015-5563 
2015-5564 
2015-5565 
2015-5566 
2015-5567 
2015-5568 
2015-5570 
2015-5571 
2015-5572 
2015-5573 
2015-5574 
2015-5575 
2015-5576 
2015-5577 
2015-5578 
2015-5579 
2015-5580 
2015-5581 
2015-5582 
2015-5584 
2015-5587 
2015-5588 
2015-6420 
2015-6676 
2015-6677 
2015-6678 
2015-6679 
2015-6682 
2015-7547 
2015-8044 
2015-8415 
2015-8416 
2015-8417 
2015-8418 
2015-8419 
2015-8420 
2015-8421 
2015-8422 
2015-8423 
2015-8424 
2015-8425 
2015-8426 
2015-8427 
2015-8428 
2015-8429 
2015-8430 
2015-8431 
2015-8432 
2015-8433 
2015-8434 
2015-8435 
2015-8436 
2015-8437 
2015-8438 
2015-8439 
2015-8440 
2015-8441 
2015-8442 
2015-8443 
2015-8444 
2015-8445 
2015-8446 
2015-8447 
2015-8448 
2015-8449 
2015-8450 
2015-8451 
2015-8452 
2015-8453 
2015-8454 
2015-8455 
2015-8456 
2015-8457 
2015-8459 
2015-8460 
2015-8634 
2015-8635 
2015-8636 
2015-8638 
2015-8639 
2015-8640 
2015-8641 
2015-8642 
2015-8643 
2015-8644 
2015-8645 
2015-8646 
2015-8647 
2015-8648 
2015-8649 
2015-8650 
2015-8651 
2016-0360 
2016-0702 
2016-0705 
2016-0777 
2016-0778 
2016-0797 
2016-0799 
2016-1247 
2016-1521 
2016-1907 
2016-2105 
2016-2106 
2016-2107 
2016-2109 
2016-2183 
2016-2842 
2016-3739 
2016-4070 
2016-4071 
2016-4072 
2016-4342 
2016-4343 
2016-4393 
2016-4394 
2016-4395 
2016-4396 
2016-4537 
2016-4538 
2016-4539 
2016-4540 
2016-4541 
2016-4542 
2016-4543 
2016-5385 
2016-5387 
2016-5388 
2016-6033 
2016-6077 
2016-6079 
2016-8676 
2016-8691 
2016-8692 
2016-8693 
2016-8944 
2016-8972 
2016-9244 

SANS News

Brazilian malspam sends Autoit-based malware

Threatpost

 

Exploit

Joomla! Component Joomloc-CAT 4.1.3 - 'ville' Parameter SQL Injection

Joomla! Component Joomloc-Lite 1.3.2 - 'site_id' Parameter SQL Injection

Joomla! Component JomWALL 4.0 - 'wuid' Parameter SQL Injection

Joomla! Component OS Property 3.0.8 - SQL Injection

Joomla! Component EShop 2.5.1 - 'id' Parameter SQL Injection

Joomla! Component OS Services Booking 2.5.1 - SQL Injection

Joomla! Component Room Management 1.0 - SQL Injection

17.2.2017

Bugtraq

 

Malware

SupportScam:JS/TechBrolo.A 
BrowserModifier:Win32/Foxiebro 

Trojan.Kulekmoko

Phishing

Amazon.com

17th February 2017

Your Amazon Account has been
Locked

sfitzgerald002

17th February 2017

Get the medication you need

USAA

16th February 2017

Credit Alert Notification

Amazon.com

16th February 2017

Your Amazon Account has been
Locked

Westpac Bank

16th February 2017

Account Verifications Update

Vulnerebility

 

SANS News

AVM Private Key Leak Puts Cable Modems Worldwide At Risk

RTRBK - Router / Switch / Firewall Backups in PowerShell (tool drop)

Threatpost

Cris Thomas on Cyberwar Rhetoric

Divide Between Work, Personal Data on Android Breached

Exploit

Windows x86 - Protect Process Shellcode (229 bytes)

Linux - Dual/Multi mode

Bind Shell Shellcode (156 bytes)

Joomla! Component Team Display 1.2.1 - 'filter_category' Parameter SQL Injection

Joomla! Component Groovy Gallery 1.0.0 - SQL Injection

Joomla! Component WMT Content Timeline 1.0 - 'id' Parameter SQL Injection

16.2.2017

Bugtraq

 

Malware

SupportScam:JS/TechBrolo.A
JS/TechBrolo

SupportScam:JS/TechBrolo

Phishing

Amazon.com

16th February 2017

Your Amazon Account has been
Locked

Westpac Bank

16th February 2017

Account Verifications Update

USAA

16th February 2017

Incoming Payment Awaiting Your
Approval

PayPal Notice

15th February 2017

REMINDER : UNAUTHORIZED LOGIN
ACTIVITY

PayPal

15th February 2017

The password for your PayPal
has been successfully reset.

PayPal

15th February 2017

DEAR USER PAYPAL, YOU HAVE A
UPDATE TODAY

Vulnerebility

2013-7459
2015-8979
2016-0360
2016-10089
2016-1880
2016-1881
2016-1883
2016-1888
2016-1889
2016-3694
2016-6033
2016-6060
2016-6077
2016-6079
2016-6832
2016-6866
2016-7392
2016-7393
2016-7477
2016-7499
2016-8674
2016-8675
2016-8676
2016-8677
2016-8678
2016-8679
2016-8680
2016-8681
2016-8682
2016-8683
2016-8684
2016-8687
2016-8688
2016-8689
2016-8690
2016-8691
2016-8692
2016-8693
2016-8862
2016-8866
2016-8944
2016-8968
2016-8972
2016-9010
2016-9560
2016-9706
2017-0308
2017-0309
2017-0310
2017-0311
2017-0312
2017-0313
2017-0314
2017-0315
2017-0317
2017-0318
2017-0319
2017-0320
2017-0321
2017-0322
2017-0323
2017-0324
2017-3801
2017-5896
2017-5992
2017-5997
2017-6004
2017-6009
2017-6010
2017-6011

1999-1548
1999-1577
2000-0270
2000-1220
2000-1221
2002-2005
2017-5933 

SANS News

Microsoft February Patch Tuesday Now Rolled into March Update

Threatpost

 

Exploit

Joomla! Component Spider Calendar Lite 3.2.16 - SQL Injection

Joomla! Component Spider Catalog Lite 1.8.10 - SQL Injection

Joomla! Component Spider Facebook 1.6.1 - SQL Injection

Joomla! Component Spider FAQ Lite 1.3.1 - SQL Injection

WordPress Plugin Corner Ad 1.0.7 - Cross-Site Scripting

Microsoft Windows gdi32.dll - EMR_SETDIBITSTODEVICE Heap-Based Out-of-Bounds Reads...

NVIDIA Driver 375.70 - DxgkDdiEscape 0x100008b Out-of-Bounds Read/Write

NVIDIA Driver 375.70 - Buffer Overflow in Command Buffer Submission

GOM Player 2.3.10.5266 - '.fpx' Denial of Service

Cisco ASA - WebVPN CIFS Handling Buffer Overflow

OpenText Documentum D2 - Remote Code Execution

Geutebruck 5.02024 G-Cam/EFD-2250 - Remote Command Execution (Metasploit)

15.2.2017

Bugtraq

 

Malware

EUS:Win32/CustomEnterpriseBlock!cl 

Phishing

PayPal

15th February 2017

DEAR USER PAYPAL, YOU HAVE A
UPDATE TODAY

Apple

13th February 2017

YOUR APPLE-ID WAS USED TO SIGN
IN TO ICLOUD VIA NEW DEVICE.

Vulnerebility

2017-2968
2017-2969
2017-2973
2017-2974
2017-2975
2017-2976
2017-2977
2017-2978
2017-2979
2017-2980
2017-2981
2017-2982
2017-2984
2017-2985
2017-2986
2017-2987
2017-2988
2017-2990
2017-2991
2017-2992
2017-2993
2017-2994
2017-2995
2017-2996
2017-5990
2017-5991

2016-2274
2016-3995
2016-5782
2016-5786
2016-5796
2016-5798
2016-5801
2016-5802
2016-5803
2016-5805
2016-5809
2016-5811
2016-5813
2016-5815
2016-5818
2016-6210
2016-7987
2016-8341
2016-8344
2016-8346
2016-8347
2016-8348
2016-8350
2016-8352
2016-8353
2016-8354
2016-8355
2016-8356
2016-8357
2016-8358
2016-8359
2016-8360
2016-8361
2016-8362
2016-8363
2016-8364
2016-8367
2016-8368
2016-8369
2016-8370
2016-8372
2016-8374
2016-8375
2016-8376
2016-8377
2016-8378
2016-8379
2016-8566
2016-8567
2016-8659
2016-8859
2016-9332
2016-9333
2016-9334
2016-9337
2016-9338
2016-9339
2016-9343
2016-9344
2016-9345
2016-9346
2016-9347
2016-9348
2016-9349
2016-9351
2016-9353
2016-9354
2016-9355
2016-9356
2016-9357
2016-9360
2016-9361
2016-9362
2016-9363
2016-9364
2016-9365
2016-9366
2016-9367
2016-9369
2016-9371
2017-3896
2017-5139
2017-5140
2017-5141
2017-5142
2017-5143
2017-5144
2017-5145
2017-5146
2017-5149
2017-5151
2017-5152
2017-5153
2017-5154
2017-5155
2017-5157
2017-5159
2017-5161
2017-5162
2017-5163
2017-5164
2017-5165
2017-5166
2017-5167

SANS News

How was your stay at the Hotel La Playa?

Threatpost

Adobe Patches 13 Code Execution Vulnerabilities in Flash

Schneier Brings Campaign for IoT Regulation to RSA

DHS Chairman Paints Bleak US Cybersecurity Picture

Turning Tables on Nigerian Business Email Scammers

Exploit

Geutebruck 5.02024 G-Cam/EFD-2250 - Remote Command Execution (Metasploit)

Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 - Multiple...

Joomla! Component JoomBlog 1.3.1 - SQL Injection

13.2.2017

Bugtraq

 

Malware

Spammer:Win32/Junintian.A 

Phishing

 

Vulnerebility

2017-3302
2017-5960
2017-5961
2017-5962
2017-5963
2017-5964

SANS News

Microsoft Patch Tuesday Delayed

Threatpost

Nation States Distancing Themselves from APTs

Adobe Patches 13 Code Execution Vulnerabilities in Flash

Exploit

Google Android - Inter-process munmap in android.util.MemoryIntArray

Google Android - android.util.MemoryIntArray Ashmem Race Conditions

Microsoft Edge - TypedArray.sort Use-After-Free (MS16-145)

Piwik 2.14.0 / 2.16.0 / 2.17.1 / 3.0.1 - Superuser Plugin Upload (Metasploit)

ShadeYouVPN Client 2.0.1.11 - Privilege Escalation

ntfs-3g - Unsanitized modprobe Environment Privilege Escalation

LG G4 - lgdrmserver Binder Service Multiple Race Conditions

LG G4 - lghashstorageserver Directory Traversal

LG G4 - Touchscreen Driver write_log Kernel Read/Write

Linux Kernel 3.10.0 (CentOS7) - Denial of Service

Joomla! Component Soccer Bet 4.1.5 - 'userid' Parameter SQL Injection

PHP Marketplace Script - SQL Injection

Joomla! Component JE Classify Ads 1.2 - 'pro_id' Parameter SQL Injection

Joomla! Component JE Gallery 1.3 - 'photo_id' Parameter SQL Injection

Joomla! Component JE Directory 1.7 - 'ditemid' Parameter SQL Injection

Joomla! Component JE QuoteForm - 'Itemid' Parameter SQL Injection

12.2.2017

Bugtraq

 

Malware

Ransom:Win32/Wadhrama 
Ransom:Win32/Haknata.A!rsm 

Phishing

IRS

13th February 2017

Immediate re-confirmation of
your details required

Bank of America... Alert

12th February 2017

.Bank.Of.America: Security
Update Required.....

No@reply

12th February 2017

account verification

Vulnerebility

 

SANS News

Stuff I Learned Decrypting

Do You Use VirusTotal? Give PacketTotal a Spin!

Threatpost

Updated Firmware Due for Serious TP-Link Router Vulnerabilities

Exploit

Joomla! Component Soccer Bet 4.1.5 - 'userid' Parameter SQL Injection

SonicDICOM PACS 2.3.2 - Cross-Site Scripting

SonicDICOM PACS 2.3.2 - Cross-Site Request Forgery (Add Admin)

SonicDICOM PACS 2.3.2 - Privilege Escalation

Kodi 17.1 - Arbitrary File Disclosure

WhizBiz 1.9 - SQL Injection

TI Online Examination System 2.0 - SQL Injection

Viavi Real Estate - SQL Injection

Viavi Movie Review - 'id' Parameter SQL Injection

Viavi Product Review - 'id' Parameter SQL Injection

Quadz School Management System 3.1 - 'uisd' Parameter SQL Injection

Domains & Hostings Manager PRO 3.0 - 'entries' Parameter SQL Injection

Cimetrics BACstac 6.2f - Privilege Escalation

Cimetrics BACnet Explorer 4.0 - XML External Entity Injection

11.2.2017

Bugtraq

ESA-2017-001: EMC Isilon InsightIQ Authentication Bypass Vulnerability 2017-02-07
EMC Product Security Response Center (Security_Alert emc com)

Malware

Backdoor.Streamex

Phishing

Bank of America

11th February 2017

ACCOUNT REQUIRED ATTENTION

Federal Bureau of Investigatio

10th February 2017

Executive Director FBI

Vulnerebility

 

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/93841

MIT Kerberos KDC CVE-2016-3120 NULL Pointer Dereference Denial Of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/92132

util-linux CVE-2016-5011 Local Denial of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/91683

MuPDF 'fitz/pixmap.c' Heap Based Buffer Overflow Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96139

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-11
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-11
http://www.securityfocus.com/bid/94975

S-nail CVE-2017-5899 Local Privilege Escalation Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96138

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-11
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-11
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-11
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-11
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-11
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-11
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-11
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-11
http://www.securityfocus.com/bid/96115

SANS News

 

Threatpost

 

Exploit

F5 BIG-IP SSL Virtual Server - Memory Disclosure

WordPress 4.7.0/4.7.1 Plugin Insert PHP - PHP Code Injection

10.2.2017

Bugtraq

 

Malware

Ransom:Win32/Haknata.A!rsm

Trojan.Mdropper.AE

Backdoor.Athenrat

Downloader.Ratankba

Trojan.Mirai

Phishing

Federal Bureau of Investigatio

10th February 2017

Executive Director FBI

BANK OF AMERICA

10th February 2017

PLEASE UPDATE YOUR ACCOUNT
INFORMATION

USAA

9th February 2017

Incoming Payment Awaiting Your
Approval

Woolworths Rewards

9th February 2017

CUSTOMER SATISFACTION SURVEY!

Vulnerebility

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/93841

MIT Kerberos KDC CVE-2016-3120 NULL Pointer Dereference Denial Of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/92132

util-linux CVE-2016-5011 Local Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/91683

MuPDF 'fitz/pixmap.c' Heap Based Buffer Overflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96139

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94975

S-nail CVE-2017-5899 Local Privilege Escalation Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96138

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96115OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/93841

MIT Kerberos KDC CVE-2016-3120 NULL Pointer Dereference Denial Of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/92132

util-linux CVE-2016-5011 Local Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/91683

MuPDF 'fitz/pixmap.c' Heap Based Buffer Overflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96139

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94975

S-nail CVE-2017-5899 Local Privilege Escalation Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96138

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-10
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-10
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-10
http://www.securityfocus.com/bid/96115

SANS News

Hancitor/Pony malspam

Threatpost

High Severity BIND Vulnerability Can Lead to A Crash
CryptoShield Infections from RIG EK Picking Up

Exploit

HP Smart Storage Administrator 2.30.6.0 - Remote Command Injection (Metasploit)

CMS Lite 1.3.1 - SQL Injection

Tiger Post 3.0.1 - SQL Injection

Gram Post 1.0 - SQL Injection

Youtube Analytics Multi Channel 3.0 - SQL Injection

Collabo - Arbitrary File Download

Takas Classified 1.1 - SQL Injection

Zigaform - SQL Injection

9.2.2017

Bugtraq

 

Malware

 

Phishing

USAA

9th February 2017

Incoming Payment Awaiting Your
Approval

Woolworths Rewards

9th February 2017

CUSTOMER SATISFACTION SURVEY!

Apple

7th February 2017

YOUR APPIE LD IS AUTOMATICALLY
LOCKED.

Vulnerebility

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/93841

MIT Kerberos KDC CVE-2016-3120 NULL Pointer Dereference Denial Of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/92132

util-linux CVE-2016-5011 Local Denial of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/91683

MuPDF 'fitz/pixmap.c' Heap Based Buffer Overflow Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96139

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-09
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-09
http://www.securityfocus.com/bid/94975

S-nail CVE-2017-5899 Local Privilege Escalation Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96138

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-09
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-09
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-09
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-09
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-09
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-09
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-09
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-09
http://www.securityfocus.com/bid/96115

SANS News

CryptoShield Ransomware from Rig EK

Ticketbleed vulnerability affects some f5 appliances

Threatpost

Fileless Memory-Based Malware Plagues 140 Banks, Enterprises

Dino Dai Zovi on Securing Linux in Modern Workloads

Exploit

Mobiketa 3.5 - SQL Injection

Sendroid 5.2 - SQL Injection

Fome SMS Portal 2.0 - SQL Injection

SOA School Management - SQL Injection

Client Expert 1.0.1 - SQL Injection

8.2.2017

Bugtraq

ESA-2017-001: EMC Isilon InsightIQ Authentication Bypass Vulnerability 2017-02-07
EMC Product Security Response Center (Security_Alert emc com)

SEC Consult SA-20170207 :: Path Traversal, Backdoor accounts & KNX group address password bypass in JUNG Smart Visu server 2017-02-07
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESBUX03699 SSRT110304 rev.1 - HP-UX BIND, Multiple Remote Denial of Service (DoS) 2017-02-06
HPE Product Security Response Team (security-alert hpe com)

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

Malware

Trojan.Vimnaspu

Phishing

Apple

7th February 2017

YOUR APPIE LD IS AUTOMATICALLY
LOCKED.

AOL

7th February 2017

you have got a new message

AOL

7th February 2017

you have got an incoming
message

Chase

7th February 2017

CHASE BANK - NOTIFICATION!

Chase

7th February 2017

CHASE BANK - NOTICE!

Vulnerebility

OpenSSH CVE-2016-10009 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94968

OpenSSH 'ssh/kex.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/93776

OpenSSH CVE-2016-10012 Security Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94975

OpenSSH CVE-2016-10011 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/94977

PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96142

Tor Browser Launcher CVE-2016-3180 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96140

QEMU 'virtio-crypto.c' Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96141

Symfony CVE-2016-2403 Authentication Bypass Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96137

GNU Bash CVE-2017-5932 Multiple Arbitrary Code Execution Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96136

SimpleSAMLphp CVE-2016-3124 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96134

GraphicsMagick CVE-2016-7800 Remote Integer Underflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96135

Trend Micro Control Manager Multiple Directory Traversal Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96131

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96115

Spice CVE-2016-9578 Remote Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96118

Plone Incomplete Fix CVE-2016-7147 Cross-Site Scripting Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96117

ZoneMinder 'web/views/file.php' Local File Include Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96125

IBM Security Access Manager Products CVE-2016-3023 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96124

Alaris 8000 and 8015 PC units CVE-2016-8375 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96113Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/95972

IBM Security Access Manager Products CVE-2016-3029 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96133

SendQuick Entera and Avera SMS Gateway Appliances Remote Command Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96129

ZoneMinder CVE-2017-5368 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96126

IBM Security Access Manager CVE-2016-3024 Local Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96132

IBM Security Access Manager Products CVE-2016-3027 XML External Entity Injection Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96127

IBM Security Access Manager Products CVE-2016-3022 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96130

Multiple Samsung Android Mobile Devices InputMethod Application Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96128

Trend Micro Control Manager Multiple SQL Injection Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96123

Alaris 8015 PC unit CVE-2016-9355 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96116

Sielco Sistemi Winlog Pro/ Winlog Lite CVE-2017-5161 DLL Loading Local Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96119

Linux Kernel CVE-2016-10150 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/95672

dotCMS Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96115

Spice CVE-2016-9578 Remote Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96118

Plone Incomplete Fix CVE-2016-7147 Cross-Site Scripting Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96117

ZoneMinder 'web/views/file.php' Local File Include Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96125

IBM Security Access Manager Products CVE-2016-3023 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96124

Alaris 8000 and 8015 PC units CVE-2016-8375 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96113

ZoneMinder CVE-2017-5367 Multiple Cross Site Scripting Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96120

Google Nexus Kernel File System CVE-2016-10044 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96122

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96037

QEMU 'hw/usb/dev-smartcard-reader.c' Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96112

Google Android CVE-2016-8414 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96111

IBM Security Access Manager CVE-2016-3021 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96114

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0449 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96110

Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96037

Google Android CVE-2016-8414 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96111

IBM Security Access Manager CVE-2016-3021 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96114

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0449 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96110

Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106

Google Android AOSP Messaging CVE-2017-0424 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96104

Google Android Bluetooth CVE-2017-0423 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96102

Google Android Kernel Networking Subsystem CVE-2014-9914 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96100

Google Android CVE-2016-8480 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96101

Google Android Filesystem CVE-2017-0426 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96099

Google Android Bionic DNS CVE-2017-0422 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96097

Google Android AOSP Mail CVE-2017-0420 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96093

Google Android libgdx CVE-2017-0408 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96092

IBM Security Access Manager Products CVE-2015-5013 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96090

Google Android libstagefright CVE-2017-0409 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96091

Google Android Framework APIs CVE-2017-0421 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96096

Google Android Mediaserver CVE-2017-0415 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96089

IBM WebSphere Application Server CVE-2016-9736 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96076

IBM Sterling Order Management CVE-2016-9991 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96084

Multiple IBM Products CVE-2016-9748 Remote Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96074

Google Nexus Kernel File System CVE-2017-0427 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96071

podofo 'PdfOutputStream.cpp' Null Pointer Dereference Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96072

Google Nexus NVIDIA GPU Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96070

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96067Google Android Qualcomm Sound Driver CVE-2017-0451 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96108

Google Nexus Audioserver CVE-2017-0450 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96109

Google Nexus NVIDIA Video Driver CVE-2017-0448 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96105

Google Nexus Realtek Sound Driver CVE-2017-0444 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96107

Google Android Audioserver CVE-2017-0425 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96106

Google Android AOSP Messaging CVE-2017-0424 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96104

Google Android Bluetooth CVE-2017-0423 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96102

Google Android Kernel Networking Subsystem CVE-2014-9914 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96100

Google Android CVE-2016-8480 Remote Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96101

Google Android Filesystem CVE-2017-0426 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96099

Google Android Bionic DNS CVE-2017-0422 Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96097

Google Android AOSP Mail CVE-2017-0420 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96093

Google Android libgdx CVE-2017-0408 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96092

IBM Security Access Manager Products CVE-2015-5013 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96090

Google Android libstagefright CVE-2017-0409 Arbitrary Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96091

Google Android Framework APIs CVE-2017-0421 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96096

Google Android Mediaserver CVE-2017-0415 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96089

IBM WebSphere Application Server CVE-2016-9736 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96076

IBM Sterling Order Management CVE-2016-9991 Cross Site Request Forgery Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96084

Multiple IBM Products CVE-2016-9748 Remote Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96074

Google Nexus Kernel File System CVE-2017-0427 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96071

podofo 'PdfOutputStream.cpp' Null Pointer Dereference Denial of Service Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96072

Google Nexus NVIDIA GPU Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96070

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96067

Google Android Qualcomm components CVE-2017-0431 Multiple Unspecified Security Vulnerabilities
2017-02-08
http://www.securityfocus.com/bid/96068

podofo CVE-2017-5853 Integer Overflow Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96066

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0430 Privilege Escalation Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96065

Google Nexus Qualcomm Crypto Driver CVE-2016-8418 Remote Code Execution Vulnerability
2017-02-08
http://www.securityfocus.com/bid/96058

SANS News

My Password is [taco] Using Emojis for Stronger Passwords

Threatpost

Popular iOS Apps Vulnerable to TLS Interception Attacks

Attackers Capitalizing on Unpatched WordPress Sites

Consortium Publishes Manifesto on Autonomous Vehicle Security

Uber Debuts SSH Key Authentication Module

Valve Patches Trivial XSS Bug in Steam

Exploit

Muviko Video CMS - SQL Injection

Multi Outlets POS 3.1 - 'id' Parameter SQL Injection

Fully Featured News CMS 1.0 - 'id' Parameter SQL Injection

OpenBSD HTTPd < 6.0 - Memory Exhaustion Denial of Service

Easy Support Tools 1.0 - 'stt' Parameter SQL Injection

7.2.2017

Bugtraq

SEC Consult SA-20170207 :: Path Traversal, Backdoor accounts & KNX group address password bypass in JUNG Smart Visu server 2017-02-07
SEC Consult Vulnerability Lab (research sec-consult com)

[security bulletin] HPESBUX03699 SSRT110304 rev.1 - HP-UX BIND, Multiple Remote Denial of Service (DoS) 2017-02-06
HPE Product Security Response Team (security-alert hpe com)

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

[security bulletin] HPSBST03588 rev 1. - HPE StoreVirtual 4000 Storage and StoreVirtual VSA Software running LeftHand OS, Remote Arbitrary Command Execution 2017-02-01
security-alert hpe com

Malware

OSX.Addkeysteal

TrojanDownloader:Win32/Mato
PWS:Win32/Passew
PWS:MSIL/Tosnir.A

Phishing

Chase

7th February 2017

CHASE BANK - NOTICE!

BB&T Alerts

6th February 2017

Request to Update Your BB&T
Online Information!

Apple Online - Store

6th February 2017

APPLE ONLINE - WE'VE RECEIVED
YOUR ORDER: [MMMH36GLV6]

Vulnerebility

Google Android Synaptics Touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96061

AES-GCM CVE-2016-0270 Information Disclosure Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96062

Google Android MediaTek Driver CVE-2017-0432 Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96067

Google Android Qualcomm components CVE-2017-0431 Multiple Unspecified Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96068

podofo CVE-2017-5853 Integer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96066

Google Nexus Broadcom Wi-Fi Driver CVE-2017-0430 Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96065

Google Nexus Qualcomm Crypto Driver CVE-2016-8418 Remote Code Execution Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96058

Google Android AOSP Messaging Multiple Information Disclosure Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96063

Google Pixel/Pixel XL HTC touchscreen Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96054

Google Nexus/ Pixel Products Qualcomm Sound Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96053

Google Android Framework APIs Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96056

Google Android Audioserver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96055

Google Nexus/ Pixel Products Qualcomm Wi-Fi Driver Multiple Privilege Escalation Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96047

LibTIFF CVE-2016-5102 Remote Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96049

Google Android Surfaceflinger CVE-2017-0405 Remote Code Execution Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96048

Google Android Mediaserver Multiple Remote Code Execution Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96046

PEAR HTML_AJAX CVE-2017-5677 PHP Object Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96044

NetApp OnCommand Insight Data Warehouse CVE-2017-5600 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96041

Exponent CMS CVE-2017-5879 SQL Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96039

Spice CVE-2016-9577 Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96040

SanaCMS CVE-2017-5882 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96038

Red Hat JBoss Enterprise Application Platform CVE-2016-8656 Local Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96035

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96037

Hawtio CVE-2017-2617 Arbitrary File Upload Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96036

SendQuick Entera & Avera SMS Gateway Appliances Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96031

libplist Multiple Local Heap Buffer Overflow and Denial-of-Service Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96022

Citrix License Server for Windows and License Server VPX CVE-2017-5571 Open Redirect Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96028

iucode-tool CVE-2017-0357 Heap Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95432

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95785

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95310PEAR HTML_AJAX CVE-2017-5677 PHP Object Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96044

NetApp OnCommand Insight Data Warehouse CVE-2017-5600 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96041

Exponent CMS CVE-2017-5879 SQL Injection Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96039

Spice CVE-2016-9577 Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96040

SanaCMS CVE-2017-5882 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96038

Red Hat JBoss Enterprise Application Platform CVE-2016-8656 Local Privilege Escalation Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96035

Linux kernel 'ip6_gre.c' Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96037

Hawtio CVE-2017-2617 Arbitrary File Upload Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96036

SendQuick Entera & Avera SMS Gateway Appliances Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96031

libplist Multiple Local Heap Buffer Overflow and Denial-of-Service Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96022

Citrix License Server for Windows and License Server VPX CVE-2017-5571 Open Redirect Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96028

iucode-tool CVE-2017-0357 Heap Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95432

libXpm CVE-2016-10164 Heap Based Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95785

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95310

Irssi 'buf.pl' Local Information Disclosure Vulnerability
2017-02-07
http://www.securityfocus.com/bid/93155

GnuTLS 'lib/opencdk/read-packet.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95372

GnuTLS CVE-2017-5336 Stack Buffer Overflow Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95377

GnuTLS GNUTLS-SA-2016-3 Certificate Validation Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/92893

GnuTLS CVE-2017-5334 Security Bypass Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95370

GnuTLS CVE-2017-5335 Multiple Buffer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/95374

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/93841

gtk-vnc Remote Code Execution Vulnerability and Multiple Integer Overflow Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96016

libevent Multiple Security Vulnerabilities
2017-02-07
http://www.securityfocus.com/bid/96014

Multiple IBM Products CVE-2017-1127 Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96019

Multiple IBM Products CVE-2017-1128 Unspecified Cross Site Scripting Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96017

Linux Kernel 'EXT4 image' Local Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/94354

TigerVNC CVE-2016-10207 Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/96012

Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-07
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-07
http://www.securityfocus.com/bid/95407

SANS News

Malicious Or Not? You decide...

My Password is [taco] Using Emojis for Stronger Passwords

Threatpost

ICS, SCADA Security Woes Linger On

InterContinental Hotels Confirms Credit Card Breach

St. Jude Patches Additional Cardiac Device

Smart TV Manufacturer Vizio Fined $2.2M for Tracking Customers

Exploit

IVPN Client 2.6.1 - Privilege Escalation

6.2.2017

Bugtraq

Teleopti WFM <= 7.1.0 Multiple Vulnerabilities 2017-02-06
Graph-X (graphx sigaint org)

[SECURITY] [DSA 3781-1] svgsalamander security update 2017-02-05
Moritz Muehlenhoff (jmm debian org)

ZoneMinder - multiple vulnerabilities 2017-02-05
john terabyteit com au

Malware

 

Phishing

 

Vulnerebility

Irssi Multiple Memory Corruption Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95310

Irssi 'buf.pl' Local Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93155

GnuTLS 'lib/opencdk/read-packet.c' Multiple Heap Buffer Overflow Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95372

GnuTLS CVE-2017-5336 Stack Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95377

GnuTLS GNUTLS-SA-2016-3 Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/92893

GnuTLS CVE-2017-5334 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95370

GnuTLS CVE-2017-5335 Multiple Buffer Overflow Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/95374

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93841

libevent Multiple Security Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96014

Multiple IBM Products CVE-2017-1127 Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96019

Multiple IBM Products CVE-2017-1128 Unspecified Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96017

Linux Kernel 'EXT4 image' Local Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/94354

TigerVNC CVE-2016-10207 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96012

Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95998Microsoft Windows CVE-2017-0016 Memory Corruption Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95969

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-06
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-06
http://www.securityfocus.com/bid/95983

SANS News

What Are These Odd POP3 (Port 110/tcp) Scans About?

Threatpost

 

Exploit

ThisIsWhyImBroke Clone Script 4.0 - 'id' Parameter SQL Injection

Upworthy Clone Script 1.1.0 - 'id' Parameter SQL Injection

Ultimate Viral Media Script 1.0 - 'id' Parameter SQL Injection

Visual Link Sharing Websites Builder Script 2.1.0 - SQL Injection

ThisIsWhyImBroke Clone Script 4.0.0 - 'id' Parameter SQL Injection

Funny Image and Video Script 2.0.0 - 'id' Parameter SQL Injection

Clone Script Directory Script 1.1.0 - 'cid' Parameter SQL Injection

Viral Pictures and Video Script 2.0.0 - 'id' Parameter SQL Injection

NewsBee CMS - SQL Injection

Web Inspiration Gallery Script 1.0.0 - 'id' Parameter SQL Injection

Viral Fun Facts Sharing Script 1.1.0 - 'id' Parameter SQL Injection

5.2.2017

Bugtraq

 

Malware

Trojan.Zherotee

Phishing

Information

4th February 2017

Account Information

PayPal

3rd February 2017

Tracking Number For
sunmtnsft@aol.com

Vulnerebility

Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-05
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-05
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/95875Libreswan CVE-2016-3071 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/87295

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95407

WordPress Prior to 4.7.1 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95406

Artifex MuJS 'regexp.c' Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96006

Mini-XML Stack Exhaustion Multiple Denial of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/90315

SOGo CVE-2016-6188 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96007

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91319

Business LaLa Call App CVE-2017-2104 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96005

LaLa Call App for Android CVE-2017-2103 SSL Certificate Validation Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96004

IBM Jazz for Service Management CVE-2016-5935 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96003

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-04
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-04
http://www.securityfocus.com/bid/95875

SANS News

Detecting Undisclosed Vulnerabilities with Security Tools & Features

Many Malware Samples Found on Pastebin

Threatpost

 

Exploit

Alstrasoft EPay Enterprise 5.17 - SQL Injection

Alstrasoft ProTaxi Enterprise 3.5 - Arbitrary File Upload

Alstrasoft e-Friends 5.12 - SQL Injection

Alstrasoft Video Share Enterprise 4.72 - SQL Injection

Alstrasoft Flippa Clone MarketPlace Script 4.10 - Cross-Site Request Forgery (Add Admin)

Alstrasoft FMyLife Pro 1.02 - Cross-Site Request Forgery (Add Admin)

Alstrasoft Forum Pay Per Post Exchange Script 2.01 - SQL Injection

SlimarUSER Management 1.0 - 'id' Parameter SQL Injection

Debian 9 ntfs-3g - Privilege Escalation

ntfs-3g (Debian 9) - Privilege Escalation

3.2.2017

Bugtraq

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

Malware

JS.Kopiwak

Ransom.Spora!gm

Trojan.Zherotee

Phishing

PayPal

3rd February 2017

Tracking Number For
sunmtnsft@aol.com

Vulnerebility

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95875

IBM Security Key Lifecycle Manager CVE-2016-6093 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95985

IBM Security Key Lifecycle Manager CVE-2016-6094 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95984

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95843

libgd Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95869

libgd 'gdImageCreate()' Function Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95841

RubyGems minitar and archive-tar-minitar CVE-2016-10173 Local Directory Traversal Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95874

IBM Tivoli Key Lifecycle Manager CVE-2016-6104 Arbitrary File Upload Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95980

Adobe Flash Player and AIR APSB16-08 Multiple Unspecified Integer Overflow Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/84308

IBM InfoSphere BigInsights CVE-2016-2992 Unspecified Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95979

IBM Tivoli Key Lifecycle Manager CVE-2016-6098 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95982

McAfee ePolicy Orchestrator CVE-2016-8027 SQL Injection Vulnerabilitiy
2017-02-03
http://www.securityfocus.com/bid/95981

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95397

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95816

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95402
Adobe Flash Player and AIR APSB16-08 Multiple Unspecified Integer Overflow Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/84308

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95397

WordPress Prior to 4.7.2 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95816

WordPress Prior to 4.7.1 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95402

WordPress Cryptographic Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95401

WordPress Prior to 4.7.1 Cross Site Request Forgery Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95399

IBM Tivoli Storage Manager CVE-2016-6034 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95976

IBM Security Key Lifecycle Manager CVE-2016-6097 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95977

IBM UrbanCode Deploy CVE-2016-2941 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95978

IBM UrbanCode Deploy CVE-2016-2942 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95975

Multiple HP Products CVE-2016-8529 Unspecified Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95970

IBM UrbanCode Deploy CVE-2016-0320 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95974

IBM InfoSphere BigInsights CVE-2016-2924 Unspecified Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95973

Trend Micro Control Manager Multiple Information Disclosure Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95972

Honeywell XL Web II Controller Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95971

SageCRM SQL Injection and Arbitrary File Upload Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95968

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

OpenSSL CVE-2016-2177 Integer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/91319

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

Microsoft Windows VU#867968 Memory Corruption Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95969

Multiple GStreamer Plug-ins Buffer Overflow and Denial Of Service Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/96001

Mp3splt 'free_options()' Function Null Pointer Dereference Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/96002

Barracuda NextGen Firewal F-Series Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/96000

Samba CVE-2016-2119 Man in the Middle Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/91700

ISC BIND CVE-2016-2848 Remote Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93814

Apache Ranger CVE-2016-8746 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95998

QEMU 'hw/scsi/megasas.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95999

OpenBSD httpd CVE-2017-5850 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95997

Akamai NetSession CVE-2016-10157 DLL Loading Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95995

FFmpeg CVE-2016-10192 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95991

Lenovo XClarity Administrator CVE-2016-8233 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95992

Ghostscript Remote Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95988

FFmpeg CVE-2016-10191 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95989

Drupal Better Exposed Filters Module Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95994

QEMU 'virtio-gpu-3d.c' Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95993

NTFS-3G CVE-2017-0358 Local Privilege Escalation Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95987

QEMU 'hw/display/cirrus_vga.c' Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95990

FFmpeg CVE-2016-10190 Heap Buffer Overflow Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95986

IBM Security Key Lifecycle Manager CVE-2016-6096 Cross Site Scripting Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95983

Revive Adserver REVIVE-SA-2017-001 Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95875

IBM Security Key Lifecycle Manager CVE-2016-6093 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95985

IBM Security Key Lifecycle Manager CVE-2016-6094 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95984

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

OpenSSL CVE-2017-3731 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95813

OpenSSL CVE-2017-3732 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95814

OpenSSL CVE-2016-7056 Local Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95375

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93841

OpenSSL CVE-2016-7055 Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/94242

Libgd CVE-2016-6912 Security Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95843

libgd Multiple Security Vulnerabilities
2017-02-03
http://www.securityfocus.com/bid/95869Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95352

Jenkins CVE-2017-2613 Cross Site Request Forgery Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95967

IBM Security Key Lifecycle Manager CVE-2016-6116 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95966

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-03
http://www.securityfocus.com/bid/93304

Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-03
http://www.securityfocus.com/bid/83870

Jenkins CVE-2017-2609 Information Disclosure Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95964

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-03
http://www.securityfocus.com/bid/95965

SANS News

Cisco - Issue with Clock Signal Component

Threatpost

Printing and Marketing Firm Leaks High-Profile Customers’ Data

Microsoft Waits for Patch Tuesday to Fix SMB Zero Day

Cisco Patches Authentication Bypass in Cisco Prime Home

Locky Ransomware, Kovter Click-Fraud Malware Spreading in Same Campaigns

Honeywell SCADA Controllers Exposed Passwords in Clear Text

Exploit

CUPS < 2.0.3 - Remote Command Execution

Netwave IP Camera - Password Disclosure

SlimarUSER Management 1.0 - 'id' Parameter SQL Injection

Itech Multi Vendor Script 6.49 - SQL Injection

2.2.2017

Bugtraq

[FOXMOLE SA 2016-07-05] ZoneMinder - Multiple Issues 2017-02-02
FOXMOLE Advisories (advisories foxmole com)

Ghostscript 9.20 Filename Command Execution 2017-02-02
apparitionsec gmail com (hyp3rlinx)

[security bulletin] HPSBST03588 rev 1. - HPE StoreVirtual 4000 Storage and StoreVirtual VSA Software running LeftHand OS, Remote Arbitrary Command Execution 2017-02-01
security-alert hpe com

Cisco Security Advisory: Cisco Prime Home Authentication Bypass Vulnerability 2017-02-01
Cisco Systems Product Security Incident Response Team (psirt cisco com)

ESA-2017-003: EMC Network Configuration Manager (NCM) Multiple Vulnerabilities 2017-02-01
EMC Product Security Response Center (Security_Alert emc com)

[SECURITY] [DSA 3779-1] wordpress security update 2017-02-01
Sebastien Delafond (seb debian org)

[security bulletin] HPESBHF03700 rev.1 - HPE iMC PLAT, Remote Disclosure of Information, Denial of Service (DoS) 2017-01-31
security-alert hpe com

[SECURITY] [DSA 3778-1] ruby-archive-tar-minitar security update 2017-01-31
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPESBGN03696 rev.1 - HPE Helion Eucalyptus, Remote Escalation of Privilege 2017-01-31
security-alert hpe com

[security bulletin] HPSBHF03693 rev.1 - HPE iMC PLAT Network Products running Microsoft SQL Server, Remote Elevation of Privilege 2017-01-31
security-alert hpe com

Malware

 

Phishing

 

Vulnerebility

Ansible CVE-2016-9587 Arbitrary Command Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95352

Jenkins CVE-2017-2613 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95967

IBM Security Key Lifecycle Manager CVE-2016-6116 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95966

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/93304

Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/83870

Jenkins CVE-2017-2609 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95964

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95965

Jenkins CVE-2017-2605 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95961

IBM Security Key Lifecycle Manager CVE-2016-6099 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95958

Jenkins CVE-2017-2608 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95953

Jenkins CVE-2017-2607 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95963

Jenkins CVE-2017-2606 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95962

Jenkins CVE-2017-2601 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95960

Jenkins CVE-2017-2612 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95957

Jenkins CVE-2017-2611 Multiple Security Bypass Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95956

Jenkins CVE-2017-2604 Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95959

Jenkins CVE-2017-2603 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95955

Jenkins CVE-2017-2602 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95952

Jenkins CVE-2017-2600 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95954

IBM Security Key Lifecycle Manager CVE-2016-6103 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95950

Jenkins CVE-2017-2610 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95951

Jenkins CVE-2017-2599 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95949

Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941
Linux Kernel 'fs/pipe.c' Local Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/83870

IBM Security Key Lifecycle Manager CVE-2016-6095 Brute Force Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95965

Jenkins CVE-2017-2605 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95961

IBM Security Key Lifecycle Manager CVE-2016-6099 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95958

Jenkins CVE-2017-2608 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95953

Jenkins CVE-2017-2607 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95963

Jenkins CVE-2017-2606 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95962

Jenkins CVE-2017-2601 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95960

Jenkins CVE-2017-2612 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95957

Jenkins CVE-2017-2611 Multiple Security Bypass Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95956

Jenkins CVE-2017-2604 Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95959

Jenkins CVE-2017-2603 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95955

Jenkins CVE-2017-2602 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95952

Jenkins CVE-2017-2600 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95954

IBM Security Key Lifecycle Manager CVE-2016-6103 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95950

Jenkins CVE-2017-2610 HTML Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95951

Jenkins CVE-2017-2599 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95949

Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938
Jenkins CVE-2017-2598 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95948

Cisco Prime Service Catalog CVE-2017-3810 Open Redirection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95947

Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938

bitlbee-libpurple CVE-2016-10188 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95935

Cisco ASR 1000 Series Routers CVE-2017-3820 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95934

Cisco Prime Home CVE-2017-3791 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95933

BitlBee Incomplete Fix CVE-2017-5668 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95932

Brocade Virtual Traffic Manager CVE-2016-8201 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95930

BitlBee CVE-2016-10189 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95931

Apache Groovy CVE-2016-6497 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95929

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95921Cisco Industrial Ethernet 2000 Series Switches CVE-2017-3812 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95946

EMC Isilon InsightIQ CVE-2017-2765 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95945

Cisco Firepower Device Manager CVE-2017-3822 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95944

Multiple Cisco Products CVE-2017-3806 Local Command Injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95943

Cisco Firepower System Software CVE-2017-3814 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95942

Cisco Firepower Management Center CVE-2017-3809 Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95941

WordPress 'class-wp-rest-posts-controller.php' Privilege Escalation Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95940

Cisco Email Security Appliance for AsyncOS CVE-2017-3818 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95939

Cisco cBR Series Converged Broadband Routers CVE-2017-3824 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95937

EMC Smarts Network Configuration Manager CVE-2017-2768 Remote Security Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95936

EMC Smarts Network Configuration Manager CVE-2017-2767 Remote Code Execution Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95938

bitlbee-libpurple CVE-2016-10188 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95935

Cisco ASR 1000 Series Routers CVE-2017-3820 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95934

Cisco Prime Home CVE-2017-3791 Authentication Bypass Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95933

BitlBee Incomplete Fix CVE-2017-5668 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95932

Brocade Virtual Traffic Manager CVE-2016-8201 Cross Site Request Forgery Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95930

BitlBee CVE-2016-10189 Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95931

Apache Groovy CVE-2016-6497 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95929

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-02
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-02
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-02
http://www.securityfocus.com/bid/95918

SANS News

Multiple vulnerabilities discovered in popular printer models

Threatpost

Latest Ubuntu Update Includes OpenSSL Fixes

HTTPS Hits 50 Percent Traffic Milestone

Google Adds Security Key Enforcement to G Suite Apps, Hosted S/MIME to Gmail

Exploit

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (PoC)

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

Microsoft Windows 10 - SMBv3 Tree Connect (PoC)

Ghostscript 9.20 - 'Filename' Command Execution

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (PoC)

WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection Arbitrary Code Execution

Ghostscript 9.20 - 'Filename' Command Execution

QNAP NVR/NAS - Buffer Overflow

1.2.2017

Bugtraq

[security bulletin] HPESBHF03700 rev.1 - HPE iMC PLAT, Remote Disclosure of Information, Denial of Service (DoS) 2017-01-31
security-alert hpe com

[SECURITY] [DSA 3778-1] ruby-archive-tar-minitar security update 2017-01-31
Salvatore Bonaccorso (carnil debian org)

[security bulletin] HPESBGN03696 rev.1 - HPE Helion Eucalyptus, Remote Escalation of Privilege 2017-01-31
security-alert hpe com

[security bulletin] HPSBHF03693 rev.1 - HPE iMC PLAT Network Products running Microsoft SQL Server, Remote Elevation of Privilege 2017-01-31
security-alert hpe com

ESA-2017-007: EMC Documentum eRoom Unverified Password Change Vulnerability 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

ESA-2016-094: RSA BSAFE Micro Edition Suite Multiple Vulnerabilities 2017-01-31
EMC Product Security Response Center (Security_Alert emc com)

[REVIVE-SA-2017-001] Revive Adserver - Multiple vulnerabilities 2017-01-31
Matteo Beccati (matteo beccati com)

[security bulletin] HPESBMU03701 rev.1 - HPE Smart Storage Administrator, Remote Arbitrary Code Execution 2017-01-30
security-alert hpe com

Secunia Research: libarchive "lha_read_file_header_1()" Out-Of-Bounds Memory Access Denial of Service Vulnerability 2017-01-30
Secunia Research (remove-vuln secunia com)

Malware

Backdoor.Mapkill

Trojan.Quasar

Backdoor.Chches

Phishing

MBNA credit card

1st February 2017

YOUR MBNA CREDIT CARD

Vulnerebility

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95885

Bzrtp CVE-2016-6271 Man in the Middle Spoofing Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95928

RoundCube Webmail 'content page' HTML-injection Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90880

BlackBerry Enterprise Server CVE-2016-3130 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95924

Zimbra Collaboration Suite CVE-2016-3408 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95923

Zimbra Collaboration Suite CVE-2016-4019 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95922

HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95918

Huawei HwVmall CVE-2017-2694 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95915

Huawei Smart Phones CVE-2017-2708 Local Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95911

HP Intelligent Management Center CVE-2016-8525 Remote Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95912

Joyent SmartOS CVE-2016-9039 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95916

phpMyAdmin CVE-2016-6621 Server Side Request Forgery Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95914

Atlassian JIRA CVE-2016-6285 Cross Site Scripting Vulnerabiliy
2017-02-01
http://www.securityfocus.com/bid/95913

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93037

Google Android CVE-2016-0823 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/84265

Linux Kernel 'net/rds/recv.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91021

Red Hat Enterprise Linux 'USB Device Descriptor' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/77030

Linux Kernel 'net/llc/af_llc.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90015

HarfBuzz CVE-2015-8947 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92039

HarfBuzz CVE-2016-2052 Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/81812

HP Helion Eucalyptus CVE-2016-8528 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95910

Calibre CVE-2016-10187 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95909

BINOM3 Electric Power Quality Meter Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/93028

Mp3splt 'options_manager.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95908

Mp3splt 'cue.c' Null Pointer Dereference Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95906
HexChat CVE-2016-2233 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95920

Foxit PDF Toolkit Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95356

Huawei EMUI Directory Traversal and Command Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95919

Zimbra Collaboration Suite CVE-2016-3999 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95921

Zimbra Collaboration Suite CVE-2016-3415 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95917

Zimbra Collaboration Suite CVE-2016-3414 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95918

Huawei HwVmall CVE-2017-2694 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95915

Huawei Smart Phones CVE-2017-2708 Local Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95911

HP Intelligent Management Center CVE-2016-8525 Remote Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95912

Joyent SmartOS CVE-2016-9039 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95916

phpMyAdmin CVE-2016-6621 Server Side Request Forgery Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95914

Atlassian JIRA CVE-2016-6285 Cross Site Scripting Vulnerabiliy
2017-02-01
http://www.securityfocus.com/bid/95913

Linux Kernel SCSI arcmsr Driver CVE-2016-7425 Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93037

Google Android CVE-2016-0823 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/84265

Linux Kernel 'net/rds/recv.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91021

Red Hat Enterprise Linux 'USB Device Descriptor' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/77030

Linux Kernel 'net/llc/af_llc.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90015

HarfBuzz CVE-2015-8947 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92039

HarfBuzz CVE-2016-2052 Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/81812

HP Helion Eucalyptus CVE-2016-8528 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95910

Calibre CVE-2016-10187 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95909

BINOM3 Electric Power Quality Meter Multiple Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/93028

Mp3splt 'options_manager.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95908

Mp3splt 'cue.c' Null Pointer Dereference Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95906

Ecava IntegraXor CVE-2016-8341 Multiple SQL Injection Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95907

Oracle VM VirtualBox CVE-2017-3316 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95579

Oracle VM VirtualBox CVE-2017-3332 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95599

Oracle VM VirtualBox CVE-2017-3290 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95601

Oracle VM VirtualBox CVE-2016-5545 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95590

IBM Security Key Lifecycle Manager CVE-2016-6117 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95905Oracle VM VirtualBox CVE-2017-3316 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95579

Oracle VM VirtualBox CVE-2017-3332 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95599

Oracle VM VirtualBox CVE-2017-3290 Local Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95601

Oracle VM VirtualBox CVE-2016-5545 Remote Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95590

IBM Security Key Lifecycle Manager CVE-2016-6117 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95905

Linux Kernel CVE-2012-6704 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95135

Linux Kernel CVE-2017-5551 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95717

Google Android CVE-2016-8399 Remote Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94708

Linux Kernel 'kvm/emulate.c' Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94615

Linux Kernel 'net/core/sock.c' Multiple Local Memory Corruption Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94655

Linux Kernel CVE-2016-9685 Multiple Local Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94593

Linux Kernel Out-Of-Bounds Read Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94479

Linux Kernel CVE-2016-8632 Local Heap Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94211

Linux Kernel 'crypto/algif_hash.c' Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94309

Linux Kernel CVE-2015-8962 Memory Corruption Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94187

Linux Kernel CVE-2016-8633 Local Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94149

Linux Kernel Multiple Information Disclosure Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94138

Linux Kernel CVE-2016-7042 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93544

Linux kernel Local Use After Free Multiple Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/94135

Google Android Multiple Kernel Components Multiple Information Disclosure Vulnerabilites
2017-02-01
http://www.securityfocus.com/bid/93326

Linux Kernel 'tcp_xmit_retransmit_queue()' Function Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92452

Linux Kernel CVE-2016-6480 Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92214

Linux Kernel CVE-2016-7117 Use-After-Free Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93304

Linux Kernel CVE-2016-3841 Multiple Privilege Escalation Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/92227

Linux Kernel Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/92659

Linux kernel 'key_reject_and_link()' Function Local Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91211

Linux kernel 'ppp_generic.c' Use After Free Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90605

Linux Kernel 'usbhid/hiddev.c' Local Heap Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91450

Linux Kernel CVE-2016-1583 Stack-Based Buffer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/91157

Linux Kernel 'fs/isofs/rock.c' Local Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90730IBM Tivoli Key Lifecycle Manager CVE-2016-6105 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95904

McAfee Agent CVE-2017-3896 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95903

IBM License Metric Tool and BigFix Inventory CVE-2016-8967 Information Disclosure Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95902

Zimbra Collaboration Suite CVE-2016-3410 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95900

Zimbra Collaboration Suite CVE-2016-3411 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95901

Zimbra Collaboration Suite CVE-2016-3412 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95899

SHDesigns Resident Download Manager CVE-2016-6567 Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95898

Zimbra Collaboration Suite CVE-2016-3407 Multiple Unspecified Cross-Site Scripting Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95897

Zimbra Collaboration Suite CVE-2016-3409 Unspecified Cross-Site Scripting Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95896

Zimbra Collaboration Suite CVE-2016-3413 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95895

Zimbra Collaboration Suite CVE-2016-3404 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95894

ISC BIND CVE-2016-9444 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95393

ISC BIND CVE-2016-8864 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/94067

ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95386

Airwatch Agent for Android CVE-2017-4895 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95892

EMC Documentum eRoom CVE-2017-2766 Admin Password Change Authentication Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95893

VMWare Airwatch Inbox for Android CVE-2017-4896 Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95889

IBM AIX CVE-2017-1093 Local Privilege Escalation Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95891

OpenSSL CVE-2016-8610 Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/93841

Cisco WebEx Extension 'magic URL' Remote Command Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95737

Zimbra Collaboration Suite CVE-2016-3406 Multiple Cross Site Request Forgery Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95890

IBM AIX CVE-2016-8944 Local Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95888

PEAR Base System CVE-2017-5630 Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95882

Zimbra Collaboration Suite CVE-2016-3405 Multiple Unspecified Security Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95886

Zimbra Collaboration Suite CVE-2016-3402 Unspecified Security Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95887

Trend Micro Virtual Mobile Infrastructure CVE-2016-6270 Remote Code Execution Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95884

OnionShare '/tmp/onionshare' Directory Local Security Bypass Vulnerability
2017-02-01
http://www.securityfocus.com/bid/90821

Botan CVE-2016-9132 Integer Overflow Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95879

QEMU 'sdhci.c' Denial of Service Vulnerability
2017-02-01
http://www.securityfocus.com/bid/95885

wavpack Multiple Out of Bounds Reads Local Denial of Service Vulnerabilities
2017-02-01
http://www.securityfocus.com/bid/95883

SANS News

Quick Analysis of Data Left Available by Attackers

Threatpost

Nicolas Brulez on Malware Reverse Engineering Tips and Tricks

Ugly Password Gaffe Plagues Cryptkeeper Encryption App

Flaws Found in Popular Printer Models

Trump Cyber Executive Order Calls for 60-Day Review

Zimperium Program Buys Exploits for Patched Mobile Vulnerabilities

Exploit

Google Android - 'cfp_ropp_new_key_reenc' and 'cfp_ropp_new_key' RKP Memory Corruption

Google Android - Unprotected MSRs in EL1 RKP Privilege Escalation

Apple WebKit - 'HTMLFormElement::reset()' Use-After Free

Google Chrome - 'HTMLKeygenElement::shadowSelect()' Type Confusion

Apple WebKit - 'HTMLKeygenElement' Type Confusion

Apple WebKit - Type Confusion in RenderBox with Accessibility Enabled

Google Android - RKP Information Disclosure via s2-remapping Physical Ranges

Netman 204 - Backdoor Account / Password Reset

Multiple Netgear Routers - Password Disclosure

Viscosity 1.6.7 - Privilege Escalation

LogoStore - SQL Injection

Joomla! Component JTAG Calendar 6.2.4 - SQL Injection

Viscosity 1.6.7 - Privilege Escalation