Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP addresses, usernames, store names and other sensitive information.
Daily Archives: August 21, 2023
AT&T Cybersecurity wins SC Media Award for Best Threat Intelligence
Today, SC Media announced the winners of its annual cybersecurity awards for excellence and achievements.
At AT&T Cybersecurity we are thrilled that AT&T Alien Labs was awarded Best Threat Intelligence in this prestigious competition. The Alien Labs team works closely with the Open Threat Exchange (OTX), an open and free platform that lets security professionals easily share, research, and validate the latest threats, trends and techniques.
With more than 200,000 global security and IT professionals submitting data daily, OTX has become one of the world’s largest open threat intelligence communities. It offers context and details on threats, including threat actors, organizations and industries targeted, and related indicators of compromise.
The full list of winners is here.
CVE-2022-4367
USN-6303-2: ClamAV vulnerability
USN-6303-1 fixed a vulnerability in ClamAV. This update provides
the corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS,
and Ubuntu 18.04 LTS.
Original advisory details:
It was discovered that ClamAV incorrectly handled parsing HFS+ files. A
remote attacker could possibly use this issue to cause ClamAV to crash,
resulting in a denial of service.
Deceptive AI Bots Spread Malware, Raise Security Concerns
ESET said Facebook promoted the download of what seemed to be Google’s Bard AI tool
mingw-qt5-qtbase-5.15.10-4.fc38
FEDORA-2023-0e68827d36
Packages in this update:
mingw-qt5-qtbase-5.15.10-4.fc38
Update description:
Backport fix for CVE-2023-37369.
mingw-qt5-qtbase-5.15.10-4.fc37
FEDORA-2023-fd45b50121
Packages in this update:
mingw-qt5-qtbase-5.15.10-4.fc37
Update description:
Backport fix for CVE-2023-37369.
New Chrome Feature Alerts Users About Malicious Extensions
The feature, called the “Safety Check,” is designed to address three specific scenarios
New NCUA Rule Requires Swift Cyber Incident Reporting
Credit unions will be obligated to notify the NCUA about any cyber incident within 72 hours
libqb-2.0.8-1.fc38
FEDORA-2023-5a717dd33d
Packages in this update:
libqb-2.0.8-1.fc38
Update description:
Update libqb for CVE-2023-39976