A malicious PyPI package “aiocpa,” that stole crypto wallet data via obfuscated code, has been removed after being reported by Reversing Labs researchers
Daily Archives: November 28, 2024
GodLoader Malware Infects Thousands via Game Development Tools
A new cyber-attack technique uses Godot Engine to deploy undetectable malware via GodLoader, infecting more than 17,000 devices
Mimic ransomware: what you need to know
What makes Mimic particularly unusual is that it exploits the API of a legitimate Windows file search tool (“Everything” by Voidtools) to quickly locate files for encryption.
Find out more about the threat in my article on the Tripwire State of Security blog.
webkitgtk-2.46.4-1.fc41
FEDORA-2024-472d01833c
Packages in this update:
webkitgtk-2.46.4-1.fc41
Update description:
Improve memory consumption and performance of Canvas getImageData.
Fix preserve-3D intersection rendering.
Fix video dimensions since GStreamer 1.24.9.
Fix the HTTP-based remote Web Inspector not loading in Chromium.
Fix content filters not working on about:blank iframes.
Fix several crashes and rendering issues.
Fix CVE-2024-44308, CVE-2024-44309
webkitgtk-2.46.4-1.fc40
FEDORA-2024-4014fa4ecc
Packages in this update:
webkitgtk-2.46.4-1.fc40
Update description:
Improve memory consumption and performance of Canvas getImageData.
Fix preserve-3D intersection rendering.
Fix video dimensions since GStreamer 1.24.9.
Fix the HTTP-based remote Web Inspector not loading in Chromium.
Fix content filters not working on about:blank iframes.
Fix several crashes and rendering issues.
Fix CVE-2024-44308, CVE-2024-44309
Malicious Actors Exploit ProjectSend Critical Vulnerability
This vulnerability was patched in May 2024 but was only allocated a CVE in November after evidence of exploitation
Critical Vulnerabilities Discovered in Industrial Wireless Access Point
Customers of Advantech’s EKI-6333AC-2G industrial-grade wireless access point have been urged to update their devices to new firmware versions
Albanian Drug Smugglers Busted After Cops Decrypt Comms
European police have arrested 21 individuals linked to a violent Albanian gang after decrypting their Sky ECC communications
thunderbird-128.5.0-1.fc41
FEDORA-2024-07f6b6766c
Packages in this update:
thunderbird-128.5.0-1.fc41
Update description:
Update to 128.5.0
https://www.thunderbird.net/en-US/thunderbird/128.5.0esr/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-68/
thunderbird-128.5.0-1.fc40
FEDORA-2024-515180fdb3
Packages in this update:
thunderbird-128.5.0-1.fc40
Update description:
Update to 128.5.0
https://www.thunderbird.net/en-US/thunderbird/128.5.0esr/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-68/