Security Affairs

Pierluigi Paganini October 09, 2015
Time to update your Veeam to fix a VeeamVixProxy Vulnerability

The vulnerability allows a local unprivileged user of a Windows guest to gain Local and/or Domain Administrator access when VeeamVixProxy is active, the de-facto default in VMWare and Hyper-V environments. Pasquale `sid` Fiorillo, Francesco `ascii` Ongaro from ISGroup, an Italian Security firm, and Antonio `s4tan` Parata from ush team, have just released a critical security […]

Pierluigi Paganini October 08, 2015
Someone could break the Bitcoin Network on demand

Researcher with the pseudonym of “Alister Maclin” claims to be able to break Bitcoin network on demand by running the malleability attack. According to MotherBoard, a researcher with the pseudonym of “Alister Maclin” claims to be able to break Bitcoin on demand. The experts detailed a technique of attack dubbed malleability attack that could allow attackers […]

Pierluigi Paganini October 04, 2015
Security Affairs newsletter Round 29 – Best of the week from best sources

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from the best sources free for you in your email box. Cisco released a tool to scan for SYNful_Knock implants Aerospace Probes released to stratosphere for spying weapons Last weeks cookie-vuln wont be the last, security bod says Insult to […]

Pierluigi Paganini October 03, 2015
Scottrade data breach affects 4.6 Million Customers

Online stock brokerage Scottrade has suffered a major data breach that exposed the personal information of 4.6 million customers. Data breach news are making the headlines, while I’m writing about the hack of the crowdfunding website Patreon and the hack of Experian, the news of a data breach suffered by the online stock brokerage Scottrade is […]

Pierluigi Paganini October 01, 2015
New Apple Gatekeeper bypass can allow running rouge applications

Patrick Wardle, director of research at Synack has already demonstrated another method, called Apple dylib hijacking, to bypass Apple GateKeeper. Since the introduction of the Apple Gatekeeper by MAC OSX, many researchers have focused their attention in trying to find flaws affecting it due to bypass Apple security and gain control of a device. Patrick […]

Pierluigi Paganini September 27, 2015
Security Affairs newsletter Round 28 – Best of the week from best sources

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from the best sources free for you in your email box. AVG will sell user’s personal data to third-parties A string could be used to crash Google Chrome Pentagon on manual mission to build nation-wide security database Tech finds 1.5M […]

Pierluigi Paganini September 26, 2015
Card Breach at Hilton Hotel Properties Under Investigation

Hilton Worldwide has issued an official statement informing its customers that the alleged data breach is currently under investigation. As reported by Brian Krebs of Krebs on Security, several sources are claiming that Point-of-Sale (PoS) registers utilized by several businesses operating within a large quantity of Hilton Hotel and franchise properties across the United States. These claims result from the […]

Pierluigi Paganini September 22, 2015
Adobe fixes dozens critical vulnerabilities in Flash Player

Adobe has released a new Flash Player update that patches 23 critical vulnerabilities in the popular software. Update your version asap. Adobe has released a new Flash Player update that fixes 23 critical vulnerabilities in the popular software. According to the security bulletin issued by Adobe, Version 18.0.0.231 and earlier of the Flash Player for Windows and […]

Pierluigi Paganini September 20, 2015
Security Affairs newsletter Round 27 – Best of the week from best sources

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from the best sources free for you in your email box. Lockerpin, the first known Android lock-screen ransomware How did jihadists hack into top UK ministerial emails if no security breach took place? Vodafone Australia has hacked a Fairfax journalist’s […]

Pierluigi Paganini September 20, 2015
A string could be used to crash Google Chrome

It seems incredible, but as already happened for Skype it is possible to crash the latest version of Google Chrome with a simple tiny URL. The flaw was discovered last week by the expert Andris Atteka who filed also a bug report. “Recently I reported a crash bug in Google Chrome (issue #533361). This issue reminded […]