Attackers Circumvent Two Factor Authentication Protections to Hack Reddit
Online community site Reddit announced Wednesday that it was breached in June 2018. In a refreshingly candid advisory, it provides a basic explanation of how the incident occurred, details on…
Read MorePhishing Campaign Targets Four Hundred Industrial Organizations
A new wave of spear-phishing emails masquerading as legitimate procurement and accounting letters have hit over 400 industrial organizations, according to Kaspersky Lab. Data collected by Kaspersky showed that the…
Read MoreTTCSIRT-152.080218: TT-CSIRT Advisory – Cisco Security Updates
Cisco has released a security update stating that a vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system…
Read MoreTTCSIRT-151.080218: TT-CSIRT Advisory – Linux Security Updates
Kernel.org has released a security update stating that a vulnerability in the Kernel-based Virtual Machine (KVM) virtualization subsystem of the Linux Kernel exists due to the vmx.c source code file…
Read MoreTTCSIRT-150.072718: TT-CSIRT Advisory – PHP Security Updates
PHP has released a security update stating that the following vulnerabilities have been found in PHP 7: Ver 7.2.8 Bug #71848 – Getimagesize with $imageinfo returns false Bug #73342 –…
Read MoreTTCSIRT-149.072718: TT-CSIRT Advisory – Chrome Security Updates
Google has released a security update stating that the following vulnerabilities have been discovered in Google Chrome: a) CORS bypass in Blink – (CVE-2018-6168) b) Cross origin information leak in…
Read More