New ‘PyRoMineIoT’ Malware Spreads via NSA-Linked Exploit
A recently discovered piece of crypto-currency miner malware isn’t only abusing a National Security Agency-linked remote code execution exploit to spread, but also abuses infected machines to scan for vulnerable…
Read MoreCode Signing Flaw Affects all Mac OS Versions Since 2005
Okta Rex (Research and Exploitation) researcher Josh Pitts has discovered a method of exploiting the code signing mechanism in MacOS. If exploited, the flaw could allow malicious untrusted code to…
Read MoreTTCSIRT-130.061218: TT-CSIRT Advisory – Cisco Security Updates
Cisco has released a security update stating that a vulnerability has been discovered in Cisco Adaptive Security Appliance (ASA) which could allow an unauthenticated, remote attacker to cause an affected…
Read MoreTTCSIRT-129.061218: TT-CSIRT Advisory – Android Security Updates
Google has released a security update stating that the following vulnerabilities have been discovered in the Android OS: a) Multiple information disclosure vulnerabilities in Framework – (CVE-2017-13227, CVE-2018-9340). b) Multiple…
Read MoreTTCSIRT-128.060818: TT-CSIRT Advisory – Mozilla Security Updates
Mozilla has released a security update stating that a vulnerability in the Mozilla Firefox Browser exists where a heap buffer overflow can occur in the Skia library when rasterizing paths…
Read MoreTTCSIRT-127.060818: TT-CSIRT Advisory – Adobe Security Updates
Adobe has released a security update stating that Adobe Flash Player is prone to the following vulnerabilities: a) A stack-based buffer overflow that could allow for arbitrary code execution –…
Read More