-
CVE-2019-0911 Microsoft Edge and Internet Explorer Scripting Engine Memory Corruption Vulnerability – May 2019
Synopsis: As time goes by, cyber criminals formulated phishing scam through email and website visit. It seems to be a main trend. In order to avoid the attack occurs, home users installing antivirus program including malware detector, virus protection and predictive control. If web browser contains vulnerability? What we can do? Vulnerability details: A remote…
-
CVE 2019-11634 Citrix Workspace App before 1904 for windows has incorrect access control – 22nd May 2019
Preface: VDI (Virtual Desktop Infrastructure), one of the way make your IT operations secure. Product overview: Citrix Workspace Suite is a collection of Citrix products that deliver secure access to desktops, data, applications and services to subscribers on any device, and on any network. Vulnerability details: Citrix Workspace App before 1904 for Windows has Incorrect…
-
CVE-2019-11328 Singularity 3.1.0 to 3.2.0-rc2 defect causes privilege escalation on the host – May 2019
Preface: We might have had a debate about the definition of a powerful-enough computer to be called a supercomputer or HPC system. Technical background: When Docker creates a container, it creates a new instance of the above six namespaces, and then puts all the processes in the container into these namespaces, so that processes in…
-
Reflection – Crafted emoji cause WeChat application (for Android) service crash.
Preface: When mobile computing born, cyber attack (botnet attack) and data leakage rapidly growth. Do you think this is the destiny. Observation: A proof of concept shown that a technical limitation occurs on TenCent WeChat 7.0.4 (android version). When a stranger send a craft emoji to WeChat user. The WeChat application will be crashed once…
-
Rampant cyber attacks – Is the healthcare industry suitable for using open source software?
Preface: In our world that is more and more vulnerable to hackers or data breaches. Strategy Challenge: According to data privacy, security matters when choosing new software system today. Can we choose open source software deploy in medical or healthcare areas? If it is possible to use, which is Better for Open Source software? Healthcare…
-
Siemens security advisory – Multiple Vulnerabilities in SIMATIC WinCC, SIMATIC WinCC Runtime,SIMATIC PCS7,SIMATIC TIA Portal (May 2019)
Preface: DCOM is a proprietary Microsoft technology for communication between software components on networked computers. Technical background: High-Level applications use the DCOM client to obtain object references and make ORPC calls on the object. The DCOM client uses the RPC Protocol Extensions to communicate with the object server. Vulnerability details: An authenticated attacker with network…
-
RSA security advisory: CVE-2019-3724 & CVe-2019-3725 – 9th May 2019
Preface: Gartner Reports give people direction, but sometime as a customer, you can select your appropriate product on your decision. For instance cyber security product Technical background: SIEM software products provides real-time analysis of security alerts generated by applications and network hardware. Netwitness can investigate data capture and display the real scenario on screen.It is…
-
CVE-2019-12098 – Heimdal design limitation causes man-in-the-middle attack Vulnerability – 20th May 2019
Preface: Before Kerberos, Microsoft used an authentication technology called NTLM. Technical background: The biggest difference between the two systems is the third-party verification and stronger encryption capability in Kerberos. Kerberos version 4 was targeted at Project Athena in 80s. Neuman and Kohl published version 5 in 1993 to improve the limitations and enhance the security.…
-
New order in the Asia-Pacific region – Cyber security Law 2019
China Cracks Down on Foreign Firms Over Cyber Security, FT Says – two foreign companies that deal with consumer data in China had been under official investigation for several months.For details about the News, please refer below link:https://www.ft.com/content/b84cc734-76ca-11e9-bbad-7c18c0ea0201 Supplement:https://www.bloomberg.com/news/articles/2019-05-16/china-cracks-down-on-foreign-firms-over-cyber-security-ft-says Synopsis: Information technology personnel are familiar with MPLS. But do they understand China’s MLPS (multi-level protection…
-
Security Focus – VMware (May 2019)
Preface: Intel flaw let VMware become victim (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130, and CVE-2019-11091) ! VMware Workstation update addresses a DLL-hijacking issue (CVE-2019-5526) looks not a news? VMware Vulnerability details: VMware Workstation update addresses a DLL-hijacking issue (CVE-2019-5526) – https://www.vmware.com/security/advisories/VMSA-2019-0007.html VMware product updates enable Hypervisor-Specific Mitigations, Hypervisor-Assisted Guest Mitigations, and Operating System-Specific Mitigations for Microarchitectural Data Sampling…