-
CVE-2019-10125: aio_poll function hits vulnerability (1st Apr 2019)
Preface: Linus Benedict Torvalds, he is the principal developer of the Linux kernel, which became the kernel for many Linux distributions and operating systems. Vulnerability details: An issue was discovered in aio_poll() in fs/aio.c in the Linux kernel through 5.0.4. A file may be released by aio_poll_wake() if an expected event is triggered immediately (e.g.,…
-
Why APT attack changing their shape?
Preface: We known so far that APT attack aim to lockdown specify attack target. The target will be specifics government regime and the their revenue. This is the modern way not require engage the traditional war. Synopsis: APT attack lure people attention is that they form a structure attack and exploit with malware attacking major…
-
CVE-2019-10063 – Security update for Flatpak, 29th Mar 2019.
Preface: Coding is the process of translating and writing codes from one language to another support operating system platform. What is Flatpak? If Linux user found that the new application not available in the App Stores. He can do the installation via the DEB or RPM packages. Some of them are available via PPAs (for…
-
VMware security updates – 29th Mar 2019
Synopsis: session hijacking, sometimes also known as cookie hijacking is the exploitation of a valid computer session(sometimes also called a session key) to gain unauthorized access to information or services in a computer system. In software development, time of check to time of use (TOCTOU, TOCTTOU or TOC/TOU) is a class of software bugs caused…
-
CVE-2019-9893 – The libseccomp Project has released an update (28th Mar 2019)
Preface: The libseccomp package provides an easy to use and platform independent interface to the Linux kernel’s syscall filtering mechanism. Technical background: Syscall filtering is a security mechanism that allows applications to define which syscalls they should be allowed to execute. Vulnerability detail: The design mistaken doing 64-bit comparisons using 32-bit operators.Whereby, leading to a…
-
CVE-2019-7609 Do not contempt minor flaw, a alert signal for Big data analytic industry – 27th Mar 2019
Preface: Analyzing big data not so easy. Synopsis: Analyzing big data not so easy. It requires knowledge of enterprise search engines for making content from different sources like enterprise database, social media, sensor data etc. searchable to a defined audience. Elasticsearch is one of the free and open source enterprise search software. Vulnerability detail: The…
-
Security Focus – Cisco design weakness – 27th Mar 2019
Preface: Vendor operate in high visibility, initiate fix vulnerabilities means they are more secure than other products. Synopsis: From hardware appliance to software base. From Layer 3 to Layer 7, the growth of operations expanded, it is hard to avoid vulnerability occurs. Vulnerability Details: Cisco IOS and IOS XE Software Network-Based Application Recognition Denial of…
-
CVE-2019-3878: Uninett mod_auth_mellon ECP Authentication Bypass Vulnerability (26th Mar 2019)
Preface: The statistic by Netcraft in January 2019, Apache server coverage market reach 30.88%. Technical background: Apache server not only contain web server service, it can config as a reserve proxy server to enhance the web infrastructure isolation level. Single sign-on authentication method growth significant in past few years. A popular web architecture model, setup…
-
Headline News: ASUS Live Update software encounter Advanced Persistent Threat (APT) groups implant backdoor – 26th Mar 2019
Preface (Attack roadmap): Asus Live Update software installed on laptops and PCs encounter cyber attack in between June and November 2018. Hacker implant a backdoor into the live update software! Observation: ASUS, it configures the network using dynamic host configuration protocol and then makes a plain HTTP request to a remote server to check if…
-
Found CVE-2018-18252, Capmon enhance their privilege command handling technique in new version.
Preface: In order to avoid cyber attack and insider threat. The monitoring feature is a critical feature in IT world. Background: CapMon monitors and collects information from the infrastructure and applications. The system does not require installation of extra software on other units in the network. CapMon IT monitoring has a Web based user interface,…