-
Yammer Desktop Application Remote Code Execution Vulnerability – 19th Oct 2018
The Yammer desktop app is a native client for Mac and Windows with the full functionality of Yammer. Along with streamlined log in and SSO support, the app integrates with native operating system capabilities such as notifications, shortcuts, and launch on startup. Microsoft announce vulnerability occurs today. But it looks that it is a old…
-
Unknown APT reference number ? Suspect that it targeting Advantech WebAccess/SCADA customer
Advantech, a leader within the IPC global market. Advantech offers a comprehensive IPC product range that delivers reliability and stability for extreme environments, providing its customers with a one-stop shopping experience implementing Industry 4.0 and fulfilling their Industrial IoT needs. IoT and SCADA are the APT (Advanced Persistent threat) targeting devices so far. Meanwhile…
-
Oracle Releases October 2018 Security Bulletin – Stay alert!
Oracle has released a gamut security update to address high amounts of vulnerabilities in its various enterprise products. The official vulnerability checklist includes some follow up actions given by 2016 and 2017. Perhaps we focus vulnerability in frequent and do the priority of analysis for the score. Even though the vulnerability score is important. But…
-
VMWARE ESXi,Workstation and Fusion out-of-bounds read vulnerability in SVGA device – 16thOct2018
Malware authors constantly seek new methods to obfuscate their code so as to evade detection by virus scanners. Have you heard shader code? In order to avoid the vulnerability occurs, VMware Releases Security Updates on October 16, 2018. ESXi has an out-of-bounds read vulnerability in the SVGA device that might allow a guest to execute…
-
TIBCO Spotfire Statistics Services remote execution vulnerabilities – Oct 2018
Theoretically, big data analytics is the often complex process of examining large and varied data sets to uncover information including hidden patterns and unknown correlation. Basically it can help organizations make informed business decisions. Since you can use the URL API to send administration, expression, or function requests to the TIBCO web server. Use the…
-
Reflections – New 5G network edge server design
NSA Senior Cybersecurity Advisor questions Bloomberg Businessweek’s China iCloud spy chip claim (see below url) http://macdailynews.com/2018/10/10/nsa-senior-cybersecurity-advisor-questions-bloomberg-businessweeks-china-icloud-spy-chip-claim/ Now we take a quick discussion but do not related to conspiracy. From technical point of view, if hardware is polluted (spy feature). It is hard to imagine what the impact was? In the SD-branch, routing, firewall, and WAN…
-
Advisory on PHP Vulnerabilities – 12th Oct 2018
The Multi-State Information Sharing & Analysis Center (MS-ISAC) has released an advisory on multiple Hypertext Preprocessor (PHP) vulnerabilities today (refer below url): https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-php-could-allow-for-arbitrary-code-execution_2018-113/ Perhaps PHP program version will make you frustrated. Why? The vulnerabilities addressed by MS-ISAC only for Version 7.2.11 & Version 7.1.23. However there is another fix coming soon (see below): PHP 7.1.24…
-
Five publicly available tools, which have been used for malicious purposes – Oct 2018
US-Cert urge that there are total five publicly available tools, which have been used for malicious purposes in recent cyber incidents around the world (see below): Remote Access Trojan: JBiFrost Webshell: China Chopper Credential Stealer: Mimikatz Lateral Movement Framework: PowerShell Empire C2 Obfuscation and Exfiltration: HUC Packet Transmitter RSA found a malware in 2017 and…
-
Auto-Maskin DCU 210E RP 210E and Marine Pro Observer App design limitation – Oct 2018
Sometimes, vulnerabilities open to public but the response of vendor not as expected efficiency. Still remember that a announcement issued by US Cert on 6th Oct 2018. The details shown that the electronic manufacture product by Auto-Maskin has encountered four different vulnerabilities. Perhaps the remediation not release from manufacture in the moment because the firmware…
-
Juniper Networks Releases Security Update – 10th Oct 2018
Junos OS is the FreeBSD-based operating system used in Juniper Networks routing, switching and security devices. Starting in Junos OS Release 16.1, It did not maintain the SDK programming function. But alternative feature provides a rich set of APIs to program the Junos OS control plane. JET allows users to build applications on top of Junos…