-
Adobe Releases Security Updates – Oct 2018
Adobe Releases Security Updates – Oct 2018 Many years ago adobe has two main modules Adam and Eve. Now use….. It looks that adobe products hard to manage memory space. So the critical vulnerabilities happens again. It looks that the software patching hit rate in demanding today. It is better to consider virtual patching now.…
-
An attack on media platform causes exposed nearly 50 million user informations – Sep 2018
In 80’s our daily life without any electronic type social media involves. But we understood that we are avoid to talk to the stranger. As time goes by, internet social media fine tune our mind. As a result we make friend and relies on this communication platform. Since this is a popular open platform. It…
-
DNSSEC Key Signing Key Rollover – 11th Oct 2018
Even Though end user not affected by the DNSSEC Key Signing Key Rollover. But at least we know the internet world what is happening. For more detail, please refer below url for reference. https://www.icann.org/ If run below command , result display (dnssec-failed.org. 7200 IN 69.252.80.75). It shown that DNSSEC is off. $ dig @$server dnssec-failed.org…
-
CVE-2018-17082 – PHP Apache2 Component Transfer-Encoding – chunked Request Cross-Site Scripting Vulnerability
XSS vulnerabilities looks common in application world. But do not contempt this issue. A vulnerability in the php_handler function of PHP could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack on a targeted system. XSS attack has different ways. For instance XSS callback,…etc PHP has confirmed the vulnerability and released software…
-
Cisco Releases Security Updates for Multiple Products – September 26 and Oct 17, 2018
-
Open vSwitch 2.7.x vulnerabilities – Sep 2018
In the past, servers would physically connect to a hardware-based switch located in the data center. When VMware created server virtualization the access layer changed from having to be connected to a physical switch to being able to connect to a virtual switch. This virtual switch is a software layer that resides in a server…
-
Rockwell Automation RSLinx Classic cyber security alert! 20th Sep 2018
Perhaps we believe that the vulnerability of industrial automation system or SCADA merely happens on Microsoft product. As a matter of fact, Linux OS base system do not have exception. They are also vulnerable! Below vulnerabilties details was found on Rockwell RSLinx Classic. RSLinx Classic is an inclusive communication server which provides plant-floor device connectivity…
-
Apple Releases Security Update for macOS Mojave – 24th Sep 2018
The Mid-Autumn Festival is a harvest festival celebrated notably by the Chinese and Vietnamese people. Perhaps this is a specify day for celebration and traditional people will take rest and do the family dinner gathering.Cyber world operation looks does not have holiday. This is the robot life. Perhaps you and me do not want to…
-
Hypothesis – About the cyber attack on Port of Barcelona (Sep 2018)
We heard that the Port of Barcelona suffers an attack of hackers last week (20th Sep 2018). The logistics and transportation industry lure hackers’ interest because they can extort ransom. There is no official or incident details announcement till today. The following details merely my personal imagination of this incident. Any resemblance to actual events…
-
SAP security Patch Day – 11th Sep 2018
Nowadays, the trend of business industries are bring their application on top of Cloud services. But some of the firm has reluctant to cloud because they are concerning about data breaches, data ownership and different areas of law regulations. As a matter of fact, doing the cyber security protection on your own or without managed…