-
Quick overview – Microsoft windows task scheduler design weakness
It’s hard to imagine the destructive power of a privilege escalation vulnerability? Security Guru found zero day or system design weakness in Windows OS system. It looks that zero day not rare issue but this time the first pier of announcement was not the vendor. May be we wait for next Patch Tue to do…
-
Path Traversal Vulnerability – CVE-2018-0464
In application penatration test environment. A path traversal attack not rare. Most common, it manipulating variables that reference files with “dot-dot-slash (../)” sequences and its variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on file system. Nowadays everythings aim to quick and simple. So thin…
-
Invalid certificate on your remote access endpoint or a MITM attack presenting an invalid certificate compromise your workstation.
We heard cyber attack causes privileges escalation. Thus technology expert in creative way discover many solution to avoid such behavior happen. Perhaps we are focusing the patch management, antivirus signature update, malware detector yara rules. A silent way similar penetrate to your end point devices, even though server side will be compromised of this attack.…
-
SIEMENS Vulnerabilities in SIMATIC STEP 7 (TIA Portal) and SIMATIC WinCC (TIA Portal) – Aug 2018
SIMATIC WinCC is a supervisory control and data acquisition (SCADA) and human-machine interface system from Siemens. Due to threats to actors’ interests, manufacturers have recently paid close attention to cybersecurity attacks. Hackers use Microsoft’s operating system entry point to become a channel for SCADA system facilities network attacks. Even Though Microsoft Office also pulled into…
-
Aug 2018 – CVE-2018-8273 | Microsoft SQL Server Remote Code Execution Vulnerability
Above vulnerability looks complicated. It is only effect SQL server 2016 and 2017. I do a debug on the download file. Found the following syntax “ntdll.dll RtlEnterCriticalSection”. It looks that the software patch focus on PageHeap, which is intended for debugging of memory overhead. In Microsoft SQL server 2016 and 2017 environment, each IAM and…
-
Aug 2018: Delta CNCsoft client alert – Suggest update to the latest version of CNCSoft v1.01.09
Computerized Numerical Control (CNC) Machining is a method used to perform a wide range of manufacturing tasks, which are all carried out by computerized devices. … The new CNC machines were able to be controlled by programming language to carry out a wider variety of tasks with greater accuracy. Delta, a world-class provider of…
-
Professional graphic designers, artists, photographers,..must stay alert! Aug 2018
Adobe has released updates for Photoshop CC for Windows and macOS. An attacker could exploit these vulnerabilities to take control of an affected system. See whether the picture can tell the story? Official announcement shown as below (url): https://helpx.adobe.com/security/products/photoshop/apsb18-28.html
-
New alert but old News! Still require attentions (Ghostscript -dSAFER)!
The product name Ghostscript misleading people that it is a undergound hack tool. Actually Ghostscript is a suite of software based on an interpreter for Adobe Systems’ PostScript and Portable Document Format page description languages. And therefore it might install in your computer already. On Oct 2016, Google security expert infomed that we must stay…
-
Aug 2018 – (CVE-2018-12539) – Eclipse OpenJ9 Vulnerabilities
The software expert keen to reduce memory footprint and improve their application performance.Java code can run on different systems, because it relies on the JVM, not on the operational system itself. This is the powerful function of Java plus JVM. Meanwhile, it let’s Java application developers and end users spreading around in the world. The…
-
Do not contempt CVE-2018-6973 (VMware workstation)-Out-of-bounds-write-14thAug2018