Author: admin

  • May 16, 2018 – Cisco Releases Security Updates

    Cisco Releases Security Updates Original release date: May 16, 2018 Digital Network Architecture Center Static Credentials Vulnerability Digital Network Architecture Center Authentication Bypass Vulnerability Digital Network Architecture Center Unauthorized Access Vulnerability https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-dna Enterprise NFV Infrastructure Software Linux Shell Access Vulnerability https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-nfvis Meeting Server Media Services Denial-of-Service Vulnerability https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-msms Identity Services Engine EAP TLS Certificate Denial-of-Service…

  • Published Wednesday, May 16, 2018 – Red Hat Addresses DHCP Client Vulnerability

    Red Hat has released security updates to address a vulnerability in its Dynamic Host Configuration Protocol (DHCP) client packages for Red Hat Enterprise Linux 6 and 7. An attacker could exploit this vulnerability to take control of an affected system. See whether below command syntax will be the root cause of this problem? For more…

  • May 15, 2018 – VMware releases security update. Alert!

    VMware just released a security update to address a vulnerability in NSX SD-WAN Edge by VeloCloud. I couldn’t find techincal details but vendor state that VeloCloud by VMware will be removing the web ui component service from the product in future releases. My speculation is that the existing design limitation can merge with former vulnerability…

  • Published: 8th May 2018 – MS-Sharepoint Security Vulnerability

    Coming GDPR data protection policy penality drive me to draft this sharepoint point vulnerability discussion topic. Microsoft Dynamics CRM and Microsoft SharePoint are two powerful enterprise applications and very popular in the business world. As a matter of fact many enterprise firm integrate their dataware house platform to Microsoft sharepoint system. However Microsoft sharepoint architecture…

  • Published Monday, May 14, 2018 – Adobe Releases Security Updates

      Death Note is a Japanese manga series. The story describ that if someone’s name is written on it while the writer imagines that person’s face, he or she will die. The computer and smartphone devices who installed adobe acrobat reader are in the similar situation. The vulnerabilities in Adobe Acrobat and Reader and Photoshop…

  • See whether Bitcoin signatures do not comply with RFC 6979

    Have you heard a song by Dinah Washington ? The song title is what a difference a day made? In crypto currency world, bitcoin is the big brother. However technology world still concerns Bitcore signatures is able to comply with RFC 6979 specification? Bitcoin owner must protect the private key. The conceptal idea is that…

  • CVE-2018-10548 – allows remote LDAP servers to cause a denial of service (12th May 2018)

    Have you watch a movie Saturday night fever. From technology world point of view, they are every night fever. As times go by, Cloud computing, single sign-on system become a base in technology world. Even though security expert concern about the data privacy matters or single sign-on unforeseen cyber security issues.  A intangible force driven…

  • Bitcoin Bunker

    We watch the movie, tycoon decide to keep the money in Switzerland. Whatever special of reasons. Swiss made or location provides a secure and best environment to the world. Besides, swiss army knife a symbol of permanent and reliable tool to solider. Just heard from Bloomberg headline news that the Wealthy Are Hoarding $10 Billion…

  • Security Alert – Debug Exception May Cause Unexpected Behavior (8thMay2018)

    CVE-2018-8897 indicate that an unexpected behavior for debug exceptions. A possibility way causes a local attacker could exploit this bug to obtain sensitive information. Regarding to my observation, this issue found on 2008 by system developer accidentally. However the dangerous issue of this vulnerability is that it is difficult to detect. It is hard to…

  • Microsoft Patch Tue security Focus – 8th May 2018

    Microsoft Patch Tue transform to weekly routine security process. As far as I know, IT technical experts are busy for change management control schedule (time window) weekly. For the evaluation of each vulnerability most likely will be do a quick walk-through. As a  matter of fact, engage the patch updating exercise looks time consuming. IT Dept…