-
New generation of weapon iot+lora+Drone (2019)
Preface: Traditionally, only big country can have military weapon. Computer technology especially IoT devices not only replace human power. As we seen, IoT 4.0 is going to replace routine man power resources. Perhaps IoT technology also infiltrate in military arsenal . Details: On Sep, 2019. Drone attacks have set alight two major oil facilities run…
-
cve-2019-11660 Data protector privilege escalation via omniresolve (Sep 2019)
Prefect: People prefer Veeam because the interface is easier, and Data Protector is difficult in comparison. Product details: Data protector is a backup and disaster recovery solution for large, complex, and heterogeneous IT environments. Vulnerability details: A potential vulnerability has been identified in Micro Focus Data Protector. The vulnerability could be exploited by a low-privileged…
-
Who lives on the moon?
-
Schneider Electric Security Notification – CVE-2019-6811 (Sep 2019)
Product background: The Modicon Quantum Ethernet I/O (QEIO) automation platform is designed to meet the requirements of both the industrial automation and process industries. Vulnerability details: An Improper Check for Unusual or Exceptional Conditions (CWE-754) vulnerability exists, which could cause denial of service when the module receives an IP fragmented packet with a length greater…
-
Dejablue vulnerability – Impact on Siemens Health Products (10th Sep 2019)
For healthcare, cyber attacks can have ramifications beyond financial loss and breach of privacy. Preface: For healthcare, cyber attacks can have ramifications beyond financial loss and breach of privacy. Background: The DejaBlue vulnerabilities are in the early stages of the RDP connection. The flaws precede the authentication phase, thereby there is no need for passwords…
-
CVE-2019-15292 Linux Kernel up to 5.0.8 atalk_proc.c atalk_proc_exit memory corruption
Background: Appletalk support allows your Linux machine to interwork with Apple networks. Below components conduct the specified functions. sysctl_net_atalk.c: sysctl interface to net AppleTalk subsystem. ddp.c: AppleTalk DDP protocol for Ethernet ELAP (ethertalk). atalk_proc.c: proc support for Appletalk The Use-After-Free vulnerability is related to above three components. Even though you do not use ApplyTalk, attacker…
-
Quick and Dirty – walk through CVE-2019-15846
Preface: Quite a lot of cyber security expertise provides their explanation on vulnerability on Exim (A local or remote attacker can execute programs with root privileges). I will do a quick and dirty way to explain. Should you have interested, please refer below: a. Connect to Exim with TLS and send an SNI that ends…
-
CIS Center for Internet Security Urge PHP customer aware of Multiple Vulnerabilities in PHP. Because it could allow for Arbitrary Code Execution. Sep 2019
Preface: Network security experts may hesitate to answer a question. What is it? Which programming language is easy to write. But there are no loopholes. CIS Center for Internet security announcement: Multiple Vulnerabilities in PHP Could Allow for Arbitrary Code Execution For more information, please refer URL – https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-php-could-allow-for-arbitrary-code-execution_2019-087/ Our Observation: One of the component…
-
The Unforgettable computer architecture – I do not mind it has vulnerability occur. Sep 2019
Preface: Quite a number of people think that Mainframe computer no longer exist anymore. However they are still alive. Background: A 3270 Emulator is a terminal emulator that duplicates the functions of an IBM 3270 mainframe computer terminal on a PC or similar microcomputer. Vulnerability details: There is Missing SSL Certificate Validation in the pw3270…
-
Reflections on the Connection Between SSH client and SSH service Daemon – CVE-2019-1580 (PAN-OS – Palo Alto Networks)
Preface: No matter “WAF” or a traditional Layer 3 firewall. The SSH service daemon will be installed because such service is not uncommon. Vulnerability details: Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow a remote, unauthenticated user to craft a message…