Apple props up macOS Catalina with 10.15.1 update

Credit to Author: John E Dunn| Date: Fri, 01 Nov 2019 15:01:56 +0000

A vocal minority of the committed Apple base has been quick to express dissatisfaction at the move to Catalina from macOS 10.14 Mojave.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/Q6JmalYHavU” height=”1″ width=”1″ alt=””/>

Read more

Linux maintainer: Patching side-channel flaws is killing performance

Credit to Author: John E Dunn| Date: Thu, 31 Oct 2019 13:15:11 +0000

Mirror, mirror on the wall, which is the worst side-channel vulnerability of them all?<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/4OlRsV8RD_Y” height=”1″ width=”1″ alt=””/>

Read more

Researchers find hole in EU-wide identity system

Credit to Author: Danny Bradbury| Date: Thu, 31 Oct 2019 12:47:20 +0000

The EU has fixed a flaw in the powerful yet complex eIDAS digital identification system that let people authenticate as someone else.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/pCEuDkvSosQ” height=”1″ width=”1″ alt=””/>

Read more

PHP team fixes nasty site-owning remote execution bug

Credit to Author: Danny Bradbury| Date: Tue, 29 Oct 2019 11:48:14 +0000

The PHP development team has fixed a bug that could allow remote code execution in some setups of the programming language.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/r_X-vIvi4pg” height=”1″ width=”1″ alt=””/>

Read more

Vulnerability in content distribution networks found by researchers

Credit to Author: Danny Bradbury| Date: Thu, 24 Oct 2019 14:41:44 +0000

Researchers have found a flaw that could lead to denial of service attacks on content distribution networks around the world.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/R2nlTpWWhFQ” height=”1″ width=”1″ alt=””/>

Read more

Robot Hotel says sorry about the buggy bedside bots

Credit to Author: Lisa Vaas| Date: Thu, 24 Oct 2019 14:39:48 +0000

Japan’s Henn na Hotel says it’s “modified” the bots so pervs can’t exploit the ability to run unsigned code and spy on future guests.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/6qgRyj8P2OY” height=”1″ width=”1″ alt=””/>

Read more

Hacker breached servers used by NordVPN

Credit to Author: John E Dunn| Date: Wed, 23 Oct 2019 12:41:12 +0000

NordVPN has been forced to admit that a hacker stole an expired TLS certificate key used to securely connect customers to its web servers.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/f5mz8QmYkC8″ height=”1″ width=”1″ alt=””/>

Read more

Vatican launches smart rosary – complete with brute-force flaw

Credit to Author: Danny Bradbury| Date: Tue, 22 Oct 2019 13:40:16 +0000

Now fixed, the Vatican’s new fitness-and-prayer eRosary and its accompanying app, Click to Pray, were found to have a serious privacy bug.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/U2BKBl-hm44″ height=”1″ width=”1″ alt=””/>

Read more

A week in security (October 14 – 20)

Credit to Author: Malwarebytes Labs| Date: Mon, 21 Oct 2019 15:45:45 +0000

Cybersecurity news for October 14 – 20, including the future of the password, the lingering threat of ransomware, and new security features from Instagram.

Categories:

Tags:

(Read more…)

The post A week in security (October 14 – 20) appeared first on Malwarebytes Labs.

Read more

Samsung Galaxy S10 fingerprint reader beaten by $3 gel protector

Credit to Author: John E Dunn| Date: Mon, 21 Oct 2019 11:22:01 +0000

The fingerprint reader on Samsung’s flagship S10 and Note10 smartphones can be spoofed with a $3 screen protector.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/aBFtLqNUr_M” height=”1″ width=”1″ alt=””/>

Read more