Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2890282 times)

0 Members and 1 Guest are viewing this topic.

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5160 on: March 14, 2017, 04:55:45 PM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5161 on: March 14, 2017, 05:26:12 PM »
Present-day WWW looks as fragile as a sand-castle

Exploitable javascript code libraries all over the place.

Inherently holed and insecure infrastructure.

And it won't be any better for the forseeable future.

Read: https://www.theregister.co.uk/2017/03/14/outdated_javascript_libraries_weaken_web_security/

Some here, inclusing little old me, are hammering the subject endlessly but almost in vain,
almost as not a soul seems interested to do something about it.

Hey baby, baby,  it is a wild wild wild world out there on most of these insecure online websites!
Interesting survey results for those interested in website development and security: https://stackoverflow.com/insights/survey/2016

polonus (volunteer website security analyst and website error-hunter)
« Last Edit: March 14, 2017, 05:36:57 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5163 on: March 17, 2017, 07:15:55 PM »
AV the fine balance between protecting your private data and being a concern or threat to your privacy?

Read: https://www.theregister.co.uk/2017/03/17/security_software_is_a_threat_to_your_privacy_too/

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5164 on: March 18, 2017, 03:03:41 AM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5165 on: March 18, 2017, 02:25:06 PM »
All firefox users should read here, it was Pwn2Own hacked the other day, see: https://forum.avast.com/index.php?topic=199002.msg1378499#msg1378499  and here: http://forums.mozillazine.org/viewtopic.php?f=38&t=2888507
to see the problems with run of the mill browsers go on and on in an endless stream.

Thanks to -midnight for a very early heads-up  ;)

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89061
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5166 on: March 18, 2017, 02:42:51 PM »
All firefox users should read here, it was Pwn2Own hacked the other day, see: https://forum.avast.com/index.php?topic=199002.msg1378499#msg1378499  and here: http://forums.mozillazine.org/viewtopic.php?f=38&t=2888507
to see the problems with run of the mill browsers go on and on in an endless stream.

<snip>

Not sure if your 2nd link is valid/current, given it is was Posted November 14th, 2014, 12:11 pm. All Browsers are constantly under attack, the more market share, the more of a target they will be.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5167 on: March 18, 2017, 03:22:59 PM »
@DavidR,

The second link was to show how that same issue now via an integer overflow was used (revived in another context) in the most recent Pwn2Own hack.

So insecurity is like music being played from a Dutch grinding organ. They use the same blocks (flaws) over and over again to play their favourite tunes and melodies.

Here a golden oldie from 2014 was revived. This is because digital infrastructure is insecure by design. So we have started out with a "a priori"unsafe aka insecure model and have built further onto that.

What has been INsecure from the word go, can never be secure(d) again or it has to be re-built up again from scratch and no one will or can (afford to) do that. We have to live in that world now. Do not trust a thing, and look for a bug everywhere around you, disclosed or not.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89061
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5168 on: March 18, 2017, 03:38:26 PM »
@DavidR,

The second link was to show how that same issue now via an integer overflow was used (revived in another context) in the most recent Pwn2Own hack.
<snip>
polonus

The same can be said of all browsers and if you want Microsoft Windows, we are still getting security updates for the same sort of issues time and again, Permission Escallation, etc. going back through all of the Window OS releases purporting to be the most secure yet.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5169 on: March 21, 2017, 03:49:51 AM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48566
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5170 on: March 21, 2017, 01:29:26 PM »
Big Surprise: Chinese PUPs Deliver Backdoored Drivers
https://www.bleepingcomputer.com/news/security/big-surprise-chinese-pups-deliver-backdoored-drivers/
"For recent Windows 10 versions, the driver won't load past build 14393 or version 1607."
Another reason to update to the latest version of Windows 10.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5171 on: March 21, 2017, 11:38:14 PM »
Vast increase of hacked websites seen: https://webmasters.googleblog.com/2017/03/nohacked-year-in-review.html

This is unfortunate news and it means that the likes of Eddy, others and little old me will have to report many more malicious, suspicious and insecure websites in the coming future in the "virus and worms section" of these here forums.

If only people would only update & patch, better secure & use best practices, better configure & better retire what is unsafe, we would not be in that awfully insecure infrastructure situation we have now.

Alas the situation gets worse and worse and as far as I can see no better times in sight.

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5172 on: March 22, 2017, 06:56:43 AM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5173 on: March 23, 2017, 07:29:13 AM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33902
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5174 on: March 24, 2017, 06:13:26 PM »
GoDaddy acquires Sucuri's. Often the claims that websites were fully secured seemed not quite appropriate.

Will Sucuri offer similar services in the future, like they did in the past, seems to be seen.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!