Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2904843 times)

0 Members and 10 Guests are viewing this topic.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4185 on: October 25, 2015, 06:58:29 PM »
You'll find many examples of these types of emails on this forum: :)
https://forum.avast.com/index.php?topic=81030.msg662592#msg662592
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4188 on: October 26, 2015, 07:43:56 PM »
Is Mac malware on the rise?

https://blog.malwarebytes.org/mac/2015/10/is-mac-malware-on-the-rise/?utm_source=Gplus&utm_medium=social

Yes, it is definitely.

Apple has to ramp up security for sure, better soon than sorry.
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4190 on: October 27, 2015, 01:19:09 PM »
This will be abused grand scale to deliver more spam to your mailboxes: Critical Joomla hole attacked 4 hrs after it being patched: https://www.joomla.org/announcements/release-news/5634-joomla-3-4-5-released.html
Sucuri warns that loads of websites with Joomla CMS have been attacked shortly after the new Joomla release.

As no other, polonus knows how critical CMS security weighs in the balance. One thing to do: update and patch and do not spread extensive info on software to the world and attackers.

polonus (volunteer website security analyst and error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4191 on: October 27, 2015, 06:20:00 PM »
That is the single most important thing a website/server owner could do is to keep their software up-to-date.
Out of date software has proven to be easily compromised. Funny what one can find out using "wappalyzer"
and doing a little research is also valuable. That is also something one can find out by using http://toolbar.netcraft.com/site_report/
Get the information then run with it. Never know where it will lead.
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4193 on: October 27, 2015, 06:47:15 PM »
What’s Patch Tuesday?

https://blog.malwarebytes.org/online-security/2015/10/whats-patch-tuesday/?utm_source=Gplus&utm_medium=social

Windows 10 no longer has a Patch Tuesday since updates and patches can happen at any time. :)
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4194 on: October 27, 2015, 07:56:31 PM »
University of Amsterdam's "Amsterdam privacy week" sponsored by Facebook and Google as diamond and platinum sponsors. This is a joke, sponsoring of an event by the ones that caused these problems that are being discussed in the first place, aka the "Silicon Empire". As long as academic independency is guaranteed; sponsors have no influence on the program was the comment of the organizers.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4195 on: October 28, 2015, 11:11:02 AM »
Adobe Security Bulletin - Security update available for Adobe Shockwave Player
https://helpx.adobe.com/security/products/shockwave/apsb15-26.html
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4196 on: October 28, 2015, 05:07:51 PM »
Through my continuous website scanning it is clearly shown that an awful large amount of websites with all sort of jQuery libaries installed, have as a rule 2 to 5 vulnerable jQuery libraries installed. Some of these with active malware. An enormous amount of websites with WordPress CMS are open to threats because User Enumeration is possible (user and log-in proliferation) or Directory Indexing Enabled. This is an information leakage vulnerability that can reveal sensitive information regarding your site configuration or content. Furthermore plug-ins and themes may be vulnerable to attacks. Alas all such websites are wide open to attack.
Pro-active hosting with security in mind has not been around much on the Interwebs lately. I try to warn wherever I can when a website's security is endangered and may become under threat (compromise, defacement, XSS attacks, script injection etc. etc.). Website owners, -admins, hosters take these warnings at heart and go and protect your future visitors! Scan, update, patch and configure properly.

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4197 on: October 29, 2015, 08:06:49 AM »
This will be abused grand scale to deliver more spam to your mailboxes: Critical Joomla hole attacked 4 hrs after it being patched: https://www.joomla.org/announcements/release-news/5634-joomla-3-4-5-released.html
Sucuri warns that loads of websites with Joomla CMS have been attacked shortly after the new Joomla release.

As no other, polonus knows how critical CMS security weighs in the balance. One thing to do: update and patch and do not spread extensive info on software to the world and attackers.
Joomla SQL Injection Attacks in the Wild
https://blog.sucuri.net/2015/10/joomla-sql-injection-attacks-in-the-wild.html
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4199 on: October 29, 2015, 06:57:20 PM »
Be aware while Copy-Pasting URLs from Google Search can leak Previous Searches.
So do not do this!
Read from jeremy Rubin this article here: https://medium.com/@jeremyrubin/caution-copy-pasting-urls-from-google-search-can-leak-previous-searches-11940508e79#.fy4492fqk

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!