Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2905113 times)

0 Members and 5 Guests are viewing this topic.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89141
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5565 on: December 19, 2017, 10:05:17 AM »
Then be ready for sites that whilst using https to also get stung (insecure) if all of that content isn't https, the avast forums for instances.  Some images, coming from http links, whilst this shouldn't be an issue for attached images as these are held within the forums https content.

So you could end up with one page being just fine and another getting pinged as insecure, this is likely to confuse users.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5566 on: December 19, 2017, 11:03:56 AM »
Hi DavidR,

The green padlock story, also is confusing to Joe and Jill Common from the average user base.
As long as there is mixed content while phasing out http,
and that is apparently what the big players want,
this will create a lot of confusion during the process.

If you want to change all that, do a good job of it and not half-heartedly,
like with all things on the Interwebs has been the case frequently.

Https and secure log-in and security headers implemented, no vulnerable nameservers anymore,
no more hosters that are in for the cheap money and less for security.

We have been in a patching full time circle from the start,
and what has this brought us from the turn of the century?

An infrastructure that looks more like a bandaged stuffed mummy full of plasters...

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89141
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5567 on: December 19, 2017, 11:22:38 AM »
That's the problem, the end user can do nothing about these issues, they just get the 'insecurity' flag flash up and worry there is something seriously wrong.

Whilst you can expand the information, it isn't detailed enough for the average user, when the language used is 'For instances images.'
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5568 on: December 19, 2017, 11:56:24 AM »
Another big scale brute force attack on Word Press sites going on.
In the past never that much of a success, but we still wanna warn against it:


https://www.wordfence.com/blog/2017/12/aggressive-brute-force-wordpress-attack/

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48597
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5569 on: December 19, 2017, 04:40:58 PM »
That's the problem, the end user can do nothing about these issues, they just get the 'insecurity' flag flash up and worry there is something seriously wrong.

Whilst you can expand the information, it isn't detailed enough for the average user, when the language used is 'For instances images.'
I just approached Screencast-O-Matic since the screenshots are uploaded to an http site. My question was about changing to a secure server so that the pictures don't wind up being tagged as insecure.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48597
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5570 on: December 19, 2017, 08:50:35 PM »
That's the problem, the end user can do nothing about these issues, they just get the 'insecurity' flag flash up and worry there is something seriously wrong.

Whilst you can expand the information, it isn't detailed enough for the average user, when the language used is 'For instances images.'
I just approached Screencast-O-Matic since the screenshots are uploaded to an http site. My question was about changing to a secure server so that the pictures don't wind up being tagged as insecure.
I just received a reply:
Hello,

When you navigate to an uploaded screenshot link, it should redirect to https. We'll update the Recorder soon so that the link created in the clipboard is https as well.

-Sam

It certainly didn't take long. :)
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5571 on: December 20, 2017, 12:06:13 PM »
300.000 Word Press sites vulnerable through holed Captcha Plug-in:
https://www.wordfence.com/blog/2017/12/backdoor-captcha-plugin/

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5572 on: December 21, 2017, 12:19:23 PM »
The involved botnet in these brute force attacks tries to install a cryptominer onto Word Press servers:

https://www.wordfence.com/blog/2017/12/massive-cryptomining-campaign-wordpress/

"Bitcoin the only coin whithout any social function"

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5573 on: December 21, 2017, 12:49:36 PM »
Another 123 million American user data-breach from an Amazon S-3-Bucket.
Re: https://www.upguard.com/breaches/cloud-leak-alteryx

S-3-Buckets should be secure unless you configure them improperly.
It was not publicly available, building an AWS account to get access to a misconfigured Amazon-S-3-Bucket was easy-peasy
and made this big data-breach possible. The data mean solid gold for both identity thieves, spammers and black hat marketeers alike.

polonus
« Last Edit: December 21, 2017, 12:51:31 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5574 on: December 23, 2017, 12:07:17 AM »
Rolling out Ubuntu 17.10 was halted, because it was corrupting the Lenovo computer bios.

Read: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1734147

Someone created a non-tested bug in a production release.
All ubuntu flaws, also mint, privacy technically have leaks & backdoors.

Related info on that bug:
https://www.howtogeek.com/226308/the-windows-platform-binary-table-why-crapware-can-come-back-after-a-clean-install/

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5575 on: December 28, 2017, 12:26:30 PM »
Backdoor in three Word Press plug-ins detected:
https://www.wordfence.com/blog/2017/12/plugin-backdoor-supply-chain/

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Be Secure

  • Long Time Avast User(10years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1908
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5576 on: December 29, 2017, 03:30:56 AM »
PC- Windows10 EDU 64Bit,avast! free 21.1.2449,uBlock Origin,NVT_OSA,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37548
  • Not a avast user
« Last Edit: December 29, 2017, 11:03:30 AM by Pondus »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37548
  • Not a avast user

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5579 on: December 29, 2017, 02:14:33 PM »
Chrome extension gave 105.000 users a crypto-miner:

https://productforums.google.com/forum/#!topic/chrome/b0JUzg4HYtI

Crypto mining a growing problem next to ad-launching and spamming.
The extension is still there  ::)

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!