Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 1573834 times)

0 Members and 3 Guests are viewing this topic.

Offline Be Secure

  • Long Time Avast User(9years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1650
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5790 on: January 13, 2019, 04:37:42 AM »
PC- Windows10 PRO 64Bit,Avast Free V.19.1.2360,uBlock Origin,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast

Offline Be Secure

  • Long Time Avast User(9years.....) Security Enthusiast.
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1650
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5791 on: January 17, 2019, 10:39:02 AM »
PC- Windows10 PRO 64Bit,Avast Free V.19.1.2360,uBlock Origin,GoogleChrome(64bit),CCleaner,Unchecky,ZAM Free,Shadow Defender.
Security Enthusiast


Offline polonus

  • Avast Überevangelist
  • Maybe Bot
  • *****
  • Posts: 31006
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5793 on: January 17, 2019, 04:37:43 PM »
Word Press warns for servers with old (outdated) PHP versions:
https://make.wordpress.org/core/2019/01/14/php-site-health-mechanisms-in-5-1/ (source credits Felix Arntz);
See for warnings: https://wordpress.org/support/update-php/
Mind back patching distro's for issues.

Read: https://sucuri.net/guides/how-to-clean-hacked-wordpress
Check at https://hackertarget.com/wordpress-security-scan/
Check libraries at https://retire.insecurity.today/# 
or at
https://webhint.io/scanner/  at security with Snort Rules.

For PHP version 7 check compatibility at: https://wpengine.com/blog/php-7-compatibility-checker-plugin/

polonus (volunteer 3rd party cold reconnaissance website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline =Snake=

  • ..... minden elfelejtettem.
  • Super Poster
  • ***
  • Posts: 2308
  • Last day of life often comes earlier than expected
Re: Security Warning Notices - Please post them here
« Reply #5794 on: January 17, 2019, 06:04:13 PM »
A lot of malware lurks in google searches, some even have the brass neck to pay for search placement on specific search words/terms or have sponsored links. Google really need to be more proactive in rooting out the possibly malicious/fraudulent sponsored links or search placement.
That's the reason (for me) for not using google search.
That's one of the reason you should be using the Avast Online Security extension. :)

I'm using it since years (see my sig, please).  :)
Main: AMD LE1620,W7ult SP1,Avast Free 19.1.2360|| MS-7091,P4,XP pro SP3,Avast Free 18.8.2356|AMD_Athlon 1800+(W7 ult SP1+XP pro SP3),Avast Free 10.4.2233,FFesr 45.9,TB 45.8,CC 5.11|
Laptops: Acer Aspire V5-591G,W10 H | HPI_2020M,W10 1709 pro[x64] | Amilo Xi2428,W8.1 pro | MD95400,W7 ult SP1 | MD97400,XP pro SP3,Avast Free 18.8.2356 | acer ASPIRE 1,XP pro SP3,Avast Free 18.8.2356 |
| CIS 3.14[FW,D+],FF ESR 60.4.0[NS,ABP,AOS],TB 60.4.0,MCS,CC 5.51,MBAM |

Offline polonus

  • Avast Überevangelist
  • Maybe Bot
  • *****
  • Posts: 31006
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5795 on: January 18, 2019, 06:29:07 PM »
Cryptominer removes protection software on Linux servers:
First they disable cloud monitoring service, deinstalling it the way an admin would do.
Malcrean ts getting more and more dastardly in their ways.
https://unit42.paloaltonetworks.com/malware-used-by-rocke-group-evolves-to-evade-detection-by-cloud-security-products/

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 39645
  • 58 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5796 on: January 19, 2019, 04:31:16 PM »
I had forgotten how long CryptoLocker has been a part of the scene:
https://forum.avast.com/index.php?topic=19387.msg179783#msg179783
I posted that back in 2006
Free avast! Security Seminar: https://goo.gl/kh3cqR  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 10 Pro v1809 64bit, 8 Gig Ram, AvastFree 19.1.2360, WinPatrol, Unchecky How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq

Offline polonus

  • Avast Überevangelist
  • Maybe Bot
  • *****
  • Posts: 31006
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5797 on: January 19, 2019, 06:24:33 PM »
Serious Drupal holes: https://www.us-cert.gov/ncas/current-activity/2019/01/16/Drupal-Releases-Security-Updates
Re: https://www.drupal.org/sa-core-2019-001  and   https://www.drupal.org/sa-core-2019-002

And again at the heart of the problem lies not sufficiently validated PHP.
PHP developer keep your cheat-sheets ready.
Read: https://phpsecurity.readthedocs.io/en/latest/Input-Validation.html
Sometimes file expectations are wronly being interpreted:
https://stackoverflow.com/questions/15943926/php-possible-weaknesses-for-filter-validate-url-fopenurl-r-url-validati
and see other PHP related trouble: https://www.tenable.com/plugins/nessus/17715

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 56987
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5798 on: Yesterday at 08:26:38 AM »
Win 8.1 [x64] - Avast Premier 19.2.2361.Beta#1 - CC 5.52 - MCS - EEK - FF ESR 60.4 [NS/AOS/uBO] - TB 60.4 [EM] - ACP/ASB/ASL.BC
Deutschsprachiger Bereich -> Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline alanb

  • Sr. Member
  • ****
  • Posts: 216
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #5799 on: Yesterday at 02:01:16 PM »
Quote
Facebook Caught Red Handed While Swiping Money From Children

I'm astonished that a company with such a reputation for integrity, transparency and fair dealing would resort to such practices  ;D
Still ageing after all these years...