Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2904825 times)

0 Members and 8 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2670 on: July 18, 2013, 05:30:08 PM »
10 year old API vulnerability, issue 69,  troubles java 7: http://archives.neohapsis.com/archives/fulldisclosure/2013-07/0172.html
article author Adam Gowdiak
If you can do without java uninstall it,

polonus

PS Let us make it a two-in-one java alert: http://www.securityweek.com/multiple-java-instances-keep-enterprise-systems-vulnerable-attack-report
link source Security Week's Fahmida Y. Rashid
« Last Edit: July 18, 2013, 05:43:52 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Dwarden

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1793
  • Ideas, that's ocean without borders!
    • Bohemia Interactive
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2671 on: July 19, 2013, 06:04:19 AM »
it would be really nice if Oracle joined the MS security initiative ...
since Adobe and some others joined it, it really helped to decrease the amount of critical vulnerabilities ...
anyway the whole Java 7 story is real tragedy (i can understand Java 6 was old code and under massive amount of attacks)
thanks a lot for posting this ;( the details about go totally around the Java sandbox is nasty
https://twitter.com/FoltynD , Tech. Community, Online Services & Distribution manager of Bohemia Interactive

Offline SpeedyPC

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3398
  • Avast shall conquer the whole world
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2672 on: July 21, 2013, 07:28:49 AM »
Chinese Hackers discovered second Android master key vulnerability
http://thehackernews.com/2013/07/chinese-hackers-discovered-second.html
Gigabyte 670 LGA1200 Full ATX MB | Intel Core i9-13900 CPU/LGA 1700 | GeForce Nvidia RTX-4070/12GB | 32GB DDR4 | 2 x 1TB Samsung SSD | W11 Home 64bit | Avast Premium v24.3.6108 | Avast SecureLine VPN | Avast Secure Browser | Avast Driver Updater | Avast BreachGuard | Firefox 64bit | MalwareBytes Premium | Adguard Premium | CCleaner Portable | Macrium Reflect | 7-Zip

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2673 on: July 21, 2013, 09:02:00 AM »
Windows Media Player 12 Plugin: Arbitrary File Read Vulnerability
http://www.rawsec.net/wmp-vulnerability.html
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2674 on: July 21, 2013, 01:09:09 PM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2675 on: July 21, 2013, 01:23:58 PM »
Hi forum friends,

During my automated security scannings
I have found that an enormous amount of websites
are still vulnerable to configuration insecurities.

These insecurities are grossly underestimated
by webmasters and sloppy IT staff alike,
opening up a goldmine of unintended information for malicious attackers.
At least security through obscurity should be a priority.

Important insecurities found:
1. excessive headers
(info can be used to pinpoint security flaws to attackers).

2. clickjacking (X-frame option header not returned),
malcontent can be embedded in a frame.

ASP netsites can be scanned here at: https://asafaweb.com/Scan?Url=
Other sites can be scanned at: safersite.de

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2676 on: July 24, 2013, 01:00:27 PM »
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2677 on: July 24, 2013, 01:11:53 PM »
Who do you trust ???
Virus total scan results:
https://www.virustotal.com/en/file/7d01bd6c9fef5b1cdddee4de1d5a03edce07c2b706fc566753949992775fcf67/analysis/1372871468/


or avast!:

Link received from a "friend" first analyzed and reported clean.
Thanks avast! for always having my back!
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2678 on: July 24, 2013, 01:21:08 PM »
Use different passwords for different sites.

Quote
Hello,

You are receiving this message because you have an account registered with this address on ubuntuforums.org.

The Ubuntu forums software was compromised by an external attacker. As a result, the attacker has gained access to read your username, email address and an encrypted copy of your password from the forum database.

If you have used this password and email address to authenticate at any other website, you are urged to reset the password on those accounts immediately as the attacker may be able to use the compromised personal information to access these other accounts. It is important to have a distinct password for different accounts.

The ubuntuforums.org website is currently offline and we are working to restore this service. Please take the time to change your ubuntuforums.org account password when service is restored.

We apologize for any inconvenience to the Ubuntu community, thank you for your understanding.

The Canonical Sysadmins.
The best things in life are free.

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2679 on: July 24, 2013, 07:26:09 PM »
Multisystem Trojan Janicab attacks Windows and MacOSX via scripts

Analysis Report in the Avast Blog:http://blog.avast.com/2013/07/22/multisystem-trojan-janicab-attacks-windows-and-macosx-via-scripts/

There are also many JS: Detections added with Database version 130724-0

http://www.avast.com/de-de/virus-update-history
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2680 on: July 26, 2013, 02:16:23 PM »
Orbit Downloader versions causing massive SYN flooding
http://seclists.org/bugtraq/2013/Jul/155
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline mchain

  • Avast Evangelist
  • Ultra Poster
  • ***
  • Posts: 5666
  • Spartan Warrior
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2681 on: July 26, 2013, 09:57:28 PM »
Watch for malicious links!   https://www.facebook.com/photo.php?fbid=10151592091117426&set=a.449448457425.237286.38282497425&type=1&relevant_count=1

Not sure it this goes here:  http://www.tomsguide.com/us/free-antivirus-best-popular-most-effective-review,review-1788-2.html  (For users that think avast! will protect against anything, even from themselves).

One item left out:  Use of a torrent program:  Use of such is not a problem as the program itself may be clean, but connections to unknown computers and unknown status of such is.
Windows 10 Home 64-bit 22H2 Microsoft Windows Defender - Windows 11 Home 23H2 - Windows 11 Pro 23H2 Avast Premier Security version 24.4.6112 (build 24.4.9067.762) UI version 1.0.803

Offline CraigB

  • Avast Überevangelist
  • Serious Graphoman
  • *****
  • Posts: 11241
  • No support PM's thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2682 on: July 29, 2013, 09:35:47 AM »

Offline Secondmineboy

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3645
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2683 on: July 29, 2013, 03:50:41 PM »
Digital Carjackers Show Off New Attacks

http://www.youtube.com/watch?v=oqe6S6m73Zw&feature=youtu.be

I hope that this does not happen to me sometime........
Windows 10 1909, 4 GB DDR3 RAM, 500 GB 5400 RPM HDD, 1366 by 768 LCD Screen, Intel Core i3 5010U Dual Core, Intel HD Graphics 5500
HUAWEI P30 Pro. Android 10

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0