Security Leftovers
-
Security updates for Thursday [LWN.net]
Security updates have been issued by Fedora (pdns-recursor, thunderbird, and vim), Gentoo (firefox, thunderbird-bin, virtualbox, and webkit-gtk), Red Hat (convert2rhel), SUSE (gstreamer-plugins-good, open-vm-tools, postgresql12, rsync, and ucode-intel), and Ubuntu (linux-azure, linux-gcp, linux-hwe).
-
‘Dirty Cred’ security patched kernels available
All users that use any 5.10, 4.19 and 4.9 kernels are strongly advised to upgrade to the latest versions in the antiX repos. This applies to 64 bit and 32 bit pae and non-pae kernels for antiX-19, antiX-21 and testing/sid users.
-
Linux devices 'increasingly' under attack from hackers, warn security researchers [Ed: ZDNet is, as usual, helping Microsofters and their partners distract from the real culprit, which moreover has NSA back doors]
-
Clever Phishing Scam Uses Legitimate PayPal Messages - Schneier on Security
Basically, the scammers use the PayPal invoicing system to send the email. The email lists a phone number to dispute the charge, which is not PayPal and quickly turns into a request to download and install a remote-access tool.
-
CISA releases two Industrial Control Systems Advisories | CISA
CISA has released two Industrial Control Systems (ICS) advisories on September 01, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS.
One more:
-
Apple Releases Security Updates for Multiple Products | CISA
Exploitation of this vulnerability could allow an attacker to take control of affected device.