Security Leftovers
-
Security updates for Monday [LWN.net]
Security updates have been issued by Debian (golang-go.crypto, maradns, requests, sofia-sip, and xmltooling), Fedora (chromium, iaito, iniparser, libX11, matrix-synapse, radare2, and thunderbird), Red Hat (c-ares, jenkins and jenkins-2-plugins, and texlive), SUSE (bluez, chromium, go1.19, go1.20, jetty-minimal, kernel, kubernetes1.18, kubernetes1.23, kubernetes1.24, libX11, open-vm-tools, openvswitch3, opera, syncthing, and xen), and Ubuntu (libcap2, libpod, linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-azure-fde-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gke-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oracle, linux-oracle-5.15, linux-raspi, linux, linux-aws, linux-azure, linux-gcp, linux-hwe-5.19, linux-kvm, linux-lowlatency, linux-oracle, linux-raspi, linux, linux-aws, linux-lowlatency, linux-raspi, linux-oem-5.17, linux-oem-6.1, pypdf2, and qemu).
-
A question for OnniForums (UPDATED)
But when I clicked “Post reply,” I learned that I was Banned. It was my very first reply and I had no other posts. I was banned, it seems, for “Spam” and the ban will never be lifted.
I was banned for asking a serious question? Is OnniForums so lame that they are unwilling to explain their actions? That’s a shame. Or was the ban just a mistake or accident? I hope the latter is the explanation.
-
Former RAIDforums member “DataBox” sentenced to prison
A former member of RAIDForums was sentenced to prison today by an Amsterdam court.
The 25-year-old man, Erkan Sezgin, was known as “DataBox” on RAIDforums when he listed the data of millions of Austrians for sale.
-
Microsoft admitted it was targeted in a cyber attack claimed by a Russian-linked group called Anonymous Sudan [Ed: As usual, Microsoft is trying to blame "China" or "Russia" for its services being full of holes, not working, going offline etc. Robust services won't do this. But this is Microsoft being desperate and playing politics.]
-
China behind attacks on Barracuda email gateways, Mandiant [Ed: When your own proprietary product has security holes in it, blame the attacker or simply resort to politics, blaming the enemy du jour]
"Through the investigation, Mandiant identified a suspected China-nexus actor, currently tracked as UNC4841, targeting a subset of Barracuda ESG appliances to utilize as a vector for espionage, spanning a multitude of regions and sectors," Mandiant said in a post on Thursday.