Independent

IndependentKrebs

Fear Not: You, Too, Are a Cybercrime Victim!

Credit to Author: BrianKrebs| Date: Wed, 04 Oct 2017 04:34:50 +0000

Maybe you’ve been feeling left out because you weren’t among the lucky few hundred million or billion who had their personal information stolen in either the Equifax or Yahoo! breaches. Well buck up, camper: Both companies took steps to make you feel better today. Yahoo! announced that, our bad!: It wasn’t just one billion users who had their account information filched in its record-breaking 2013 data breach. It was more like three billion (read: all) users. Meanwhile, big three credit bureau Equifax added 2.5 million more victims to its roster of 143 million Americans who had their Social Security numbers and other personal data filched in a breach earlier this year. At the same time, Equifax’s erstwhile CEO informed Congress that the breach was the result of even more bone-headed security than was first disclosed. To those still feeling left out by either company after this spate of news, I have only one thing to say (although I feel a bit like a broken record in repeating this): Assume you’re compromised, and take steps accordingly.

Read More
IndependentSecuriteam

SSD Advisory – Tiandy IP cameras Sensitive Information Disclosure

Credit to Author: SSD / Maor Schwartz| Date: Tue, 03 Oct 2017 12:18:28 +0000

Vulnerability Summary The following advisory describes sensitive information Disclosure found in Tiandy IP cameras version 5.56.17.120 Tianjin Tiandy Digital Technology Co., Ltd ( Tiandy Tech) is “one of top 10 leading CCTV manufacturer in China and a global supplier of advanced video surveillance solutions.” Credit An independent security researcher, Netfairy, has reported this vulnerability to … Continue reading SSD Advisory – Tiandy IP cameras Sensitive Information Disclosure

Read More
IndependentSecuriteam

SSD Advisory – Horde Groupware Unauthorized File Download

Credit to Author: SSD / Maor Schwartz| Date: Tue, 03 Oct 2017 12:14:16 +0000

Vulnerability Summary The following advisory describes an unauthorized file download vulnerability found in Horde Groupware version 5.2.21. Horde Groupware Webmail Edition is “a free, enterprise ready, browser based communication suite. Users can read, send and organize email messages and manage and share calendars, contacts, tasks, notes, files, and bookmarks with the standards compliant components from … Continue reading SSD Advisory – Horde Groupware Unauthorized File Download

Read More