PPP Daemon flaw opens Linux distros, networking devices to takeover attacks

A vulnerability (CVE-2020-8597) in the Point-to-Point Protocol Daemon (pppd) software, which comes installed on many Linux-based and Unix-like operating systems and networking devices, can be exploited by unauthenticated attackers to achieve code execu… Continue reading PPP Daemon flaw opens Linux distros, networking devices to takeover attacks

WHOIS, OSX Malware, NetBSD, and Kaspersky – Hack Naked News #146

Kaspersky has “nothing to hide”, the internet wants YOU, OS X malware runs rampant, WHOIS database slip-ups, and more. Jason Wood discusses an attack on critical US infrastructure on this episode of Hack Naked News! News ‘We’ve nothing to hide’: Kaspersky Lab offers to open up source code – Following damaging news that Russian hackers used […]

The post WHOIS, OSX Malware, NetBSD, and Kaspersky – Hack Naked News #146 appeared first on Security Weekly.

Continue reading WHOIS, OSX Malware, NetBSD, and Kaspersky – Hack Naked News #146

Google Warns of DoS and RCE Bugs in Dnsmasq

A domain name system server implementation is at risk of remote code execution, information exposure and denial-of-service attacks after a seven vulnerability were disclosed by Google and patched by the maintainers of Dnsmasq. Continue reading Google Warns of DoS and RCE Bugs in Dnsmasq

Stack Clash Vulnerability in Linux, BSD Systems Enables Root Access

Patches are available for a newly discovered Linux, BSD and Solaris vulnerability called Stack Clash that bypasses stack guard-page mitigations and enables root access. Continue reading Stack Clash Vulnerability in Linux, BSD Systems Enables Root Access