No Image

Join Microsoft Security Response at the Product Security Operations forum at LocoMocoSec!

2019-03-16 KENNETH 0

Join Microsoft Security Response at the Product Security Operations forum at LocoMocoSec! The MSRC is more than managing vulnerability reports, publishing Microsoft security updates, and defending the cloud. The MSRC is passionate about helping everyone improve internal engineering practices and supporting the defender community, and are excited to partner with Blackberry to host a Product Security Operations Forum at LocoMocoSec on April 18, 2019. Featuring exceptional speakers from across the industry, the Product Security Operations Forum will share what industry practitioners have learned about problems (and solutions!) of secure development and managing vulnerability response. We’ll have hands-on practitioners from, npm, Adobe, Microsoft, GitHub, and elsewhere discussing the operational programs and processes they are using to tackle real-world challenges. Since no single person has all the answers, we also hope that everyone attending will take advantage of the event format to [ more… ]

No Image

USN-3910-1: Linux kernel vulnerabilities

2019-03-16 KENNETH 0

USN-3910-1: Linux kernel vulnerabilities linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Several security issues were fixed in the Linux kernel. Software Description linux – Linux kernel linux-aws – Linux kernel for Amazon Web Services (AWS) systems linux-kvm – Linux kernel for cloud environments linux-raspi2 – Linux kernel for Raspberry Pi 2 linux-snapdragon – Linux kernel for Snapdragon processors Details It was discovered that the f2fs filesystem implementation in the Linux kernel did not handle the noflush_merge mount option correctly. An attacker could use this to cause a denial of service (system crash). (CVE-2017-18241) It was discovered that the procfs filesystem did not properly handle processes mapping some memory elements onto files. A local attacker could use this to block utilities that examine the procfs filesystem to [ more… ]

No Image

USN-3910-2: Linux kernel (Xenial HWE) vulnerabilities

2019-03-16 KENNETH 0

USN-3910-2: Linux kernel (Xenial HWE) vulnerabilities linux-lts-xenial, linux-aws vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in the Linux kernel. Software Description linux-aws – Linux kernel for Amazon Web Services (AWS) systems linux-lts-xenial – Linux hardware enablement kernel from Xenial for Trusty Details USN-3910-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04 LTS. This update provides the corresponding updates for the Linux Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu 14.04 LTS. It was discovered that the f2fs filesystem implementation in the Linux kernel did not handle the noflush_merge mount option correctly. An attacker could use this to cause a denial of service (system crash). (CVE-2017-18241) It was discovered that the procfs filesystem did not properly handle processes mapping some memory elements onto files. [ more… ]

Announcing Windows 10 Insider Preview Build 18358

2019-03-16 KENNETH 0

Announcing Windows 10 Insider Preview Build 18358 Hello Windows Insiders, today we are releasing Windows 10 Insider Preview Build 18358 (19H1) to Windows Insiders in the Fast ring. If you are looking for a complete look at what build is in which Insider ring – head on over to Flight Hub. You can also check out the rest of our documentation here including a complete list of new features and updates that have gone out as part of Insider flights for the current development cycle (which currently is 19H1). General changes, improvements, and fixes for PC FOR GAMERS: We have addressed an issue with Game Mode that may degrade game streaming and recording quality. Here’s the latest on trying out our new Windows gaming technology: Still haven’t had a chance to get the game State of Decay for free (for [ more… ]

No Image

One-third of the web!

2019-03-15 KENNETH 0

One-third of the web! WordPress now powers over 1/3rd of the top 10 million sites on the web according to W3Techs. Our market share has been growing steadily over the last few years, going from 29.9% just one year ago to 33.4% now. We are, of course, quite proud of these numbers! The path here has been very exciting. In 2005, we were celebrating 50,000 downloads. Six years later, in January 2011, WordPress was powering 13.1% of websites. And now, early in 2019, we are powering 33.4% of sites. Our latest release has already been downloaded close to 14 million times, and it was only released on the 21st of February. WordPress market share on the rise over the last 8 years. Image source: W3Techs. Over the years WordPress has become the CMS of choice for more and more people [ more… ]