No Image

Acquiring a VHD to Investigate

2019-09-04 KENNETH 0

Acquiring a VHD to Investigate In a previous post we described some of the differences between on-premises/physical forensics and cyber investigations and those performed in the cloud, and how this can make cloud forensics challenging. That blog post described a method of creating and maintaining a VM image which can be distributed to multiple regions, allowing you to deploy this … Acquiring a VHD to Investigate Read More » Source: Acquiring a VHD to Investigate

No Image

Windows 10 SDK Preview Build 18970 available now!

2019-09-04 KENNETH 0

Windows 10 SDK Preview Build 18970 available now! Today, we released a new Windows 10 Preview Build of the SDK to be used in conjunction with Windows 10 Insider Preview (Build 18970 or greater). The Preview SDK Build 18970 contains bug fixes and under development changes to the API surface area. The Preview SDK can be downloaded from developer section on Windows Insider. For feedback and updates to the known issues, please see the developer forum. For new developer feature requests, head over to our Windows Platform UserVoice. Things to note: This build works in conjunction with previously released SDKs and Visual Studio 2017 and 2019. You can install this SDK and still also continue to submit your apps that target Windows 10 build 1903 or earlier to the Microsoft Store. The Windows SDK will now formally only be supported by Visual Studio 2017 [ more… ]

No Image

USN-4120-1: systemd vulnerability

2019-09-04 KENNETH 0

USN-4120-1: systemd vulnerability systemd vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Ubuntu 18.04 LTS Summary systemd-resolved would allow unprivileged users to change DNS settings. Software Description systemd – system and service manager Details It was discovered that the systemd-resolved D-Bus interface did not enforce appropriate access controls. A local unprivileged user could exploit this to modify a system’s DNS resolver settings. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04 systemd – 240-6ubuntu5.6 Ubuntu 18.04 LTS systemd – 237-3ubuntu10.28 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot your computer to make all the necessary changes. References CVE-2019-15718 Source: USN-4120-1: systemd vulnerability

Announcing NGINX Plus R19

2019-09-03 KENNETH 0

Announcing NGINX Plus R19 We are pleased to announce that NGINX Plus Release 19 (R19) is now available. NGINX Plus is the only all-in-one load balancer, content cache, web server, and API gateway. Based on NGINX Open Source, NGINX Plus includes exclusive enhanced features and award‑winning support. A primary focus of the release is monitoring, with new capabilities that make it more granular and flexible, for enhanced reliability of your applications at scale. New features in NGINX Plus R19 include: More flexible monitoring – We’ve added new capabilities for finer‑grained insight and easier analysis of your NGINX Plus ecosystem, including optional separate metrics collection for location blocks, new metrics about DNS lookup activity, and support for export in Prometheus format as well as JSON. The NGINX Plus dashboard displays the new per‑location metrics and has new tabs for the DNS metrics and metrics about [ more… ]

No Image

USN-4119-1: Irssi vulnerability

2019-09-03 KENNETH 0

USN-4119-1: Irssi vulnerability irssi vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Summary Irssi could be made to crash or execute arbitrary code if it received a specially crafted CAP request. Software Description irssi – terminal based IRC client Details It was discovered that Irssi incorrectly handled certain CAP requests. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04 irssi – 1.2.0-2ubuntu1.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to restart Irssi to make all the necessary changes. References CVE-2019-15717 Source: USN-4119-1: Irssi vulnerability