Showing posts with label vulnerabilities. Show all posts

Zoom update recommended

by Anonymous in ,

Due to a known vulnerability using Zoom on Mac clients it is recommended that users take a moment to update Zoom to the most current version.

The vulnerability is discussed in this blog post, and is easily resolved by updating Zoom.  You may log a Solution Center request if you'd like assistance with the update.

Google Releases Security Update for Chrome

by in , , , , , , , , , , ,

Google has released Chrome version 45.0.2454.85 to address multiple vulnerabilities for Windows, Mac, and Linux. Exploitation of one of these vulnerabilities may allow an attacker to take control of an affected system.

US-CERT encourages users and administrators to review the Chrome Releases page and apply the necessary update.

Apple patches security flaws with new versions of iOS, OS X

by in , , , , , , , , , , , , , ,

Apple has packed patches for dozens of security flaws into the new versions of its iOS and OS X operating systems.

The company noted Tuesday in a security advisory that just-released version 8.4 of the iOS mobile operating system contains more than 20 fixes for vulnerabilities that could lead to remote code execution, application termination and the interception of encrypted traffic, among other issues.


Read more about these updates here.

Adobe Flash Player Exploit Found - What you can do protect your systems.

by in , , , , , , , , , , , ,

Adobe is aware of reports that an exploit for CVE-2015-0310 exists in the wild, which is being used in attacks against older versions of Flash Player. Additionally, Adobe is investigating reports that a separate exploit for Flash Player 16.0.0.287 and earlier also exists in the wild. For the latest information, please refer to the PSIRT blog here.  You may find more information about the Adobe Security Bulletin here.


Here are instructions on how to disable Adobe Flash in current browsers. If Flash is disabled, it can be temporarily re-enabled if needed. Follow the steps for all browsers used. If you use multiple browsers it may be simpler to uninstall Adobe Flash: http://helpx.adobe.com/flash-player/kb/uninstall-flash-player-windows.html.

Mac

Firefox
  1. On the Firefox tool bar go to Tools 
  2. Select Add-ons 
  3. In the Plugins tab, set Shockwave Flash to Never Activate 
Safari
  1. On the Safari tool bar go to Safari > Preferences… 
  2. In the Security tab, ensure Allow Plug-ins is checked 
  3. Click on the Manage Website Settings… button 
  4. Select Adobe Flash Player 
  5. In the dropdown, select When visiting other websites: Block 
  6. Click on the Done button 
  7. Close the Preferences dialog box 
Chrome
  1. Type chrome:plugins in the address bar to open the Plug-ins page 
  2. On the Plug-ins page that appears, find Adobe Flash Player 
  3. Click the Disable ​link under its name 

Windows

Firefox
  1. Go to the Firefox menu button 
  2. Select Add-ons 
  3. In the Plugins tab, set Shockwave Flash to Never Activate 
Internet Explorer
  1. Click the Tools button, and then click Manage add-ons 
  2. Under Show, click All add-ons, and then select Shockwave Flash Object 
  3. Click Disable, and then click Close 
Chrome

  1. Type chrome:plugins in the address bar to open the Plug-ins page 
  2. On the Plug-ins page that appears, find Adobe Flash Player 
  3. Click the Disable ​link under its name

Heartbleed Bug Update

by in , , , , , , , ,

There has been a lot of news recently regarding the Heartbleed Bug, a security threat that was erroneously introduced into the code of OpenSSL back in late 2011. T&C has determined its critical systems have not been affected by this threat and continue to perform evaluations of its other systems.

Additional information about public services such as Google, Yahoo, Facebook, etc. may be found here as well as at other sites on the internet:


Additional information on Heartbleed may be found here: