SECURITY WARNINGS & Notices - Please post them here

Cyber-Attack on Solar Panels Could Shut Down Power Grids via Domino Effect
https://www.bleepingcomputer.com/news/security/cyber-attack-on-solar-panels-could-shut-down-power-grids-via-domino-effect/

Doing so increases security but totally degrades performance.

Careful, Chrome Extension Developers Under a Barrage of Phishing Attacks

https://www.bleepingcomputer.com/news/security/chrome-extension-developers-under-a-barrage-of-phishing-attacks/

Australian Red Cross data breach caused by third-party error
https://www.scmagazine.com/australian-red-cross-data-breach-caused-by-third-party-error/article/680149/

L.S.

Whenever you do not want to be associated to be visiting so-called conspiracy or fake-news websites, intstall this into your adblocker of choice: https://raw.githubusercontent.com/StevenBlack/hosts/master/alternates/fakenews-social/hosts

Websites like prison planet, sorcha faal etc, then become blocked, as some official media may frown upon the points of view these websites share.

You can block strictly or just unblock to visit some site once.

polonus

Patch this a.s.a.p. as it is an ideal vulnerability to be exploited by malcreants to take over the host: https://www.zerodayinitiative.com/blog/2017/8/8/the-august-2017-security-update-review
https://portal.msrc.microsoft.com/en-US/eula

polonus

The auto update from MS happened yesterday without incident. :slight_smile:

Hi bob3160,

Also landed here while I was fanless quitely computing in N.W. Poland :wink:

pol

Locky Ransomware Returns with Spam Campaign Pushing Diablo6 Variant
https://www.bleepingcomputer.com/news/security/locky-ransomware-returns-with-spam-campaign-pushing-diablo6-variant/

Windows computers open to RDP? Means a gigantic threat: https://community.rapid7.com/community/infosec/blog/2017/08/09/remote-desktop-protocol-exposure

By far most computers open to attack are based in the USA and China. In the Netherlands we find 114.000 computers with tcp-port 3389 open.

polonus

2016 Was Bad — 2017 Looks Worse
https://safeandsavvy.f-secure.com/2017/08/09/2016-was-bad-2017-looks-worse/

Really not new. It’s gotten worse every year since they’ve started to keep records.

Browser Extensions Are a Privacy Nightmare: Stop Using So Many of Them

https://www.howtogeek.com/188346/why-browser-extensions-can-be-dangerous-and-how-to-protect-yourself/

http://screencast-o-matic.com/screenshots/u/Lh/1502745250853-10341.png

Hi bob3160,

Some browsers without any extensions are just as much of a privacy risk.
Google for instance knows more about you than your next of kin.

So I just like a good script blocker and a decent ad-blocker as that is how Google
and others that sell all of your data come by that information, and some of it can/should be blocked.

So you cannot blame extensions (and Google extension api) and let the browser off of the hook.

polonus

Your response directed at me and I assume the post I made, has nothing to do with my post or the
advice passed along by that post.
We all know that Google knows a lot about us. So does Bing and Yahoo and many others.

Very interesting if your image is one that and the wording on the bottom of it has been created by Avast.

Whilst your image isn’t related to a browser App, but Android Mobile App.

Then Avast should look close to home, namely the Avast battery Saver App for Android. Some time ago I was going to install this, but when I looked at the Permissions it required, I backed out of the Play Store. For me the permissions were excessive for what was a battery saver app, they wanted access to very many areas I felt it had no reasonable need to.

Hell the only thing not asked for was my inside leg measurement.

The words on the bottom are mine and this indeed is a caution about installing Apps.

8 Google chrome extensions hacked to spread adware:
https://www.proofpoint.com/us/threat-insight/post/threat-actor-goes-chrome-extension-hijacking-spree

Extension published by a bad actor after the legitimate extension was compromised…
With Google chrome extensions now coming to every major browser (firefox etc.)
his new browser extension mono-culture makes it much easier for attackers,
and less secure for end-users.
Programmers falling for an insecure link to click, not an unsavvy end-user or a computer nitwit… :o
Where for Pete’s sake we are heading seen to browser security?
I, polonus, my dear friends, I fear here with great fear :-X :cry:

polonus

Ransomeware targeting WordPress sites: https://www.wordfence.com/blog/2017/08/ransomware-wordpress/

polonus