ICT Security-Sécurité PC et Internet
87.1K views | +0 today
Follow
ICT Security-Sécurité PC et Internet
ICT Security + Privacy + Piracy + Data Protection - Censorship - Des cours et infos gratuites sur la"Sécurité PC et Internet" pour usage non-commercial... (FR, EN+DE)...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

Zero Day: Drupal-Seiten werden angegriffen | #Update asap!!! | #CyberSecurity #CyberHygiene #Updates

Zero Day: Drupal-Seiten werden angegriffen | #Update asap!!! | #CyberSecurity #CyberHygiene #Updates | ICT Security-Sécurité PC et Internet | Scoop.it

Drupal-Seiten werden angegriffen
Schon wieder eine sehr kritische Drupal-Lücke: CVE-2018-7602 ermöglicht einem Angreifer die Übernahme von Drupal-Seiten. Erste Angriffe werden bereits nach wenigen Stunden registriert.

Angreifer haben nur wenige Stunden nach Bekanntwerden einer erneuten kritischen Sicherheitslücke im Content-Management-System (CMS) Drupal begonnen, den Bug für Attacken auszunutzen. Sie nutzen dabei Code eines Proof-of-Concepts, der online verfügbar ist.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Drupal

 

Gust MEES's insight:

Drupal-Seiten werden angegriffen
Schon wieder eine sehr kritische Drupal-Lücke: CVE-2018-7602 ermöglicht einem Angreifer die Übernahme von Drupal-Seiten. Erste Angriffe werden bereits nach wenigen Stunden registriert.

Angreifer haben nur wenige Stunden nach Bekanntwerden einer erneuten kritischen Sicherheitslücke im Content-Management-System (CMS) Drupal begonnen, den Bug für Attacken auszunutzen. Sie nutzen dabei Code eines Proof-of-Concepts, der online verfügbar ist.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Drupal

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Security: Mehrere Sicherheitslücken in Drupal entdeckt

Security: Mehrere Sicherheitslücken in Drupal entdeckt | ICT Security-Sécurité PC et Internet | Scoop.it
Zwei Updates schließen mehrere Sicherheitslücken im populären CMS Drupal 6 und 7. Betroffen ist etwa der Pseudozufallszahlengenerator, der unter anderem von OpenID genutzt wird. 


Die Updates sollten unbedingt eingespielt werden.


Gust MEES's insight:

 

               =========> UPDATE asap!!! <========

No comment yet.
Scooped by Gust MEES
Scoop.it!

Update Drupal ASAP: Over a million sites can be easily hacked by any visitor | #CyberSecurity #CyberHygiene #Vulnerabilities #Updates

Update Drupal ASAP: Over a million sites can be easily hacked by any visitor | #CyberSecurity #CyberHygiene #Vulnerabilities #Updates | ICT Security-Sécurité PC et Internet | Scoop.it

A dangerous Drupal flaw could leave your site completely compromised if you don't patch the flaw immediately.

Developers of popular open-source CMS Drupal are warning admins to immediately patch a flaw that an attacker can exploit just by visiting a vulnerable site.

The bug affects all sites running on Drupal 8, Drupal 7, and Drupal 6. Drupal's project usage page indicates that about a million sites are running the affected versions.

Admins are being urged to immediately update to Drupal 7.58 or Drupal 8.5.1. Drupal issued an alert for the patch last week warning admins to allocate time for patching because exploits might arrive "within hours or days" of its security release. So far, there haven't been any attacks using the flaw, according to Drupal.

The bug, which is being called Drupalgeddon2, has been assigned the official identifier CVE-2018-7600.

Drupal has given it a 'highly critical' rating with a risk score of 21 out of 25 under the NIST Common Misuse Scoring System.

Although there are no security releases for the unsupported Drupal 8.3.x and 8.4.x, Drupal has released patches for quick remediation.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Drupal

 

Gust MEES's insight:

A dangerous Drupal flaw could leave your site completely compromised if you don't patch the flaw immediately.

Developers of popular open-source CMS Drupal are warning admins to immediately patch a flaw that an attacker can exploit just by visiting a vulnerable site.

The bug affects all sites running on Drupal 8, Drupal 7, and Drupal 6. Drupal's project usage page indicates that about a million sites are running the affected versions.

Admins are being urged to immediately update to Drupal 7.58 or Drupal 8.5.1. Drupal issued an alert for the patch last week warning admins to allocate time for patching because exploits might arrive "within hours or days" of its security release. So far, there haven't been any attacks using the flaw, according to Drupal.

The bug, which is being called Drupalgeddon2, has been assigned the official identifier CVE-2018-7600.

Drupal has given it a 'highly critical' rating with a risk score of 21 out of 25 under the NIST Common Misuse Scoring System.

Although there are no security releases for the unsupported Drupal 8.3.x and 8.4.x, Drupal has released patches for quick remediation.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Drupal

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

CMS-Lösungen im Securitycheck

CMS-Lösungen im Securitycheck | ICT Security-Sécurité PC et Internet | Scoop.it
Das deutsche Bundesamt für Sicherheit (BSI) hat die geläufigsten CMS-Lösungen auf ihre Sicherheit überprüft. Getestet wurde unter anderem auch der gebotene Datenschutz.
Gust MEES's insight:

 

A MUST READ!!!

 

Learn more:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/

 

No comment yet.