Nous venons de tourner un nouveau SECHebdo en live sur Youtube. Comme d’habitude, si vous avez raté l’enregistrement, vous pouvez le retrouver sur notre chaîne Youtube (vidéo ci-dessus) ou bien au format podcast audio:
Au sommaire de cette émission :
Notre discord : http://discord.comptoirsecu.fr
A bientôt pour d’autres émissions/podcasts!
Liste des sources :
Une page pour les known issues des patches WindowsWindows 10 - release information - Windows Release Information | Microsoft DocsSafety - Security for your Python dependenciesGitHub - PyCQA/bandit: Bandit is a tool designed to find common security issues in Python code.Vulnérabilité eximNew RCE vulnerability impacts nearly half of the internet’s email servers | ZDNetExim email servers are now under attack | ZDNetSecurity Response sur TwitterYubiKey RandomSecurity Advisory 2019-06-13 | YubicoYubico Replacing YubiKey FIPS Devices Due to Security Issue | SecurityWeek.ComLa Liga Et Ses Déboires Avec Le RgpdLaLiga facing €250k fine for GDPR violations in app used to spy on users - TechRepublicWindow 10 1903, un pas de plus vers l’absence de mot de passeAdvancing Windows 10 as a passwordless platformVol De Vos OTP Via Notifications AndroidAndroid Malware Bypasses 2FA by Stealing One-Time PasswordsRetour CCIAL LyonTCP SACKTCP SACK PANIC - Kernel vulnerabilities - CVE-2019-11477, CVE-2019-11478 & CVE-2019-11479 - Red Hat Customer PortalSUSE address the SACK panic tcp remote denial of service attacks - SUSE Communitiessecurity-bulletins/2019-001.md at master · Netflix/security-bulletins · GitHubRFC 2018 - TCP Selective Acknowledgment OptionsHow SKBs workLinux Kernel TCP SACK Denial of Service Issuesgrsecurity sur TwitterDebian – Security Information – DSA-4465-1 linuxTCP SACK PANIC - Kernel vulnerabilities - CVE-2019-11477, CVE-2019-11478 & CVE-2019-11479 - Red Hat Customer PortalCVE-2019-11477 - Red Hat Customer PortalCVE-2019-11478 - Red Hat Customer PortalCVE-2019-11479 - Red Hat Customer PortalSecurityTeam/KnowledgeBase/SACKPanic - Ubuntu WikiRHCK kernelUEK5 kernelUEK4 kernelAmazon Linux 1Amazon Linux 2CVE-2019-11477CVE-2019-11478CVE-2019-11479Security Vulnerability: TCP SACK Denial of Service attacks aka “SACK Panic” - CVE-2019-11477, CVE-2019-11478 & CVE-2019-11479 | Support | SUSECVE-2019-11477 | SUSECVE-2019-11478 | SUSECVE-2019-11479 | SUSECoreOS Container Linux Release NotesAVG-983 - linux - Arch LinuxCVE-2019-11477 - linux-hardened linux-zen linux-lts linux - Arch LinuxCVE-2019-11478 - linux-hardened linux-zen linux-lts linux - Arch LinuxCVE-2019-11479 - linux-hardened linux-zen linux-lts linux - Arch LinuxCVE-2019-11477 in UbuntuCVE-2019-11478 in UbuntuCVE-2019-11479 in UbuntuLinux Kernel TCP SACK Denial of Service Issues