Vulnerability Spotlight: Libgraphite Font Processing Vulnerabilities

By Talos Group Vulnerabilities Discovered by Yves Younan of Cisco Talos. Talos is releasing an advisory for four vulnerabilities that have been found within the Libgraphite library, which is used for font processing in Linux, Firefox, OpenOffice, and other major applications. The most severe vulnerability results from an out-of-bounds read which the attacker can use to achieve arbitrary code execution. A second vulnerability is an exploitable heap overflow. Finally, the last two vulnerabilities result in denial of service situations. To exploit these vulnerabilities, an attacker []

Source:: Cisco Security Notice

Vulnerability Spotlight: Libgraphite Font Processing Vulnerabilities

By Talos Group Vulnerabilities Discovered by Yves Younan of Cisco Talos. Talos is releasing an advisory for four vulnerabilities that have been found within the Libgraphite library, which is used for font processing in Linux, Firefox, OpenOffice, and other major applications. The most severe vulnerability results from an out-of-bounds read which the attacker can use to achieve arbitrary code execution. A second vulnerability is an exploitable heap overflow. Finally, the last two vulnerabilities result in denial of service situations. To exploit these vulnerabilities, an attacker []

Source:: Cisco Security Notice

Cisco Hosting Amsterdam 2016 FIRST Technical Colloquium

By Matt Valites We’d like to announce a “Save the Date” and “Call for Speakers” for the FIRST Amsterdam Technical Colloquium (TC) 2016 . The event, hosted by Cisco Systems in Amsterdam, Netherlands will be a plenary style conference held on the 19th and 20th of April 2016. Event registration is open now. This will be free event with no registration charges (although registration is required). This event will be open to all (not just FIRST members). Please register here . A list of recommended hotels and travel information is available on our website . Call []

Source:: Cisco Security Notice

Cisco Hosting Amsterdam 2016 FIRST Technical Colloquium

By Matt Valites We’d like to announce a “Save the Date” and “Call for Speakers” for the FIRST Amsterdam Technical Colloquium (TC) 2016 . The event, hosted by Cisco Systems in Amsterdam, Netherlands will be a plenary style conference held on the 19th and 20th of April 2016. Event registration is open now. This will be free event with no registration charges (although registration is required). This event will be open to all (not just FIRST members). Please register here . A list of recommended hotels and travel information is available on our website . Call []

Source:: Cisco Security Notice

Find Advanced Threats with Cisco Cognitive Threat Analytics

By Joe Malenfant Attackers are constantly innovating, employing more sophisticated techniques to compromise organizations and gain access to other parts of the network and sensitive data including proprietary information, trade secrets, and of course financial information. Threats have evolved to the point that it’s no longer feasible to simply defend the perimeter. In the 2016 Cisco Annual Security Report , Cisco researchers analyzed threat intelligence and examine some of the most compelling trends in attack vectors, attack methods and vulnerabilities. The report called out that malicious browser add-ons, []

Source:: Cisco Security Notice

Find Advanced Threats with Cisco Cognitive Threat Analytics

By Joe Malenfant Attackers are constantly innovating, employing more sophisticated techniques to compromise organizations and gain access to other parts of the network and sensitive data including proprietary information, trade secrets, and of course financial information. Threats have evolved to the point that it’s no longer feasible to simply defend the perimeter. In the 2016 Cisco Annual Security Report , Cisco researchers analyzed threat intelligence and examine some of the most compelling trends in attack vectors, attack methods and vulnerabilities. The report called out that malicious browser add-ons, []

Source:: Cisco Security Notice