Widomaker and Internet related news or information

security

KRACK Wi-Fi Vulnerability

On Oct 16 2017 US-CERT released Vulnerability Note VU#228519 after researchers disclosed “serious weaknesses in WPA2, a protocol that secures all modern protected Wi-Fi networks.” They have named the proof-of-concept exploits, KRACK (key reinstallation attacks)…

The weaknesses are in the Wi-Fi standard itself, and not in individual products or implementations. […] To prevent the attack, users must update affected products as soon as security updates become available.

Continue reading

[Updated 11/16/17] Router and IoT Vulnerabilities (Dnsmasq)

On, October 2, 2017, vulnerabilities (US-CERT VU#973527) were made public, by Google’s security team, in Dnsmasq, a widely used software package included in many Internet-connected devices, such as routers, IoT devices, and Android devices. Exploitation of some of these vulnerabilities may allow a remote attacker to take control of an affected system.

Continue reading

Multiple Netgear Routers are Vulnerable (VU#582384)

According to US-CERT (part of the Department of Homeland Security), Netgear R6200, R6250, R6400, R6700, R6900, R7000, R7100LG, R7300, R7900, R8000, D6220, and D6400 routers, and possibly other models, are vulnerable to arbitrary command injection. If you use one of the vulnerable Netgear routers, we recommend that you apply an update provided by Netgear, or discontinue use and replace the vulnerable device.

Continue reading

[Updated 4/7/16] Avoid Tech Support Scams

[Update 4/7/2016] On April 5 2016, the Federal Trade Commission (FTC) released an alert on tech-support themed telephone scams.

This is a reminder to avoid falling for Tech Support Scams.

Tech Support Scams, typically, involve someone cold calling a potential victim, saying they are with a trusted organization or company, such as Microsoft or Windows, and warning that their computer is malfunctioning or infected with a dangerous virus. Then the caller (scammer) offers to help by having the victim download software, or remotely connecting to the victim’s computer, to fix the problem.

Continue reading

WordPress 4.2.1 Security Release

Customers using WordPress on their hosted web sites should immediately update due to a critical security issue. See…

https://wordpress.org/news/2015/04/wordpress-4-2-1/

WordPress 4.2.1 is now available. This is a critical security release for all previous versions and we strongly encourage you to update your sites immediately.

A few hours ago, the WordPress team was made aware of a cross-site scripting vulnerability, which could enable commenters to compromise a site. The vulnerability was discovered by Jouko Pynnönen.

WordPress 4.2.1 has begun to roll out as an automatic background update, for sites that support those.

For more information, see the release notes or consult the list of changes.

Download WordPress 4.2.1 or venture over to Dashboard → Updates and simply click “Update Now”.

A Reminder About E-mail and Phishing

Reminder… Widomaker will never ask for your password, credit card, or other personal information via email!

Visit the below links for more information…

Red Alert for Net Neutrality
Welcome
This site was setup to help communicate with customers on Widomaker services and network outages/upgrades.
Follow Us

Widomaker is a participant in the Amazon Services LLC Associates Program, an affiliate advertising program designed to provide a means for sites to earn advertising fees by advertising and linking to amazon.com.
Archives