nrw.social ist einer von vielen unabhängigen Mastodon-Servern, mit dem du dich im Fediverse beteiligen kannst.
Wir sind eine freundliche Mastodon Instanz aus Nordrhein-Westfalen. Ob NRW'ler oder NRW-Sympathifanten, jeder ist hier willkommen.

Serverstatistik:

2,9 Tsd.
aktive Profile

#Qualys

0 Beiträge0 Beteiligte0 Beiträge heute

#needrestart 3.8 was released:
github.com/liske/needrestart/r

This coordinated release contains 4 security fixes for local privilege escalations found by the Qualys Security Advisory team: qualys.com/2024/11/19/needrest

An local attacker can trick needrestart to execute arbitrary code as root. Debian and Ubuntu already shipping security updates.

You should apply these updates in a timely manner. These issues can be mitigated by disabling the interpreter heuristic.

GitHubRelease 3.8 · liske/needrestartSecurity [Core] CVE-2024-48991: Prevent race condition on /proc/$PID/exec evaluation. (responsibly reported by Qualys) [Interp] CVE-2024-11003: Drop usage of Module::ScanDeps to prevent LPE. (resp...
#linux#security#qualys

My latest #project is coming to an end, and I’ll be honest, it’s been fun and an interesting piece of work.

Inplementing a Network, Detection and Response (#ndr) platform powered by #bluehexagon (now owned by #qualys) , with full integration into #Sentinel and #defenderforendpoint.

The interesting part was creating a custom #powershell #cmdlet / toolset for security engineering to integrate data as part of security incidents. Had me brushing off my coding skills and remembering how much I actually enjoy it!

This also means, my diary is now free from the end of this month… so am #opentowork.

Check out my #blog at paulsanders.co.uk for some (not so much upto date) posts.

A blog by Paul SandersA blog by Paul SandersPersonal blog of Paul Sanders - A strategy and architecture consultant and CEO of Yobah Limited. Loads of content on Cloud including Azure, AWS, security and devops.