Skip to main content

Posts

Warning! Unprivileged Linux Users With UID > INT_MAX Can Execute Any Command.

Hold tight, this may blow your mind… A low-privileged user account on most Linux operating systems with UID value anything greater than 2147483647 can execute any systemctl command unauthorizedly—thanks to a newly discovered vulnerability. The reported vulnerability actually resides in PolicyKit (also known as polkit)—an application-level toolkit for Unix-like operating systems that defines policies, handles system-wide privileges and provides a way for non-privileged processes to communicate with privileged ones, such as "sudo," that does not grant root permission to an entire process. The issue, tracked as CVE-2018-19788, impacts PolicyKit version 0.115 which comes pre-installed on most popular Linux distributions, including Red Hat, Debian, Ubuntu, and CentOS. The vulnerability exists due to PolicyKit's improper validation of permission requests for any low-privileged user with UID greater than INT_MAX. Where, INT_MAX is a constant in computer programming that defines

Never Joke with Politics in Some Countries of Beautiful African Continent.

Zambia`s Constitutional Court on Friday ruled that President Edgar Lungu can stand for the third time as president in 2021. Four political parties had petitioned the Constitutional Court, seeking a declaration that Lungu is eligible to contest in the 2021 presidential elections. Constitutional Court President Hildah Chibomba said the ruling by the seven judges of the court had been unanimous. “ Our answer is that the (Lungu’s first) presidential tenure of office...cannot be considered as a full term. ” “Our answer is that the (Lungu’s first) presidential tenure of office…cannot be considered as a full term,” Chibomba said. Lungu who was first elected in January 2015 after the death of President Michael Sata, served for one year and 6 months during his first term as president. He was then re-elected for a second term which began on September 13, 2016 following his victory in the August polls. The opposition had argued that Lungu’s third term would violate the Zambian constitution which

New Adobe Flash Zero-Day Exploit Found Hidden inside MS Office Docs.

🆕🆕🆕🆕 NB: Please Tomorrow Friday 7 December 2018 is gonna be massive in AWUPI, Kijomoro Sub-County in Maracha District as the World will be finalising plans to organise Charity Event to Raise 61 million Shillings (17500$) to help the Communities. Thanks. 🆕🆕🆕🆕. Cybersecurity researchers have discovered a new zero-day vulnerability in Adobe Flash Player that hackers are actively exploiting in the wild as part of a targeted campaign appears to be attacking a Russian state health care institution. The vulnerability, tracked as  CVE-2018-15982 , is a use-after-free flaw resides in Flash Player that, if exploited successfully, allows an attacker to execute arbitrary code on the targeted computer and eventually gain full control over the system. The newly discovered Flash Player zero-day exploit was spotted last week by researchers inside malicious Microsoft Office documents, which were submitted to online multi-engine malware scanning service VirusTotal from a Ukrainian IP address. Th

New Ransomware Spreading Rapidly in China Infected Over 100,000 Computers.

🆕🆕🆕🆕 NB: While all of you enjoy Reading Our Educative articles, Please, Help us by Donating any amount of Money to Help the Communities of AWUPI in Kijomoro Sub-County, Maracha District - Uganda, by Sending any amount of Money to Mr Stephen Esua, Telephone Number +256 784 179957. Little amount of your Financial Contributions is Highly Appreciated. This Charity is Aimed at raising Ugandan Shillings 62 million (17500$) which will be used to buy Chairs, Utensils, Tents and many  more items to Cater for Community Needs during Parties, Funerals and other Events. Remember: Gifted Hands are those that Give. Thanks. 🆕🆕🆕🆕. NEW RANSOMWARE DISCOVERED. A new piece of ransomware is spreading rapidly across China that has already infected more than 100,000 computers in the last four days as a result of a supply-chain attack... and the number of infected users is continuously increasing every hour. What's Interesting? Unlike almost every ransomware malware, the new virus doesn't deman

REFERENCE TO THE GRUESOME KILLINGS AND ROBBERIES BY UNKNOWN GUN WIELDING THUGS IN WESTNILE REGION - UGANDA.

Dear Ugandans, Africans and whole World, Greetings. Today Wednesday 5 December 2018, we are writing to bring to the attention of Everyone, inclusive of Foreign Governments, Foreign Humanity Organizations, Uganda Government, Activists from all walks of Life, that, the beginning of this New Month December 2018 has been a mystery Month for the People of, not only Arua People but also the Entire People of WestNile region have been Weeping, following consistent incidents involving unknown thugs. On Sunday 2 December 2018, at an Hour of around 21:46, unidentified thugs, carrying firearms, gunned down a Youthful Amati Ratibu, a mobile money operator at Nsambya in Arua. An innocent Youthful Soul gone! May his Soul Rest In Peace. On Tuesday 4 December 2018, just after one day from the ugly Sunday 2 December 2018 night massacre, unknown Gunmen again ambushed a Shopping Moll at Arua Hill, next to Tropical Suites Hotel! and it is reported that, the thugs went away with millions of cash money and g

500 Million Marriott Guest Records Stolen in Starwood Data Breach.

The world's biggest hotel chain Marriott International on 30 November 2018 disclosed that unknown hackers compromised guest reservation database its subsidiary Starwood hotels and walked away with personal details of about 500 million guests. Starwood Hotels and Resorts Worldwide was acquired by Marriott International for $13 billion in 2016. The brand includes St. Regis, Sheraton Hotels & Resorts, W Hotels, Westin Hotels & Resorts, Aloft Hotels, Tribute Portfolio, Element Hotels, Le Méridien Hotels & Resorts, The Luxury Collection, Four Points by Sheraton and Design Hotels. The incident is believed to be one of the largest data breaches in history, behind 2016 Yahoo hacking in which nearly 3 billion user accounts were stolen. The breach of Starwood properties has been happening since 2014 after an "unauthorized party" managed to gain unauthorized access to the Starwood's guest reservation database, and had copied and encrypted the information. Marriott di

CONGRATULATIONS TO 4 YEARS OLD DERRICK EMMANUEL UP ON GRADUATION.

Today Tuesday 4 December 2018 is the Date Our Grand Children Derrick Emmanuel has Graduated after Successfully pursuing 2 years in Nursery Level (both Baby Class and Top Class). Drone File attached, entails Derrick Emmanuel receiving his Grade "A" Certificates in accompany with his Mother Mrs Adiru Melda, his Aunt Mrs Gertrude Adania and among others, Friends to the Mother of Derrick. This day, did not only perused as a Land Mark but has also exhibited the worthiness in the Mother of Derrick Emmanuel, Mrs Adiru Melda, who, single handedly accomplished educating this first born Son in Nursery Class. As the next Task and Prayer will be embarked on his Primary School Education, let's take some moments to appreciate and thank this iron lady Mrs Melda, for putting a spirited fight to see this Young and Brave Child Derrick Emmanuel Graduated. May the Almighty God reign his Protections and Blessings up on this.