A Health Insurer Lost Six Hard Drives Holding Data About 1 Million Customers

Centene, based in St Louis, says that the hard drives in question contain personal data about people who received laboratory services between 2009 and 2015. Stored on the drives are details including names, addresses, dates of birth, social security numbers, member ID numbers and health information.

Source: A Health Insurer Lost Six Hard Drives Holding Data About 1 Million Customers

Apple’s Safari browser is crashing on iPhones and Macs worldwide – turn off search suggestions helps.

Apple’s Safari browser appears to be experiencing issues worldwide this morning. Searching from the address bar in both iOS and OS X is causing the browser to crash in some instances. The Verge has confirmed the problem on several of our own iOS devices and at least one OS X machine.”Safari’s search suggestions are to blame”Steven Troughton-Smith, an iOS developer, notes that the problems are related to Safari’s search suggestions feature. Simply disabling this feature will stop Safari crashing, or using the private mode option in the browser as a temporary workaround

Source: Apple’s Safari browser is crashing on iPhones and Macs worldwide | The Verge

Lenovo ShareIT comes with hardcoded password and directory traversal

Hard-coded password in Lenovo SHAREit for Windows

[CVE-2016-1491] When Lenovo SHAREit for Windows is configured to receive files, a Wifi HotSpot is set with an easy password (12345678). Any system with a Wifi Network card could connect to that Hotspot by using that password. The password is always the same.

Remote browsing of file system on Lenovo SHAREit for Windows

[CVE-2016-1490] When the WiFi network is on and connected with the default password (12345678), the files can be browsed but not downloaded by performing an HTTP Request to the WebServer launched by Lenovo SHAREit

Source: Lenovo ShareIT Multiple Vulnerabilities

It’s not going well with Lenovo security