Menu

Monthly Archives: March 2017

Verizon Rebuts Critics of Data-Collecting App
Good Guy Comcast: We’re not going to sell your data, trust us
Yee-hacked! Fired Texan sysadmin goes rogue, trashes boot business

The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. Ransomware Exploits Safari Bug Apple fixed a flaw earlier this week that allowed scammers to exploit […]

Russian hacking goes far beyond 2016 pro-Trump effort
Data-Stealing Malware ‘Dimnie’ Targeting Developers on Github
US ATM fraud surges despite EMV
IDG Contributor Network: Biometrics can provide better data provenance
News in brief: jets in near miss with drones; Germany plans cyber-command; adult sites move to HTTPS
IXmaps Map reveals if your Internet traffic is being monitored by the NSA
Text message scam from the Motor Registry – how not to get stung
WikiLeaks exposes CIA anti-forensics tool that makes Uncle Sam seem fluent in enemy tongues
Threatpost News Wrap, March 31, 2017
Why you shouldn’t chip in to buy politicians’ browsing histories
Kremlin-linked hacker crew’s tactics exposed
Point-and-pwn tool for posers dumbs down ransomware spreading
Backup your (digital) life

In the digital age, data backup is essential. Find out how you can protect yourself ahead of World Backup Day, which falls on April Fool’s Day. The post Backup your (digital) life appeared first on WeLiveSecurity

Not just a load of old COBOLers: systems are still running on old code
Senator: Russia used ‘thousands’ of internet trolls during US election
APT29 Domain Fronting With TOR
Someone is putting lots of work into hacking Github developers
Aviation-Related Phishing Campaigns Seeking Credentials
Android under siege from malware – here’s how to protect your phone
Want privacy? Congress says you’ll have to pay for it
Jenkins users can shore up software security with plugins

Don’t wait for a system failure, ransomware attack, or for your laptop to be stolen before you start thinking about backing up your data. Why back up? According to a 2016 study by Acronis, 1 in 3 people have suffered data loss and are willing to pay up to $500 or more to recover lost […]

LinuxSecurity.com: An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

Facebook, Google, etc: Yeah, yeah, we’ll work on the nasty stuff about bombs – but we ain’t doing no backdoors
Researchers steal data from shared cache of two cloud VMs
WONTFIX: No patch for Windows Server 2003 IIS critical bug – Microsoft
Minnesota, Illinois rebel over America’s ISP privacy massacre, mull fresh info protections
Blizzard’s World of Warcraft fans hit by phishing scam

security update

How to Keep Your Web Hosting Account Safe From Hackers
New Mirai Variant Carries Out 54-Hour DDoS Attacks
Is this a solution to Trump signing away your digital privacy? We give Invizbox Go a go
Millions of websites affected by unpatched flaw in Microsoft IIS 6 web server
Github Repository Owners Targeted by Data-Stealing Malware
NukeBot Banking Trojan Source Code Leaked Online by Author

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: An update for curl is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: New mariadb packages are available for Slackware 14.2 and -current to fix security issues. [More Info…]

LinuxSecurity.com: Security Report Summary

News in brief: tech firms ‘must do more’ on terror; data breaches shoot up; gloom at toxic online spaces
Financial fraud losses in the UK last year topped £20m a day – report
UK cops arrest 20-year-old on suspicion of blackmail and hacking
Malware campaign targets open source developers on GitHub

Be on your guard if you’re a developer who uses GitHub – someone could be trying to infect your computer with malware. The post Malware campaign targets open source developers on GitHub appeared first on WeLiveSecurity

New Mirai variant launched a 54 hour DDoS attack on a US college
Security co-operation unlikely to change post Brexit, despite threats
LastPass has a secret major vulnerability – and, as yet, there’s no fix
Let’s Encrypt issues certs to ‘PayPal’ phishing sites: how to protect yourself
Carbon Paper: Peering into Turla’s second stage backdoor

The Turla espionage group has been targeting various institutions for many years. Recently, ESET found several new versions of Carbon. The post Carbon Paper: Peering into Turla’s second stage backdoor appeared first on WeLiveSecurity

Open-source developers targeted in sophisticated malware attack
Falling in love online? Don’t get caught out by the Tinder scammers
Hacker Who Used Linux Botnet to Send Millions of Spam Emails Pleads Guilty
Five scams that won’t make you laugh on April Fool’s Day
VMware patches critical virtual machine escape flaws
Trump extends Obama executive order on cyberattacks
More fun in the sandbox: Experts praise security improvements to Edge
Industry Braces for Repeal of ISP Privacy Rules
Smashing Security #014: Protecting webmail
Encryp-xit: Europe will go all in for crypto backdoors in June
How to leak data from an air-gapped PC – using, er, a humble scanner
Kremlin-backed APT28 doesn’t even bother hiding its attacks, says Finnish secret police
Hey FCC, when you’re not busy screwing our privacy, how about those SS7 cell network security flaws, huh?
Recruiters considered really harmful: Devs on GitHub hit with booby-trapped fake job emails

Risk Level: Very Low. Type: Trojan.

The scam that knows your name and home address – here’s what to do
Bloke is paid to scour hashtags for threats, spots civil rights boss’s tweets, gets fired, sues
Trojan source code leak could spur new online banking attacks

security update

Publicly Attacked Microsoft IIS Zero Day Unlikely to be Patched
US ISPs to Snub Users Privacy by Collecting Personal Data
News in brief: Alabama considers porn filters; Samsung launches new Galaxy; celeb’s Instagram hacked
Workarounds Available for Flaws in Siemens RUGGEDCOM Gear
Apple issues iPhone software update after fake police ransomware scam
VMware Patches Pwn2Own VM Escape Vulnerabilities
Got a drone? Check local regulations before you fly it
Another hole opens up in LastPass that could take weeks to fix
‘Anonymous’ FTP Servers Leaving Healthcare Data Exposed
Strange Mirai botnet brew blamed for powerful application layer attack
Changes coming to TLS: Part One
Phishers target World of Warcraft users with fake in-game pet offer
Harley Geiger on Cybersecurity Policy
Scareware scammers lock iOS Safari to extort ransom from users
The uncrackable problem of end-to-end encryption
Lawmakers scathing over FBI’s facial recognition database
Scammers scare iPhone users into paying to unlock not-really-locked Safari
US House votes to undo broadband privacy rules
Macs and iPhones patched – including 23 kernel-level holes
Microsoft Offers Analysis of Zero-Day Exploited By Zirconium Group
46% off CyberPower Surge Protector 3-AC Outlet with 2 USB (2.1A) Charging Ports – Deal Alert
Intel Optane memory announced: A steroid to speed up your computer

security update

security update

security update

security update

security update

Vulnerable Smartphones, IoT Devices: 400% increase in infection rate