Menu

Monthly Archives: May 2017

Many Commercial Drones ‘Insecure by Design’
Leaked: The UK’s secret blueprint with telcos for mass spying on internet, phones – and backdoors
Indian Biometric System Data leaked; over 130 M people could be affected

LinuxSecurity.com: Security Report Summary

1 Million Gmail Users Impacted by Google Docs Phishing Attack
Blackmoon Banking Trojan Using New Infection Technique
News in brief: UHD Blu-ray encryption ‘cracked’; WhatsApp falls over; Gmail boosts phish protection
Unpatched WordPress Password Reset Vulnerability Lingers
Snake Malware Modified; OS X The Next Target
Gannett Co data breach: 18,000 employees reportedly affected

Gannett Co, which owns a host of media titles across the US, has reportedly suffered a data breach following a phishing attack. The post Gannett Co data breach: 18,000 employees reportedly affected appeared first on WeLiveSecurity

We’ve heard the same advice over and over when it comes to passwords—make it strong. But how many of us actually follow this advice? Would you believe that some of the most popular passwords are still “password”, “123456”, “qwerty”, and “abc123”?1 For World Password Day, we’ve want to offer a few tips to make sure […]

Going travelling? Don’t drop your guard when you’re on the road
Have you got what it takes to hack the US Air Force?
Security education and social responsibility

We look at key trends for 2017 within this sector, from password security to the need for security education at all institutions: schools, businesses, governments. The post Security education and social responsibility appeared first on WeLiveSecurity

A short history of the computer password

The modern computer password was introduced to computer science and the wider world in 1960 by Fernando Corbató. We look at its history and impact. The post A short history of the computer password appeared first on WeLiveSecurity

Update: Google Doc phishing story takes some bizarre turns
NSA collected records of 151m Americans – but wait, didn’t bulk collection stop three years ago?
Sneaky Gmail phishing attack fools with fake Google Docs app
Red alert! Intel patches remote execution hole that’s been hidden in biz, server chips since 2010
Hackers Are Remotely Controlling Industrial Robots Now
‘Google Docs’ worm ransacks Gmail users’ contact lists – what you need to know
The BlackBerry KeyOne: A surprising phone with a hardware keyboard

LinuxSecurity.com:

Fingerprint security: Three myths busted

Fingerprint security is growing in prominence, but is the technology behind it really as secure as we think it is? In this feature, we tackle three myths. The post Fingerprint security: Three myths busted appeared first on WeLiveSecurity

Beware Google Docs phishing attack

Recently, many people received a phishing email from a mailinator.com address that was attached to a malicious Google doc. Beware. The post Beware Google Docs phishing attack appeared first on WeLiveSecurity

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Google Shuts Down Docs Phishing Spree
New iCloud Phishing Scam steals credit card data, access device’ camera
You are not alone; WhatsApp is down for many (Updated)

security update

security update

Sabre Corp. Investigating Breach of Reservation System
Researcher: ‘Baseless Assumptions’ Exist About Intel AMT Vulnerability

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com:

LinuxSecurity.com:

Proposed NIST Password Guidelines Soften Length, Complexity Focus
News in brief: China steps up news oversight; Intel patches flaw; Zuck pledges better moderation
A DDoS attack could cost businesses as much as $2.5 million

Businesses that fall victim to a DDoS attack could lose, on average, as much as $2.5 million in revenue, new research has suggested. The post A DDoS attack could cost businesses as much as $2.5 million appeared first on WeLiveSecurity

Free search engine tool hunts down malware-infected computers
BASIC turns 53 – find out just how cool that is!
Concern mounts at Indian ID scheme as portals ‘leak’ 100m people’s details
Shodan’ Malware Hunter to Expose Command & Control Centers of Botnets
Xen hypervisor faces third highly critical VM escape bug in 10 months
Tinder orders researcher to remove dataset of 40,000 profile pictures
Security Sessions: Why CSOs should care about machine learning
No more pointless password requirements

Peter Stancik discusses the new Digital Identity Guidelines drafted by NIST, which offers an update on password security. The post No more pointless password requirements appeared first on WeLiveSecurity

Critical Android security patches released – but will your phone ever see them?
What motivates some young people to become cybercriminals?

Sabrina Pagnotta takes a closer look at what motivates some young people to become cybercriminals. You may be surprised to find out some of the reasons. The post What motivates some young people to become cybercriminals? appeared first on WeLiveSecurity

Super Free Music Player Android App Comes with Malware Infection
Security Scoring and Grading for Containers and Images
Want to get your Android phone purring? Don’t install Full Optimizer
Microsoft’s novel approach to securing IoT
Intel patches remote hijack bug that hid in chips for seven years

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

security update

security update

Shamoon Collaborator Greenbug Adopts New Communication Tool
Unity 3D Forums Hacked by OurMine Hacking Group
IBM: Destroy USBs Infected with Malware Dropper

LinuxSecurity.com:

DDoS Attacks Can Cost Businesses Up to $2.5M Per Attack, Report Says
Malware Hunter Crawls Internet Looking for RAT C2s

LinuxSecurity.com:

LinuxSecurity.com:

LinuxSecurity.com:

News in brief: China plans its own Wikipedia; social media firms face huge fines; TalkTalk duo plead guilty

Risk Level: Very Low. Type: Trojan.

Facebook Last Warning Phishing Scam Stealing Login, Credit Card Data
Fraudsters draining accounts with ‘SIM swaps’ – what to do
Google Patches Six Critical Mediaserver Bugs in Android
Netflix declines to pay Orange is the New Black ransom to hacker
IDG Contributor Network: DevSecOps: Paradigm shifts are messy, but someone’s got to take the lead
A $22 Radio device to crack car’s security system
Flickr’ Account Takeover Vulnerability Patched, Researcher Gets $7k Bounty
Email hackers cost couple their new home
GE patches flaws allowing attackers to ‘disconnect power grid at will’
Fox News ‘hacked Andrea Tantaros’, says lawsuit
Fuze Patches Bug That Exposed Recordings of Private Business Meetings
Intel Patches Nine-Year-Old Critical CPU Vulnerability
School’s almost out … Don’t let cybercriminals in

Cybersecurity should be a priority for educational institutions, says ESET’s Lysa Myers. It’s important to protect students and staff from cybercriminals. The post School’s almost out … Don’t let cybercriminals in appeared first on WeLiveSecurity

IBM has been shipping malware-infected USB sticks
A single protective technology means a single point of failure

A single protective technology means a single point of failure. A company aiming to build reliable and strong cybersecurity defenses should opt for a solution offering multiple complementary technologies. The post A single protective technology means a single point of failure appeared first on WeLiveSecurity

Kali Linux 2017.1 Security OS Released With New Updates And Features
Linux kernel security gurus Grsecurity oust freeloaders from castle
Flickr account hijack flaw earns researcher $7k
Vulnerability hits Intel enterprise PCs going back 10 years
Ciphr blames rival company for partial data dump of its users
Russian-controlled telecom hijacks financial services’ Internet traffic
A VPN will not save you from government surveillance
Hacker Arrested for Stealing $100 Million from Facebook and Google
Super Free Music Player in Google Play is malware: a technical analysis
6 signs enterprise security is getting better

As a traveling consultant, I visit lots of businesses during the year and examine their security plans. For decades, I’ve secretly scoffed at what they’ve tried to do because it was often too little, too late—and misdirected.But these days, I run into more and more companies that get it right rather than wrong, with ideas […]

The phishing swindle that conned $100 million out of Google and Facebook

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.