Menu

Monthly Archives: August 2017

What to do if your public cloud is hacked
Tuesday review – the hot 26 stories of the week
SAP point-of-sale systems were totally hackable with $25 kit
DJI strips out code badness, reveals some GPL odds ‘n sods
Dangle a DVR online and it’ll be cracked in two minutes
Swedish slip-up leaks hosting company’s customer data
Intel ME controller chip has secret kill switch

security update

Crowdfunding scheme hopes to pay legal fees for Marcus Hutchins
NHS board suffers malware attack just months after falling victim to WannaCry
Fraudulent Donations Lead to Disbanding of Hutchins Legal Defense Fund
CEOs Resign from Trump’s Cybersecurity Commission
Selena Gomez’ Instagram hacked; posts nude photos of Justin Bieber

security update

Tech firms take down WireX Android botnet
Mobile WireX DDoS Botnet ‘Neutralized’ by Collaboration of Competitors
Anonymous Messaging App Sarahah to Halt Collection of User Data With Next Update
Sarahah App Uploads Your Contacts List on Unidentified Server
“Wanna see the Game of Thrones in advance” email delivers malware
Researchers bought MacBook for $1 using critical vulnerabilities
Open Banking APIs under PSD2: What are the security threats and solutions? Download VASCO’s white paper now
Spanish giants the latest to fall foul of hackers

Real Madrid’s official Twitter account was hacked with a post announcing the signing of rival Lionel Messi. The post Spanish giants the latest to fall foul of hackers appeared first on WeLiveSecurity

WannaCrypt NHS victim Lanarkshire infected by malware again
DailyStormer’ new site booted off after hosting provider gets DDoSed

security update

This App Lets Anyone with Limited Skills Create Android Ransomware
HBO hackers leak script and spoilers of Game of Thrones Season Finale
Race is On To Notify Owners After Public List of IoT Device Credentials Published
Microsoft’s Bid to Save PowerShell From Hackers Starts To Pay Off
How Quantum Computing Will Change Browser Encryption
This Linux tool could improve the security of IoT devices

security update

Oops! Aetna exposed 12,000 customers’ HIV statuses through envelope window
NSA ramps up PR campaign to keep its mass spying powers
Defray Ransomware Seen Targeting Education, Healthcare Industry
New Campaign Uses Facebook Messenger to Distribute Malware
Brazilians waxed: Uni’s Tor relay node booted after harvesting .onions
News in brief: ‘GoldSun’ arrested at LAX; update bricks smart TVs; Facebook ‘shuts 1m accounts a day’
Judge scales back data demand on inauguration riot-related web host
OpenJDK may tackle Java security gaps with secretive group
HIDS4U customers warned of free gift email attack after customer database leaks
It took 14 years for this Massachusetts hospital to detect a data breach
Vault 7 Leak: CIA Collected Biometric Data from Partner Agencies
Threatpost News Wrap, August 25, 2017
Hackable flaw in connected cars is ‘unpatchable’, warn researchers
Identity theft at ‘epidemic’ levels, warn experts
Hash of the Titan: How Google bakes security all the way into silicon
Cryptocurrency Mining Malware Hosted in Amazon S3 Bucket
‘Clever’ TapDance approach to web censorship that works at ISP level
Touchscreens ‘at risk from chip in the middle attack’, warn researchers
Celebgate 3.0: Miley Cyrus among victims of photo thieves
Security Lacking in Previous AppleAVEDriver iOS Kernel Extension
GTFO of there! Security researchers turn against HTTP public key pinning
Malware coded into synthetic genomes

Malware coded synthetic genomes have caused skepticism within the scientific community, but new research might help to change that perception. The post Malware coded into synthetic genomes appeared first on WeLiveSecurity

The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. UK NHS Database Exposes Over 1 Million Patient Records During the past week, a breach was […]

Chinese chap collared, charged over massive US Office of Personnel Management hack
Leaked: Private Photos of Nicole Scherzinger, Dakota Johnson and Addison Timlin 
Uncle Sam outlines evidence against British security whiz Hutchins
Logitech’s security cams allegedly suck so bad, this US bloke is suing it
Court Orders DreamHost to handover data on anti-Trump site

security update

DreamHost smashed in DDoS attack: Who’s to blame? Take a guess…
Guilty in Absence: Pirate Bay Founders to pay €405,000 to Record Labels
Biometrics watchdog breaks cover, slams UK cops over facial recog
Adware Spreading Via Social Engineering, Facebook Messenger
Hack Telegram, WhatsApp and Signal app; get $500,000
A blast from the past: Mobile trojans abusing WAP-billing services
Deprecated, Insecure Apple Authorization API Can Be Abused to Run Code at Root
Verizon: US government requests for phone records on the up
Malware rains on Google’s Android Oreo parade
Energy firm slapped with a fine after making 1.5m nuisance calls
Are you a student? Your personal data is there for the asking
Probing the online phish market reveals thriving, profitable underworld
Smashing Security #039: Woah – are we talking to a cyborg?
Cybersecurity world faces ‘chronic shortage’ of qualified staff
BankBot trojan tries to sneak apps onto your Android smartphone without permission
DMARC anti-phishing standard adoption is lagging even in big firms
Accused! Yahoo! hacker! pleads! not! guilty! in! US! court!
Beware; dangerous new malware ‘Joao’ hits gamers worldwide
WikiLeaks a ‘hostile intelligence service’, SS7 spying, Russian money laundering – all now on US Congress todo list

security update

AccuWeather: Our app slurped your phone’s location via Wi-Fi but we like totally didn’t use it
Experts Show How Easy It Is To Hack Home & Industrial Robots Remotely
VoIP bods Fuze defuse triple whammy of portal security vulnerabilities
Zerodium Offers $500K for Secure Messaging App Zero Days
US prosecutors drop demand for 1.3m IP addresses of folks who visited anti-Trump site
News in brief: Google pulls 500 apps from Play; lottery boss sentenced; drone owners told to update
ROPEMAKER Exploit Allows for Changing of Email Post-Delivery
Business Email Compromise Campaign Harvesting Credentials in Numerous Industries
The .fish website that caught visitors in a phishing net
Hundreds of Android Apps on Google Play Store Infected with Spyware
Man gets 25 years for hacking lottery computers and winning $2.2 million
Storm breaks over AccuWeather phoning home without consent
Did ROPEMAKER just unravel email security? Nah, it’s likely a feature
Hackers can control damaged phones using replacement screens

Replacement screens for cracked smartphones bought from third party vendors could leave you vulnerable to hackers, a new study has revealed. The post Hackers can control damaged phones using replacement screens appeared first on WeLiveSecurity

Sometimes hacks can be more about mischief than malice
Banking trojan-slingers slip past Google Play’s malware defences
What are the risks of allowing people to use their smartphone at the bank?

Using smartphones at a bank might seem like the most routine habit in the world but sometimes these smartphones are being used as way to gain access to the bank’s WiFi and sensitive data. The post What are the risks of allowing people to use their smartphone at the bank? appeared first on WeLiveSecurity

Google bakes in sweeter security for Android Oreo
Watch Hackers Hijack Three Robots for Spying and Sabotage