Menu

Category Archives: Security Advisory

Auto Added by WPeMatico

Just 1 in 7 security chiefs report to the CEO, despite boardroom concern

Most businesses now recognize internet security as a real concern, yet new research has found that just 1 in 7 security chiefs report directly to their CEO. An ISACA and RSA conference report titled State of Cybersecurity: Implications for 2016, found that 82% of information security professionals feel that their board of directors is either concerned or very […]

RSA: Will your next phone have quantum cryptographic 2FA?

��}��F��o)��P�&�”��R�H�Ԓǚ�,�[�W�v�”�n���l����k#�”�.�`�M�I.3� �f�)پ�f,�@UVVVfVVVV��{��������ׯ���}&�EO;�Xx��n�Y�WO��e����1#�xhh�ٯ��_�����$�3p�^�� {$�U=>=������c��-.K��ω���]�kWA���F��¸�3t,@��r�O~�/����0�s_w����?’/o����8�:���&�w���l�s`�_��t����wv�����Z����w���=mw%,��L���Y(ܞ�3WDc!�1�_�݊”�M�����_�0�=M �t:5��u.D$�$t�i��40R�x,&”j�w�֤��et�=����{��ލ��!����3q�!l6u�1`�`�ѿ�8vbW���l�_[/Źy�r-Iu�”<�xh�Z��Ʉ�3mI�?�-���4ΒPJr���8zK��O���%?�,c�P����N�M�ϣ���x�79�I�<�=���6����ևw�0��=��&y��I�4��|A�’Y���!X�@���GZ���X1R;����П��~�ۢ�����k���;�칵_o��z�2c�9��O?���MWx�x��n�p�����`���z6v�%�0B�����F�n����[���{�bM�Տ,3 �Gd+ٱ1�VU�����”Q�p�աU�����5�~�-#����z�”g�cC����T�D�� �����w� �B|ױ���.�a�`q�fk�a�N�~Ȟ�`Y�v�_u 3Ȍ���~�t��9a”j���á�4΃C3����S�� �J����U ۷���UG �)٪Oj�M�Y��3|#�8��5�’b��ޱ�(p��֬(���8�3�O}�6�h���јZU_����C���ZW�S��!k1��_�J/ƕ���2Z��Q�’�]�O�C���Ww˕f~e���:s�����=`���ia dՙ7�kO�r΂��o�o �]723#�YhL|�sů��������[�Ys������י)4��4��Cޮ’�M���e����s.|�E)AI�2��gr�ls��Ő’n���E� �X���-Q�j�!f����`��N@�>5�=2Zh�l 7CE���:�F�~�B�?�G1����:N3��b��C�Y3���!z�1��LKTAj��.����è`���p�=��+�ۣ0a”���Z�ѹ�ϲ���+��P��v:u�z�*�

One-third of HTTPS websites left vulnerable to DROWN attack

A new vulnerability could leave as many as one-third of HTTPS websites open to decryption, meaning that sensitive data including usernames, passwords and credit card numbers could be at risk. The vulnerability has been dubbed DROWN (Decrypting RSA with Obsolete and Weakened eNcryption) and affects servers using an SSLv2 certificate. The website for DROWN states that as many as 33% of sites […]

<div>Security is ‘easy': Just ask someone at RSA</div>

��}�۶��o�*��gM)����%{��{3�ɞk{�(�8C?F�8Su�am�n�}���’��&�I��R$Ei4�I��|�”�F���h4���9~�Ϸ/���^��s��8�x̳�QO��ӉƂ��˞&F�l��a�)F�9�M?��A�;���r�w��{<�EE �K�^�c��܏�w��k̖�zZ�/�&6xd��0�q/��Ɓƚ�j8����q,&��/��wF�Xշ&��]�|�0Ε��N<�9�µ�A?���ص

Managing agile virtual machine security across the enterprise: A closer look

Moving security to different digital intersections may serve to reduce the load on the endpoint – thereby avoiding duplicate scans, say, during a malware storm. However, it is just as important to understand how and when an agile approach to deploying your network defenses in real-time should be performed, and how attacks might dictate that approach. […]

IRS issues warning to HR professionals over phishing scam

��}ے�8�������I]��*K>v�=]s|�u�����U@”$��”i�*��]�{“v#�6b���̗l&R�E�R���=�L� $��D”�H<�����O_�߽z�����Q<���YLyQ�}�8�m���b��ƻY�4���Z̮buY�Qi��C��3㒅���”��@����ߦ����p��j>�)k^g’�SzZ�����~�uQ��8���cӘ�������A������qs���ao�^o��p�l���FK�”��t�mkQg��?��?��ϵ�x8�|FF4″6�a�p�Z��QD:2�����t��y�N�eK�ةr�),j�O� z4 ]�’�?�HwQ�4~b�%4N�d�u%/���xͦ��*��n��Q��Qo�k����V�!�]�/7�m��ˡ��4�C��Py��3�C��*Zy�>��t�’��B`�����PiN(��/0�a����0�3mA�?�-����΂PH���Ņ������Ղ�_��O�h�+:�F�E~�i��oH�N��g�i !�T��rN/�x�u�ĝ������N6�ϝ3�@��g�G#�t���/�/VdNM?�bqrD�X}?d�X��/�~�j���4h ���7��? �L;�Ag���U��D���x}wbcK��+0u3��Coϣ’@���4���#�ֽ���*�Bk�Z��9�M� �~��!�{&�2{������:Z�f�����ʾ� � X�������b ��C��nS�����`� �A菏�?�mV��m���v��Z�߯��z��7c�9���/+U�e�0uZ�U=�>�j�JX�{�=�F���^ �_kTM���C�c�zx�q�Ҕ-��d��Qߌ�~�”���X�a��^�l�_�HT4iUhդA�<�x�v�_���!B�� �ڟ#g��cC�� ��/8��׀��7���Y�^~��xL]�G��q��Ղu��4c ���+���o�a@v�Զ_B_:6�T��*�,�x/A{0[� k��-)��E~��qL�#^����Ŷ�_8vQ��E�[MA�; J8�'zr�e���~U�� 3B����um`*���U2���Sj�f�P���>kOu��ϗ�:q�����#5a��*�U’b��=?�9V�~�X�ћ*|+�k��sů��Փ���RՉ�~OPU��`�������G,�Cޮ’�L�V���K�pQJP���v�™;q�����l@’n��E� �Xѣ��-Q��T�)��h�6��o�P����l��}�L���!��, @Q@�m#�w����=ߏ�8��v�CWj �����z�H��=�4a��LTAj�������v찡ζ��dz w{F#���ó�}�����g���P�i�endHE};�:��{�(����X�����(]�jP�9���#j�ߵ��HX�eϷg$Il�6s�Vv�#��������.�O5=U煞[-���i����D� ;O(�h�M�3_/|�v��3q7J�z�F�Lιqq��Cw@�,�@ɠQ��u�]����} J����h��Mw�A�n�B���S��+wL�0�^�]�ע_��=;#M�N~`�� �^E&�ݛ��BB�0=��.��%4�-�y1����m`�(��P뤒,7�e��J�BБ��>�6I�����HE��&>V�Dg@*���r�H K@�l�a&��sJ�R�`��7)t���p²_@��nY����0?���D�u/x�G*$J�[).�Ӫ�)��׾�LX�?c?dl�F�9� ��_���`�*tX�:W�=�������G����G�$�u�”��ύ̇��2I+`f�/�і��ix��Z6��8�����cg<$�M��q����4�Y��%��ih!r^��FJ�9���{�#v�~� �n��`�ţ0� �1�尝K���|�<��K��m��)��^�9K��B$�@��Z���Į�*~g^H���6�|0�ǖ�$kK8�/��_ zc��x�[Б�e�liྐ/e�pp�S� Vz�;^x�B���wi���G/q��|A����}5 o�)q>��N�O5�ʗɗ��B�&�5ƶ�?DcxdEeͥ�&���tS�� F{�$6&���O� y8$O�- �@o����},�q��� ��}ے�8�������I]��*K>v�=]s|�u�����U@”$��”i�*��]�{“v#�6b���̗l&R�E�R���=�L� $��D”�H<�����O_�߽z�����Q<���YLyQ�}�8�m���b��ƻY�4���Z̮buY�Qi��C��3㒅���”��@����ߦ����p��j>�)k^g’�SzZ�����~�uQ��8���cӘ�������A������qs���ao�^o��p�l���FK�”��t�mkQg��?��?��ϵ�x8�|FF4″6�a�p�Z��QD:2�����t��y�N�eK�ةr�),j�O� z4 ]�’�?�HwQ�4~b�%4N�d�u%/���xͦ��*��n��Q��Qo�k����V�!�]�/7�m��ˡ��4�C��Py��3�C��*Zy�>��t�’��B`�����PiN(��/0�a����0�3mA�?�-����΂PH���Ņ������Ղ�_��O�h�+:�F�E~�i��oH�N��g�i !�T��rN/�x�u�ĝ������N6�ϝ3�@��g�G#�t���/�/VdNM?�bqrD�X}?d�X��/�~�j���4h ���7��? �L;�Ag���U��D���x}wbcK��+0u3��Coϣ’@���4���#�ֽ���*�Bk�Z��9�M� �~��!�{&�2{������:Z�f�����ʾ� � X�������b ��C��nS�����`� �A菏�?�mV��m���v��Z�߯��z��7c�9���/+U�e�0uZ�U=�>�j�JX�{�=�F���^ �_kTM���C�c�zx�q�Ҕ-��d��Qߌ�~�”���X�a��^�l�_�HT4iUhդA�<�x�v�_���!B�� �ڟ#g��cC�� ��/8��׀��7���Y�^~��xL]�G��q��Ղu��4c ���+���o�a@v�Զ_B_:6�T��*�,�x/A{0[� k��-)��E~��qL�#^����Ŷ�_8vQ��E�[MA�; J8�'zr�e���~U�� 3B����um`*���U2���Sj�f�P���>kOu��ϗ�:q�����#5a��*�U’b��=?�9V�~�X�ћ*|+�k��sů��Փ���RՉ�~OPU��`�������G,�Cޮ’�L�V���K�pQJP���v�™;q�����l@’n��E� […]

RSA: Can crypto save your life?

The stage is set: the wily Apple facing off against the heavyweight FBI bruiser. The contest: industry argues unbreakable crypto should be just that – unbreakable. In the other corner, the suits at the FBI argue that if someone REALLY needs to know what’s on your phone, there needs to be a way to know. […]

Snapchat staff payroll data leaked in phishing scam

��}�r۸���j�aN��D$u�-��|��9���mc��ΗdU I�)��Ų&���g�߼�V�̾�y��@�7ɲ�dfv���”�F���h4��{O_���������ww����!uG]��ڻ��ڗ]��q���|}�7��@�;GcF��x��MXDyQ�}�틮r�s#�t�3���WW��ed`���!��q4��b���W��c�؛�4�N��g]f�X��K’���l�{A�)=��hܵ؅m2��h۵#�:ZhR�u[U�F�7r���.X`m�����M/�s�K����]�e�EYk��?y>xC�4l����l_vΫZ��Ա-1��ʀ=~��������{��iu~��m6[{�??�}�����0�=’s�J��D@Iv32a�M���.|�@w9���T�2Ǿ`!3��f��M���I��h�&,4�;�f�4K��E��G�4���� ����=�a��ј0�M��=���a���� #:���q����s�h���c��ɑ!���R�b��~a�R�c (Q����)�C{�{aj&u=��YmX��֮��͖ʮi�p�DLC�5A8-������$��gA4���x( �1���t�mD�鰅�q���c��^�/3��’���v�>�N��ym��xe]9��a���4Zŏ�Ƭ>(�l��A��њ����As�`��f�� n�Y���C{x��[K��X�oǞ�[yT3:6n�V��Q����Q�}��”P���& �L�a��o���3�]˛���&ޙ}¢F”$]�YА��x z���`��T����’�`�^�>��c�}���`( ��j���G�Łɔ�� t7^:������k:��-������T�;}�=�M�����ruu�ݺ7�]�k�1h����ob�h�� �������p��(��5����|mmeՔ������ڲ��8���Q�ұ�@ , ���+ (����H:m��s���X5�~�-#�����CP�0Y�0��D*�N�� ���˷tֽׂ_>S�P�2N�s�`�%��6�E� ���km���]��:��g��v�͂G��-˵�P’�R�ƽV�A+ʢ‘�aġDQs��ϕ���v���R�@C����AX���u�C�”X�]�W�2#$��_?_5�zF��Z�w�`�K���5ԣ�|�a9����T�^�� ]հ�,�� `�*HMK�ٺ���n�Q�y�lsxK��p7Ga4�X�9_�³T�S�j�������u”�����ja��r��’������ i�M�cVa��*����8pQ�r�8�mW/�Q�(�̍���_n�Fy�J/�d�9-�4’5P?����p�tI���_��Jj��]��c�PT���v������Bf2���*%)Fxy�BWL�1����aS�`���l2�)�u�ķ�^�,T�x䐨to���o~L����s_y�Ax`��� ��հ� �gh�G�J�ſ�q8��Wa��ƾd�sKm����o>|�i�o�a�y�J�^�k�!O��ȼ�X,��f�y� ����>n8û�W�����ד���Ɉ7IWi)D��0WQg����gЧ�p��y9�)d�(x|Z�������;���H�� �GW��c�a���-��y^�s[0J (�S0���q���P2�`�l�’��V �Չ�;�BT���5�n#7ؖ,’XY��u�{�r8�8��h�:ҽh�������U��$w�SҢvBKj�~�����w�A��%ua��F|̰�0B�C-BC”:��*|��P����޼|���ww�j��լd��;��z�`l[�/0Ԣ����Kh+0BҪ��s8��!g�z�u��E��:+���k!�� A�4�]e���x�r_P����|_���(���O�N�M�*�)���B�b�hK{�� <.�.ê�Rp���+/�ؽ#JV����#-��&x�o�;�!y:2(�3�`N:3�X�����E������P�”D������G"�<;yv��~���k@� 3�[ޜ�m�c���<��5����n� ���*T��"&�tn���.�X DxHD�Y�|%/x�pΒX�6KX�X�s�ܶp�|V0�1�6��@t����j+�Pa��P9�s���0����Pz/$�P#�qAB-�A��K%5��5K1�j0��d�y�HЮ

5 threats every company needs to pay attention to
UC Berkeley hit with another cyberattack

The University of California (UC), Berkeley, has revealed that it was the victim of a major cyberattack. It explained that the incident, which took place in December 2015, has affected close to 80,000 current and former members of staff and students. The victims have been notified with notice letters, which includes details about free credit […]

Why cybercrime isn’t fun and (video) games

For young people, the Internet can be a vital source of information, recreation, escape and more, but without the right guidance it can also be unsafe. Online games particularly make prime targets for cybercriminals, and there are also concerns that gaming networks can lead players astray, or even act as a criminal breeding ground. Whatever the reasons might […]

Porn clicker trojans keep flooding Google Play

ESET researchers have found 343 malicious porn clicker trojans, which ESET detects as Android/Clicker, on Google Play over the last seven months – and their numbers keep rising. In one of the largest malware campaigns on the Google Play Store yet, criminals continue to upload further variants of these malicious apps to the official app store […]

Porn clicker trojans at Google Play: An analysis

Malicious porn clickers are mostly fake versions of popular games with very similar names and icons to legitimate applications. For instance, there were more than 30 bogus Subway Surfers and more than 60 fake GTA applications. These apps have nothing in common with the official Subway Surfers or GTA games. The trojans were mostly devoid […]

The industrialization of cybercrime may be upon us

��}��8��o;����,�-R��R}Y��ew�wl����{gݾ H�$VQ$͏R�ݎ�w�?�w�qO��&�$� �$HQ*I%{���Ǔ���yN~8{����G�h�������S����=��I�G��7�)k��} ��y4a��߁’��єE����ؾ�i’�17���>��P��i�����pB��E�8�i�������ě�4�� �����,_եS�Ӯl6� RJ�l+��,ve��ԉ�ڑM=R���2Hc�;L��W,�G����E��m�{��q�y�zfQf�^�/o���___[��˲��ul�F�h� ؓ�����’�n�g���v�Ms�仓�ݧO̶�E�����% ����h�p� �K��P#Sfٴ����� tO�Cj��wU�Z,��~a�~e����7s�$d�v��Z�d��K�P� ��@�����ވ�!TG8���_�g�P��k��P �-Ck��H ���R�zC�j��F��h�h��:PIG�q��A��$�9l�C�W(��s����Q^�i�C�–����|d�A��w �q�(�~�!F�;G�ȓ�%�INe��u��Et�T͓A����_�qz�f�#�T��c���AU�h#Y�fKo����Q�y����fr�qᏕք����” i`)���tJ�������K�ށP/��|����-%�7������T�D���3F#/��8Y6�_$��U��W4 ����Tf��Oܨ��*PG�խ����[��уꯪֲ��q�8pX��v�3��jX�)��5���:�p�#�M� �aFh�^�G�b�z �ᎍQ�MO��=�,V��k�u�{��UO���z�ެՇF�=���՚�0wM�m֮�wa��$��^����F�U�[���͚’}�|W��3?�4e+h*��v����k���k����k�LlǪk��Q}��c ��!��>�4̟`0���S��x�㫟�wτ_>�P���e/e���`�%�6�E� ���Gu���]�����W�ŗv�͂���wU Z�k���2a̪�ߵ��!5΃##���*���ju�!K�j��U���7��G�KtW 5��`�>W���(�i�w������vؼ�r@���;������L���8S7�/�@G�����Ze_’�O�#b�i�_Y��k��i��_�J/�E��� �Mc�8�b�*��^�!|��ǻ��M]tT��a��V����`�1�t��Z!bIRY{zs� �!��}�qB}0�U�c`깸t�Eo%ފ�V�G+��~OPU��`�������G�ȋnדDX^E��޵���K��[��j�ST��m0��n’��7����h��7]X����Y��*}qdx^�C��;t9� �ag����V�zw�^��Y07�U���{p��>8� ��6����L/���h��`wx�`�^�n�,���8�� u��o�S3x���W�4��y3��^��0t�@�FV}KԂ��s/G a/�5’Q@”냴�Cϱ����7�]�������:/*��b��b�fZ&��E”Z��]$�3M�U�g�Oۮ>����(�@Fo�(�I�7.N<��f���9�;Prh�� m��1��@�1� ����s�!�7 Ѐ�!�b��0<�q�%+P�K�dO �eL��o�w��ſ�0T�EdM,e����O5X�%�c��v?�j���Y��SM�d�N������ ]B�(�Y�H��4��.��0?���D�[` ^�”��x�(uo���m�K����s_{3@x`������U��: 3��Q�(����8�T�V`��ƾf��R’s���T6A�#���_o�d�إ_UI�+z���zM���U�%��@�y�GRU���H=��zT�I�(t�+�[���&g��s*�&0ݟ�^H=��ۮc��E’J�rn���’�+q����q(���S’�) ƶ�G�_�������V/�������D�cC���,��E�L�C��Rk�&�`�A�x0’t�c~�.0*�3�?i��3Hܩ3�Z�0�La&b��Bq�M�M�aM^d��?����٣��g�¡�bY�(^��p7}�X�ؙf�X�L�)�?�Wk�ܝy�[�ʙ�:���F�79�����ȁ�@o�vz’F8a,��`׋��a�e!���?à�ɠ��i��G{��-‘�~�d8�z�m�������o�o�9a:�SL</頾�A�h�B�ϧ��e�̈��`0J�#�k����~�}p��XX`�&w[L����f!�L]2

Digital childhoods: How different nations bring up their kids

Most parents think carefully about when to give their children their first set of house keys, or let them go out to play with no adult supervision. Yet in our digitalized world, the same caution should be exercised in the virtual world, such as on social networks or when giving children their first smart gadgets. […]

4 internet-savvy countries agree: Kids go digital too early

Nowadays, the internet and technology have become so important for business, travel and many other everyday tasks that they practically surround us all the time. This is true for the younger generation as well, including even the smallest children, but online surveys by ESET show that a majority of parents in Russia, the United Kingdom, […]

Linux Mint site hacked, users unwittingly download backdoored operating system

I hope you weren’t one of the hundreds of people who downloaded a compromised version of the Linux Mint operating system on Saturday. Because if you were, it’s possible that you’re not just running one of the more user-friendly flavours of Linux on your computer but also playing host to a Linux ELF trojan called […]

The security review: The state of security in companies in the EMEA region

Welcome to this week’s security review, which includes a detailed report from ESET on the state of information security in companies in the EMEA region, helpful advice on support scams and the rise of Android ransomware. The state of information security in companies in the EMEA region For this extensive report, ESET spoke to 1,700 […]

The Four “A”s of Account Management

��}ے�8�������)QR�n�|�ryڳvۧ��{��T@”$��”i^J�v;b�a�6��}߈��?�/�L$A�RI*�/��� $yC”������:���=��s#�F���g�_=-b7Q�쁣�zu�c֘嫺t�zڵ�f�DJ�mE��Ů�!��:�];����C갞Yi�yc��1���”��@�����~ �� �:oZ/,��ѷ�٫�;��M��o�����UY��:�E#f4M�����A��Y��=i���n�iy!#��P�W�n�7��nG��>�Б�uC�z.Ș�oZM��h��ac�ө��>M��@�HR�� �s�v<�z�X̽@�//�՘�=t���� ��]����%�G��gc1*���؏���&șl���d�QD�J�g1t̍R�v�'Vք����;}K{~<��`�-)����%�֖-�:�@�<�R՛R�]��K*���LnF#/����%4��= Rpv��NcQd����Gm@C�=�#��?5Bcfx��’M�Sc����Sc�u����5h ��;�!0|ȴ��t�/�B-‘�OHQ�:��-]�����p�;c ����s��-c_�����`��Vi}P�>&��U����4 ����Tf�gI���V�[��1fw�o�G��_U�ei��Eq�=����8���i�2��s@ ����ku(�!�%�C��8aFX�^�G�b�z�K86F�7=7�ijXuo��׭�u�V=}n����z�V��F���^Wk���q4�Y�v��}��ޓ��z=�� 9�P�f�����52}��V;z`~Ji�V�T [�xh��G�Rq��UY/|>?��oA%�N���jP�g�u2��:�}�G�1B�}������=�a��a��D*�N��’@���7��y� �|<��3�ë^*8��j�&�K�1l���B����8 � �jY�����v�͂���wU Z����`I�����f�NKʢ��߁�P"��p�U5���s ���؅��.����V���U��Y�V�}� [U��a�2R_b�jh�4�X�ęVq2׿oO�_����u��”�߳��w��S�d�8|�n�^`��&0�X�r�� h�}�0{��*�F�10��3g��”�[I�[�s� �h�4�� ��߶;���:3��`��ŀw�Ib�F��w�kOwPKP�v�v��™Gyv��YlDc’J�ݡ�����k�g�*�U@�yL}���)���`vG�!z&�M��`(�ή��/����ϋ�(��n��Xk ��v�鈺�9h�����`n$���5���A����*�ac/��o)���(�Nv���� ���&Ϣ�ݡс�|P�P���n65��{�U�M�k���,��%8 GW�ZԿod0�C1 UϽ��-�x֜D����g=���l�X���:^p�p���S]O5xQ)�+’���2 4.�J4�2��i�J?�/|�v�=p�J��]�P��ܹ8�+�a8�g,@ɡQ�(��W”�Ժ��`|d4N�’��u����@憠�kL��Ƒ��@��ؒ�8�1�%ޅk}���l�&�Ț��VӉ�_j0�Kea�a��`��íU��E��(j�`�P�C�f|���oƂ�*���=�����F��o�|�b��|wvFZF��d�*0q�B�;�m!�����xl�| ��D�nDo&��r���h�T��*��SFj�4~ 9���#ɜ��+���{��ϵcQ���|k8���Fc� �A��Ԥ�� ]B�(�Y�h��4 �.��0>�W�D�k ^�2��x�( o���o��V ��~�Y�偙�s6�V�V�$�0Wh�G����pR}_���;�9��J�T�=�yx�nt�hV$q?ժ�!O�g��,��n�� m�4��w?�FR�?O�zbO�D�Iz���x�O �=M#�zZ���� “��PZ��=(�Q����Gt���޷ޙ0(���h�4 |�q�=,���h�0ޡ��+� �p���` a���K.�J!�z>eUX���3/$A�eD>6J�m�rR���ZW �oF���3�E�#����8�}�ʾ!s?��d@J7

Healthcare data breaches lead more patients to withhold information from doctors

As 2015 slides into the cybersecurity history books as “the year of the healthcare breach” I decided to examine one aspect of medical data privacy that is sometimes overlooked: the impact of breaches on patient-doctor information exchange. Specifically, I’m concerned that high profile healthcare-related IT security breaches may lead more people to withhold sensitive information […]

The rise of Android ransomware
5 steps to make threat intelligence work for you

Imagine your friend’s house is broken into over and over. Each time the intruder gains entry by smashing a window. In response, your friend notices that his door locks aren’t Bluetooth-enabled or biometric, so he buys intelligent door locks for his house. He is surprised, over and over, that no matter how much he upgrades […]

Why patching is still a problem — and how to fix it

Despite warnings from people like me, unpatched software is the top reason computers get exploited. People aren’t too dumb or lazy to install patches. They want to do the right thing. But patching can be difficult for a multitude of reasons, and those roadblocks explain why patching is performed so poorly in most organizations. Let’s walk […]

Why you don’t need an RFID-blocking wallet

Because I’m a computer security guy, I have friends who like to show off their new RFID-blocking wallets and purses. “Look what I got for Christmas!” they say. My lack of response should be telling, but they don’t seem to pick up on it. They’ve seen the TV ads about malicious hackers who can “stand […]

Train your users to beat phone scams

As I landed in Dallas returning from my recent visit to China, I picked up my cellphone voicemails. One of them was from my bank, telling me my personal debit card was frozen and would have to be unlocked. I knew I should’ve let my bank and credit card companies know I was traveling, but […]

A better way to move past insecure SHA-1 certs

I’ve written a few times about the pending mini-Y2K issue that is SHA-1 deprecation. In a nutshell, all digital certificates are signed by a hashing algorithm — and SHA-1 is the signature type used by almost everyone. But SHA-1 has significant cryptographic weaknesses, which is why the crypto world has recommended for years that digital […]

How computer security changed in 2015

You can call me a pundit, I guess, but I don’t like making predictions. Most industry forecasts are horribly inaccurate and miss the stuff people will care about a year later. For me, it’s hard enough to digest what happened in the past and make sense of it, but this was a landmark year. Here […]

Why identity is the new security

Security boundaries in the IT world are changing, porous, often imaginary lines. A security boundary is a demarcation that delineates sovereign or administrative borders that dictate who controls what. Boundary owners are supposed to protect the assets inside their domains against all other unauthorized incursions. Security boundaries are important. Nearly every war is fought over […]

US hospital hit with ’random’ ransomware attack

A hospital in the US is still unable to fully access its computer system, over a week after cybercriminals launched a ransomware attack. It has been reported that the individual(s) behind the attack at the Hollywood Presbyterian Medical Center, which is based in Los Angeles, California, have demanded 9,000 bitcoins (approximately $3.6 million) in return […]

The security review: Remtasu and Facebook cheat sheet

From an outbreak of malicious spyware to the UK’s bill on investigatory powers, here’s our comprehensive breakdown of cybersecurity news from the past week. Remtasu is disguised in Facebook hacking tool ESET’s Camilo Gutierrez Amaya reported how Remtasu, a well-known piece of spyware, which first surfaced almost four years ago, is now appearing in disguise […]

How malware moved the exchange rate in Russia
Prince Charming: The Valentine’s Day scammer

Online dating has transformed from being a modest, underused and ‘hush hush’ concept – with a pinch of embarrassment – to a mainstream, popular and transformative entity. As a Pew Research Center survey from 2013 revealed, it has “lost much of its stigma”. Looking for love in the 21st century? It’s possibly a click and […]

Calls from the UK to make ‘malicious data breaches’ a criminal offence

The UK government should make ‘malicious data breaches’ a criminal offence, according to a new report from the Science and Technology Committee. Its paper, titled The Big Data Dilemma, argues that fines alone are not enough of a punishment. Further, the committee highlighted its concern over big data techniques that can “re-identify” individuals “from previously […]

How to isolate VBS or JScript malware with Visual Studio

In recent years, the ESET Latin America Investigation Laboratory has witnessed a growth in malware developed using scripting languages. This is why we now want to demonstrate how to configure a dynamic analysis environment to isolate such threats so we can understand and observe their behavior in a controlled environment. What do we mean by […]

How to bypass this LG smartphone’s fingerprint security in just 30 seconds

��}�۶��o�*�ӧL))Q�H�a��ۉ����L�=��(�8���F3�qվ�>�V���>�v R�F��I�)�� 4��F��@?��������=’?��~����i�QgB�U}{F{ڥKc���u�iϡ���G�����gD#ۣ=�҄��G�ȍ�qICw��+�æ}�_���#�;���3Ǧ��Mp�r��~���뛏��U�cY����ǎ�ٰ��ϻ����v�s�u#��#�/bw���:d��S�A��Q�����$fdx�Q��ʫH4��8�2�>��h�Dd���VI�)�%��G1i5���Q]���Rۡ�(t��>!q��C���=������ԎȐR�������} ?Rr��*�>^k{��1�P�㓘΀����yl�m�d��wj$��As���}���’�0@�yġ�ħ$�/V��I���ٰ:�F���&ƥ�0�φ�:�$a����5WC�Q�H����q^

VTech warns users that sensitive information ‘may not be secure’

VTech has relaunched its online service Learning Lodge, but appears to have shirked responsibility regarding future data breaches. Back in late November 2015, it was revealed that approximately 10 million of its customers had been affected by a major data breach. Information that was accessed as a result of the incident included names, addresses, encrypted […]

<div>When it comes to security, it's the data, stupid</div>

In an election year, particularly one in which we’re all bracing for a downturn, the 1992 Clinton campaign’s famous catchphrase “It’s the economy, stupid!” can’t help but come to mind. Apply that same commonsense thinking to computer security and you get: “It’s the data, stupid!” We suffer from a dearth of data and quality analytics […]

Biggest fears of EMEA companies? Malware ranks first

Can you guess the most pressing IT security issue faced by companies in the EMEA region? This will definitely be a hot topic addressed by ESET during the Mobile World Congress in Barcelona, which launches February 22nd. If you were to put your money on malware infection, you’d be right. According to a series of […]

5 tips to protect your admin credentials

Protecting elevated authentication credentials is one of the best defense-in-depth strategies any company can deploy. In today’s pass-the-hash, pass-the-Kerberos-token, steal-any-credentials world, preventing credentials from falling into the wrong hands can be the entire battle. Identity is security. If an identity and its authentication credentials get into the wrong hands, often enough, it’s game over. For […]

5 steps to make threat intelligence work for you

Imagine your friend’s house is broken into over and over. Each time the intruder gains entry by smashing a window. In response, your friend notices that his door locks aren’t Bluetooth-enabled or biometric, so he buys intelligent door locks for his house. He is surprised, over and over, that no matter how much he upgrades […]

Why patching is still a problem — and how to fix it

Despite warnings from people like me, unpatched software is the top reason computers get exploited. People aren’t too dumb or lazy to install patches. They want to do the right thing. But patching can be difficult for a multitude of reasons, and those roadblocks explain why patching is performed so poorly in most organizations. Let’s walk […]

<div>Why you don't need an RFID-blocking wallet</div>

Because I’m a computer security guy, I have friends who like to show off their new RFID-blocking wallets and purses. “Look what I got for Christmas!” they say. My lack of response should be telling, but they don’t seem to pick up on it. They’ve seen the TV ads about malicious hackers who can “stand […]

Train your users to beat phone scams

As I landed in Dallas returning from my recent visit to China, I picked up my cellphone voicemails. One of them was from my bank, telling me my personal debit card was frozen and would have to be unlocked. I knew I should’ve let my bank and credit card companies know I was traveling, but […]

A better way to move past insecure SHA-1 certs

I’ve written a few times about the pending mini-Y2K issue that is SHA-1 deprecation. In a nutshell, all digital certificates are signed by a hashing algorithm — and SHA-1 is the signature type used by almost everyone. But SHA-1 has significant cryptographic weaknesses, which is why the crypto world has recommended for years that digital […]

How computer security changed in 2015

You can call me a pundit, I guess, but I don’t like making predictions. Most industry forecasts are horribly inaccurate and miss the stuff people will care about a year later. For me, it’s hard enough to digest what happened in the past and make sense of it, but this was a landmark year. Here […]

Why identity is the new security

Security boundaries in the IT world are changing, porous, often imaginary lines. A security boundary is a demarcation that delineates sovereign or administrative borders that dictate who controls what. Boundary owners are supposed to protect the assets inside their domains against all other unauthorized incursions. Security boundaries are important. Nearly every war is fought over […]

<div>Attention, 'red team' hackers: Stay on target</div>

The most fun I’ve had as a security guy was getting paid to penetration-test companies and websites. It’s like getting paid to be a gamer. You earn a fat paycheck to hang out with friends and hack away without fear of being arrested. Most large companies today have multiple teams of professional pen testers, often […]

<div>4 do's and don'ts for safer holiday computing</div>

It’s easier than you think to keep your computer malware and hacker free. Believe it or not, most of today’s computers are pretty safe and secure, whether you’re using Microsoft Windows, Apple OS X, Linux, BSD, or Google’s Chrome OS. Mobile devices are equally as safe, as long as you’re downloading apps from an authorized […]

How malware moved the exchange rate in Russia
Prince Charming: The Valentine’s Day scammer

Online dating has transformed from being a modest, underused and ‘hush hush’ concept – with a pinch of embarrassment – to a mainstream, popular and transformative entity. As a Pew Research Center survey from 2013 revealed, it has “lost much of its stigma”. Looking for love in the 21st century? It’s possibly a click and […]

Calls from the UK to make ‘malicious data breaches’ a criminal offence

��}��Ȳ�o��w(� d�l�n�6��å��=�a;d�l��%��v{“�;�{#vb#� v�����I��sI#j%��u˟6g�&�j�:�Q�3hM֐�`�:��������$�� v��o�&3’�F4�i��b’v���t݈�Bʾ���}25/(��?�c D�?���$Ð�քF����X!�L���,��!ޖ m����;�-�}]o �H4��ޮ�1-�m�#��4�� /�;�,KL�&gԚx����|��1������L�����ƫ�2z�V�i��RTK.4쌖�DÞhiO����D�Q�.����GA��G�sTե��a�X.]ZLf��1ò�D�I�J��Q��}�”&��%�r*P��+8�(6�R�UWփ���%���$C��h��*�F�h��f�ό�Q�u�׽�m�V���6������ h8�N7��L�1]�’$͞�o�Q�&���R���x��`,���i��p�k�Q$� LEm���6��W��_�JC����xc��ICy�Q�΀��J�P���+��,7����{�*k`P�N�”�� #����O���[wF��4a�lV�c��5���������KQ�jhUu�z��[���`���ݓՔ��ԏC’!��w��G����5[�”�5a��( (����J:���F�5����7���”��^?�c|�hJW�T0[��ң�ꛈl%;6�ت�=���� 5�UJZ�� ��}2q�f�?a���!’����1r��B64̞`0���Q�� x�Ӌ�t޿c�Qe M뢟1N�����ft�”{����6.(�A�Cݴ���N�MÇ��w5Z���@��4ƍ;F�aV�E#�ÈC�8�� �����v��.�a�`�遆kHȃ�b’A��yON�,v�ܯ:�d�K����钰?������H�޽���c ˉ_�������U ۷���UG ���j�� ���˾�mg:�Z4u:o���x��D�kΏ`A��L���8�^Ї0���&�Y�r�EЪ�:��x�N����=� �ϏH����GPz1.�4�M�PHk�pxơ�xv>�P���?�~���K�W�*q��0���Ϙj|�dU _��kO�|΂��o��!���5~������sů��U��UŪ^UIs�����wי4�_ /�4�YO �0!7��w����R���c��?���k̅�ɦ#3q���2M���y���PS��� ��n�i�v3�v���h�e�#�4,�Q���Y��*}ud�~š�;��f يag��LϚ�������0G������mu�wè`���p�;�����0a4���Z�х�ϼ�ݡ�C� ��&��tj�� U�2#zO7�Ǚ��Kp�.G�hp[�+�KǴ῍��H��ˡo�I���(l��w��x�� t��ã���O6=e�ZZ-����2u4ߧ��J��r����A�^��jSg�Ɩ�`�v�B��g�ʼn�_8�=�EJ��� 7�R66�KPj�Gj��m��~�M4am���4���$��(�H[�m�R�q_�5�.�|�o8�tY�K�Z���K���(�܍�:,��c��������(*���`�P�C�j|���o>��A0ݘ����O�C3�������ԅO�]tm�ק������ڥA�H����C]C�f����]��FU�Ds/6�&`�2��0�?T�$��pѧ��@i�@:r�G��O�5=���wR����w�c^���|���?����FC}��(��R���a�u�bA�8Lh�H�W�M`j�r��- 6Ņ��ؖ_�|��2$*�[.o[ﲪ���ܗ�MuX�?�#?�5l�A�s�E�?��� �&��*,�_9W�}f� �{�A���>�a�9Tq?�k�H��ȼ}W.��f�u� �x@�qû��D#���/~=p�c��$}�PQ�’`����R}%uϠOCa ��r$4R6���z�X����WXB�����1č�(��(B��CͣQbs<�Uؐ{��58�={��z�䯧/��n����8�U�RǗN����ım�_`�y�E.Y�Y�nD ���?�޺����q�.#�q<գ�c��۸���V�?s�� �N�#V� � L��WqN�����аݾ{�����9���C�ح��#U=~��^�i���G��mum9FHZ�s�v�G˙�1bQ_p�f|!a�P�R��g/�P!(��kFQ_�y�%n���/(�`r�w��f��*R�P�G��3���e��D�н������C4��E�UT�.qW|e%g��$k�`��Ob-���M�ߐ7�C��i?#�

How to isolate VBS or JScript malware with Visual Studio

��}��6��o�Lϵ�X�DI�����n;�ر����’�!��I�Պ�s�!�E�}��7�’�*$A�RKj�Iv�� ��BU�<̈́1���2׉(�P���Ơ��hh�{��U���F�8�Y��0��H’��JM��^�{�7��%���q�{���ab�ƒ��S��#��j0�N���W�Æ8+��FnԂ�U��l�Y��1N����4�J�@������dO�<�P��s?~Q3:tx���jW~ÐJ)eZf��,�ZA����D)��1M2(�D�(P��‡��?����X�~����Ն�_���&Z–;��H�|s� d��$��r��:�e�ć��3������ڣF–�ֆ( ��������i���Rprа�W3�*SzH����Ą�b��BP����^�*"� ����I���Wu�k���v�w���z�R% �a���`�L��c���8�����l�N�:����ZTNB6�%��J"Pع1]k�|,L ފI�*g� Z�%��#� 5 �/11��R�R� r�����+�ִz��I^��2�m�6�&d>�Gy�H{KX”1cjr��V�:-/W����[�,x>�>_S@�FS?g��O�ǯA���yA5��˲�m�4 BI��q~��H���Rޠ�A�S��������w���<�㑹=�u:mmCpB��FET,W�2HT�"���e0H4Aq�$�}��Մ�k��D�h��a4�1m�@"��O�"�_��p(�,��r���E+�2*b�=��_�Or�W��2y�3w���6E�tQ�-��x�ρc�h4�zc{$֍�4J?�]Ak4ȓ�O�����/�����p��D�J�I�)���7�}]��:*קn��Ƌ�Er1h�I8���D]�h��"�%�ۿ< �m�y�+��۪`���f)6O�(��d� 5R�[m�tG6�yӪ����l�,؏Dh�JL�V��)��0�m҄����|��T^�EjYsy�eH��8Q?��M�����"S�k�$�%�2$��z)��/� �e:h��R��)Q��O�q����sn�_xK�go�������k�b��rګ9��������Iշ(�u�參�3ܴ�{q���iO���Cq�SU5�)~%�t���{�*�x|�+�l4��G;��2�L��*<�5,�|����V���������V��k��?��揤�,A1�z6A�T�IY:t�+m���&g��s*�&0�߀^H=��ۮc��h'J�rn���'�+q����q(6���(�) ƶ�G�_�������V/�x�^�!�h@u�&�1#f���!u��0�7G0� I�<�:���J^�Ƿ d���2�DS�������PE�l�g;bX��t�/�59u�?����f�p��O,�����e���w0�����i���7;�@�B�Cp~�&6��1�7`����y�3�?i$���kI���H� �Am��qb��s0��:}��a�#�ܠ��:"�~9��[zO��b����ం��Y��R[��fۈ�����kỘ���/��W/zq����w/��e��yM��v�:�OH�ki��

UK business decision makers see cyberattacks as their great nemesis

��}�۶��o�*���R,R���|Y��Ή���z&��:Y%B=A�c4�U�1�V���’ت}��or�d��)J#id��k��”�F���h4�w��:9���S��ً��on?�F3���7�U���pZ!~@��e��&GdE�Q��&�1� /�[�:�L�e�o����F/���sѫ�0/�^��]�BF�W��˨� ��VҨGc�B�r8�U��~�f�9CW��i�����Y3ګ8t� RJ�;��lzጨ�ԉ�9�c�z8��3� M��T���4p��a�y0lY�6�-�?dA�u_���5�/��g������͟^��Z���f��:�Q�i*`O����u�ݓ֞����m6���Nw?2����x�$�n�FW. ��”��$�(+dFm��U������W�C<�ύ9u��Q8ѕ1b����%R�hJg4l�w���9,�C���n?����l��G�_�G����d�DS�Nt��A�D.���w2�CǣaHl:rB�3�Y�4���ՐVY��X!p2 �s� �Ja��������X�Mf�a��nP3tl��R^�#B�~p�����)�ub�F,�o��A:'a�WF�HgC8� �+���ЎzT奣��[A���4��R|L���?,A>�?�P�(Y >?Q�� ��Һ��”k�TM)�o6��ĂBC�x4]Y(S�t^�#I?��O{ K�&Vo�t�N7��̬ ]����.��0e�WPء����/����Ҧо({���J�a}E|7�8�����;���;��o+}(qk�x6���Og�sJ��~��j��ĮZ�Gohp*ӧ.��U���Tju�72&4���et��Ziٕ�q@�8p�����q�3��jX�1�V Ҝ�:`8�`ʒv˿$�0�0c�{�׳�b�z�i91����r�ٴ�������f��>7�k�f�Y�������Û�՚�RoM�mڮ�wa��$��^���>�F�U�[���͚��z��V;�c~LiJW�T2[�xd��g!���Xb��^���̚���Vp�U�A����ԳO��kWG����>Aȱ�+���!tf>�>64̟`0���S��x���zջc¯O,��*ꥌS�lb��C�F�H_!���N�r����аl��t��`��au�]�-���sP!Ԯ�’�;f�n��E%#�ÈC T�S^�Za��ö�_8va��Rt]A�; �8t(zr�e���~Հ� 3B�������P��!��~׎Ɔ�8�h.�XN����,U��>V����l#�ԗ�j� �V}�q�V�o;� ��Ù�ҫ:����o�N���L�(���8���E}3#�h���/�z8����0�M��1�,��/�Kރ���4���/~��bI��� �Mc�$`�g���/������b��.δl}���i�w���Tu�q0�#�-��` }�]�]#���G�!cQ����g���+��a:�rE}3����=H���Ȧ�5��qv���+P-��6� 許l�{9 [x9d�����2��ʎw,�@w]����T�Su^h�բFp1y=-�A�]”Z���K(g�FK�g�Oۮ>s&n{)�@Fo�(�I�;n�0v�Pt�t@���kn�%ll���(̏� FS��gW:�Co@�kC�ň6fa8��%+P�ͶdS����k�]�g���0T�EdM,e����/5X�%��p�nX��R2�!,��h4evOE�R������7���fCp[ˍh�Y��=�|ߕ[�� �_��~�E�&yszJZF�|G�]�1� �{�BB�0C�q�v�UI%��”�r �/��i�<�ч��r�)�IIJ�^ް�+#�1����Z�L�]��Mqnx@$�1��߅ڱ�G�R�V����i��v�KfS�V������I�a�� ��G������V���k璺�l�N4s�<�i_����$���5:�D["�w��݇��������_�ل7I�bV�`�'`�^�B8K�*�{}�9/�R#�Ã��O���g��cz�{�N�z@.o��`�G��{��c4b;���C=��y^��a��P�3�`�w�b�D9/�� {��_=���F�ߙ��� ���e9������w/�Ù�3�F�-��E�hW8�})_ʾ��~L�+��nxJZ�߅ВV�+<�w2���NP���<�7��!yzа����9�Fy�'��=���b�ky�%�$���_n@?=}zf��zQ��_׀ f[����c��јO��VVVK7�Ɩ��2T�ELf�ܴ��.�X�:�3��S�J���%)��mV�c)�%s�*��0`de�4Z�h'!.C�l +�Pa��Xr 3���8�M@ET��%�#PlAB�� �x�JIU�f)�Z:��&�D{� ���M�O�O ���з���f��_��z��4���4k����A;y" �9MC�zZ����RZ��M�h�� T���c���`C��/{u��'8�#y�l%�)�$wJ�=r�m��d���}�i�Ǚ9X���|,��rSЭ�G�v�w�S�G*��|�I8bePJ5k- ��4�B$S6�wv���ՙ���8�-�Bx�&����O�`^�q���!��@��(�H�R1Ru�K�B��=�2���*��4Y��.+�e� �D!� ���H�0Z�r0���@��4’�IE�ˮ��љ�i��ӷ$��Gq1�-����x�v�9�?q*’��O.o]��fa��G��B�����!s��o�K����-�r�BG�hI��s��&�N��1j`и�~�`MF9��t�����ќ�,P�r77���D|V�T/�C��憀}�Wu�}xx���@ͷ|L5Eų>���=�i��i�zQ� E$G븬�L����;�����l�ty�VHhs�0�����%/�Y� �9@�g~샪b��p~Y���Iz��X㴝_�-0�|��݃����]@Rl@!؏0�lMM�߸�5��DՌ���g���’����f��Z[����)���z~n/�n���MW ���Bå”��1�����;��.� ��o�N3u~��;ٲp�b�ar�}�q����ہ}q�±z�+��H�/�[�*���d2X%Ҹ����M���q���i8������n�j�K�>~��k�,/���j���o qF�r˜����w�’e�R~�3�q��K���r��F� /�R��8Y �l_a�]�1L�cR�O��8����XxI�}x�Ӈ��N��;�J��s�j�v��L+_e�4��m���@%��X��’�`nO�v=YcI�r��s��د��#m�%��5u�ں{���y���xo�T�^`m��~�2��G�_ϥ��t �[�WU.m����u�������5����i�2gY���5.���e�l��A��w�6�E+�f�a�z���m@� 7�dȼ�EP<��j�a6[�^4m@�|�J(^'��-,�nRI�2����S�_ن�&��� t6�����.���{�#6@Dܱ��rgg�Ͳ�������= ������{E���3�����8f��G�wdeF�o�x�^�ZE��`by�oܷ����t�^Ø�Rs|�70v��qr�8�l����� �Ma�k���t��W�:rt��+r�=�Y���F���HtA�)��1Ƥ�$ ,�ё�4��?���F�<����}�"0H�������V����8�^�����~��O����@�pʉ� �Y��ʺ��=.�˯�� […]

ICS calls for latest Draft Investigatory Powers Bill to go further to protect privacy

��}�۶��o�*�ӧ,))Q�Hs���_�ķx��I���”!�3I�2�q�y��گj����’��MΓl7R Ei$��$[�9�)h4ݍF���w�ѫ�ӟ_?&ߝ�x����q4q�c���B]��B��ˮ��8���Z��ڄ���un�S��݀’��ބF+���}�U�=7�n���|����*��j��96��F�8�� ����S}�@=�&��G��q�Z#����U.l:� �JOm+w-za�Te?��v��654 �v�”H#�9T 툪4��� �x��?h�L:^���G�A��K������]���s�q��4�fL8ʇD;��QK���o�m:tii/Y����Z�K�����p�K0 sKB�%���Z�u#F�H� zπ_�m��Y��w�yn���5�jZ�5���Z~*#�oA���Z�jS�F��M�_k��_k�N���Th �i>h��zq`R���C����S�W$��NlaKg!{�*�0/S�N�@o���`v[ZC�(�>a�n c�)��QT����7��F���;���cč�8�u�J��ڈF�Z���ܑ����T����s�҆����~�Ұ�C@ ����+U(����H� ���F�e�]��W����o���-�SJS�����*G�f�@dٱ:�VE�������(+��Q*Ъf�>u���Xe�� [VG9f**�~��� �’L�2�`Ԯ|�z��κ�t���1(��]ݔq*�u��4�q���+����Q@vh�e=��.>�Cl�//�++вX�=B-�:���+U��,*�FJD�a�Y����s��~a؅,��qU yV�$hZ���� ��n��U2��pI�㏏��CM���]9jB�ܹ3Ԣ�x,c9�R��T�R�T溪jyf�#X��%’��D����$��,X�z&��}-��L���2������v��K|xK��Ē���F^hp��d �`B����{׾�T�%i�hg�.��3fט�E�F�Dɿ;d_�]�¾&�s@5b�* Z��>���T�10�#���ɎpS9���>( ��kd��>T�ˑq�yQ����%��d+��a:4sR�;D�>�4�i `�*H�����h7� v��޻�[0���; �F���iځ ���n�̛�ʑ1p���BQ_O���$�_fd]kk��8s;x ������nj� �H2НTͼ��-�x֌D����f=��ʶ{��@w/8�m���d�Sv^�r�����մL���D� ;K(��Z�ԛ�>o�����$y.�]�P$g̸8�s��;�}�u�d�(޻�pw*acú�Fa~�F`��&��T���@ ֆ>� k�0�q�%+P���d���T����w��ُ8�dY�K�r���G����(��� ,�G#�����Fc���(*Տ�`�P�C�j|����|nʃ`8 }�����;b����ˉ�� ���$oNNHC��’�Z�A«P����E]C�f�x̥]��FU��372.�`�2�0�c/Pz�$��hѧ9����t���K�5=���R�w���*G��=$�[�Vs�$�š �0�Q�9�JB�`���� �� ��/ q�T�S�`���lR�)�5��6�j��YX:��� Q��Jqy_�-�j��}�YTၕ�C:�Z�V�$�c.� ��’����������%u�Y�*)�{�~����o�a�~��,�~���uϞ�w�t]!���BKu��=�> �)D�ˡ�H�� #G�}��|o���^t_z’= ��RD0��Ƣ)� �1�ɰ���Á�|�J�1�P|��P�P��Mx6�n�a4����������P���pV=�z!K]ء=�Л�c۲`~���g�dq�U�V��]�8}��������>p�XE-�� *~sӥS����?��*U�N�CV� � L�uWqN�g�E~�ZN׹�-���9����;`��uK��3��Ls�1�77K+h�1BҖ��w-�h��)�C���m�V��|�J���ص�r�M�1°�L]�7^؇�h09�;�W3�� )^’�#� ���!U�2�r�U�^�[���R�C8��E�eX� .vV|e%�w� k�`��#5k�M�ߐ��C�t�f?#�

Support scams: What do I do now?

Note: This blog article expands on some of the content that originally appeared in a lengthy article on support scams for ITSecurity UK, and subsequently in an article for the ESET Threat Report for December 2015. I’m returning to the theme of what to do if a scammer actually gets a foothold on your system, […]

US hospital hit with ’random’ ransomware attack

��}��8��o;���’,�-R��R}Y��e�w���u�* ��H��R�1�qq���”� ��d��2�)J%�d��Ξi�”�D”��H$�w��:9����dz����~0��q�;�i��:Ո��}�Ӽ��D��hxcߘ���ՠέF��-x��=����:�ۗ=��s#�F���g�_=-bWQ�쁣�z�Ǭ1�Wu��K��|/���3ۊ&=�]�C��ub�vdSG��a=������C;b�%�=Dh�����zA�u^��X�������k��c���U�ixIۢ3�������A��Q��=i����f��?���q��#�-`�`:�{A��0�;,�0������0�ȔY6�i~`��u����f3c��lv47�޴1�u�T#��)�Ck�t���E�����:9��!A����#{j��,2�� `D’�޿� �#��:%/��:dbG��?��u-o �Bo:�#4����ACT��R�b�0���0=ʀ�.o�C�”�qH�R�.yd;Μ�ᐅ!,�~����0b�:�%3�.��|�hrj�� A�bw8�n�E� ��fC5���O9�E�iv�V��kġ�tHj�Jz֢.Zl�H��� �s�v���� h8p>j�ñ�t��fE�ƾ�Q+L�����7:�^l���J�B�E ]�GCXJ�a��5���3�|泩��>eQd����Gm@C�(�#��_�6Bcfx���’I�kc�����kc�u����5h ��;��C�}Ԡ3`���*�rB����ݡ[����u��`g�Ç����2�O���[wF�(.UZԇ���obUi��%� Ne���ɍ�8�u�Z�� �1���|ݻ���j-K�,�w�e�@����êe`�ǀ�Hs���P����[�y�e�9��{�Ŋ ��i6�������bս��^���=0[��_�7��Z}hD�џ��14̟`0���S�� x���:��1�W��’�q�qz)��>��X/i���/�W��߫�0�e=��.>�A�,xX]|Wՠe�J{�YZ}�c�괤,��FJ���BU�s�����±#.X��� �NE:=9Ų��b�j@f�!����S}d(���Us�kG#Cj�{�FF4��U,’���C���j��BW�-o#�ԗ�j� �V}�q)Tm�o��1��é�y�����۷,;�:?��%�܁�q�n�^`��&�>�P��?�~ V��j��-+Ķzχ%���a ��@� k���s���`�� q��{�ꃹ��o�S��Em��+bx+��V�b���G^Xp��� 6`Bn��{׾�t�%i�h�.��fטKߎ�F4v���2����.��o�z��BLQD�7��~����~2fwd�e�#�t,`����Y��*}udx^F�w�:CS�|Ű3LGԅ��w�;D��Y07�U��ػw��>8� ��6����L/���h��`wx�`�^�n�,����]|�P���f:5��{�(��M�k���,��%8 CW�ZԿmd��D-�{9 [x9�9�Y��z���m�X���:^ptw���SMO�yQ)�+���2q4�’��H��r�i�*�l��y�է�8��$�s����2 xύ�ϻ��|v����V�K%lL�KPj�GF��m��~�M4`m���4�iy� T�_-�-ls���nƽ�7�j�����l5]���˿d�N��Z ���1a��pʢ�g�T���O����!@5�Am�7��� P’b�K�����r�߬�5ݦ8Tg��F��ȡ�6�si�T�’���1���������ԁO�^t�7���e4��Y�Ό�Uh�߃8pqb��p�8w��P�j�܍��|A�GÉh�T��=y9����BЫu>| =�88��ᅮ��G޾��*�T��[��΢��6X��MX�࡫H��#��A�+C�1���+�H��0V���”��/�>��x�(��m�K���0�_z3@�� z�F^��J��� ����~N�o+Բ^�W�yfU�b����v�VV�”��Vy�F��b���9�؀hK5�>;���I6��;��z��{:&�g��L��0 |��i�,��_:x4>;p^�d�Ã��O���G��1���N��D.o��`LI���N��bٗ��G=��y^��`��P�3�`���b�D9/�� {��ϟYUV#� �IPy�ր���`[��d`m%����ݫ�`���{0=�Б�e�hkྔ/e�pp?�3 ��nxJZ�߇�R�V;Vx�o����yA]XJ���@(1�b�EDLD�SQ��ԃ��׳��O�z�B��v�Y͔���,u|i���v@oMl˂y�Z4��Ł�խzXw�v������;�>�XGS&� �}w�e3���Z�?��ju��#^� L���VqN���{��P���s�W���h�WV��9�T������=߰��vemFH��}����3E}�����N�B�^�ƪ��O]k)�� A�:4{�̥���?侠@�� �� ��}��8��o;���’,�-R��R}Y��e�w���u�* ��H��R�1�qq���”� ��d��2�)J%�d��Ξi�”�D”��H$�w��:9����dz����~0��q�;�i��:Ո��}�Ӽ��D��hxcߘ���ՠέF��-x��=����:�ۗ=��s#�F���g�_=-bWQ�쁣�z�Ǭ1�Wu��K��|/���3ۊ&=�]�C��ub�vdSG��a=������C;b�%�=Dh�����zA�u^��X�������k��c���U�ixIۢ3�������A��Q��=i����f��?���q��#�-`�`:�{A��0�;,�0������0�ȔY6�i~`��u����f3c��lv47�޴1�u�T#��)�Ck�t���E�����:9��!A����#{j��,2�� `D’�޿� �#��:%/��:dbG��?��u-o �Bo:�#4����ACT��R�b�0���0=ʀ�.o�C�”�qH�R�.yd;Μ�ᐅ!,�~����0b�:�%3�.��|�hrj�� A�bw8�n�E� ��fC5���O9�E�iv�V��kġ�tHj�Jz֢.Zl�H��� �s�v���� h8p>j�ñ�t��fE�ƾ�Q+L�����7:�^l���J�B�E ]�GCXJ�a��5���3�|泩��>eQd����Gm@C�(�#��_�6Bcfx���’I�kc�����kc�u����5h ��;��C�}Ԡ3`���*�rB����ݡ[����u��`g�Ç����2�O���[wF�(.UZԇ���obUi��%� Ne���ɍ�8�u�Z�� �1���|ݻ���j-K�,�w�e�@����êe`�ǀ�Hs���P����[�y�e�9��{�Ŋ […]

The security review: Remtasu and Facebook cheat sheet

From an outbreak of malicious spyware to the UK’s bill on investigatory powers, here’s our comprehensive breakdown of cybersecurity news from the past week. Remtasu is disguised in Facebook hacking tool ESET’s Camilo Gutierrez Amaya reported how Remtasu, a well-known piece of spyware, which first surfaced almost four years ago, is now appearing in disguise […]

Calls from the UK to make ‘malicious data breaches’ a criminal offence

��}��Ȳ�o��w(� d�l�n�6��å��=�a;d�l��%��v{“�;�{#vb#� v�����I��sI#j%��u˟6g�&�j�:�Q�3hM֐�`�:��������$�� v��o�&3’�F4�i��b’v���t݈�Bʾ���}25/(��?�c D�?���$Ð�քF����X!�L���,��!ޖ m����;�-�}]o �H4��ޮ�1-�m�#��4�� /�;�,KL�&gԚx����|��1������L�����ƫ�2z�V�i��RTK.4쌖�DÞhiO����D�Q�.����GA��G�sTե��a�X.]ZLf��1ò�D�I�J��Q��}�”&��%�r*P��+8�(6�R�UWփ���%���$C��h��*�F�h��f�ό�Q�u�׽�m�V���6������ h8�N7��L�1]�’$͞�o�Q�&���R���x��`,���i��p�k�Q$� LEm���6��W��_�JC����xc��ICy�Q�΀��J�P���+��,7����{�*k`P�N�”�� #����O���[wF��4a�lV�c��5���������KQ�jhUu�z��[���`���ݓՔ��ԏC’!��w��G����5[�”�5a��( (����J:���F�5����7���”��^?�c|�hJW�T0[��ң�ꛈl%;6�ت�=���� 5�UJZ�� ��}2q�f�?a���!’����1r��B64̞`0���Q�� x�Ӌ�t޿c�Qe M뢟1N�����ft�”{����6.(�A�Cݴ���N�MÇ��w5Z���@��4ƍ;F�aV�E#�ÈC�8�� �����v��.�a�`�遆kHȃ�b’A��yON�,v�ܯ:�d�K����钰?������H�޽���c ˉ_�������U ۷���UG ���j�� ���˾�mg:�Z4u:o���x��D�kΏ`A��L���8�^Ї0���&�Y�r�EЪ�:��x�N����=� �ϏH����GPz1.�4�M�PHk�pxơ�xv>�P���?�~���K�W�*q��0���Ϙj|�dU _��kO�|΂��o��!���5~������sů��U��UŪ^UIs�����wי4�_ /�4�YO �0!7��w����R���c��?���k̅�ɦ#3q���2M���y���PS��� ��n�i�v3�v���h�e�#�4,�Q���Y��*}ud�~š�;��f يag��LϚ�������0G������mu�wè`���p�;�����0a4���Z�х�ϼ�ݡ�C� ��&��tj�� U�2#zO7�Ǚ��Kp�.G�hp[�+�KǴ῍��H��ˡo�I���(l��w��x�� t��ã���O6=e�ZZ-����2u4ߧ��J��r����A�^��jSg�Ɩ�`�v�B��g�ʼn�_8�=�EJ��� 7�R66�KPj�Gj��m��~�M4am���4���$��(�H[�m�R�q_�5�.�|�o8�tY�K�Z���K���(�܍�:,��c��������(*���`�P�C�j|���o>��A0ݘ����O�C3�������ԅO�]tm�ק������ڥA�H����C]C�f����]��FU�Ds/6�&`�2��0�?T�$��pѧ��@i�@:r�G��O�5=���wR����w�c^���|���?����FC}��(��R���a�u�bA�8Lh�H�W�M`j�r��- 6Ņ��ؖ_�|��2$*�[.o[ﲪ���ܗ�MuX�?�#?�5l�A�s�E�?��� �&��*,�_9W�}f� �{�A���>�a�9Tq?�k�H��ȼ}W.��f�u� �x@�qû��D#���/~=p�c��$}�PQ�’`����R}%uϠOCa ��r$4R6���z�X����WXB�����1č�(��(B��CͣQbs<�Uؐ{��58�={��z�䯧/��n����8�U�RǗN����ım�_`�y�E.Y�Y�nD ���?�޺����q�.#�q<գ�c��۸���V�?s�� �N�#V� � L��WqN�����аݾ{�����9���C�ح��#U=~��^�i���G��mum9FHZ�s�v�G˙�1bQ_p�f|!a�P�R��g/�P!(��kFQ_�y�%n���/(�`r�w��f��*R�P�G��3���e��D�н������C4��E�UT�.qW|e%g��$k�`��Ob-���M�ߐ7�C��i?#�

UK business decision makers see cyberattacks as their great nemesis

More and more business decision makers in the UK consider cyberattacks to be the greatest threat to their enterprise, according to a new study. The Risk:Value report by NTT Com Security reveals that approximately one fifth of respondents see cybercrime as the number one threat to their organization. Business decision makers also now anticipate the […]

How malware moved the exchange rate in Russia

One Friday, around about lunchtime, a Russian bank placed a set of orders totaling more than 500 million USD on an interbank currency trading system. The orders made the ruble-dollar rate swinging between 55 and 66 RUB/USD – a range by order of magnitude bigger than normal. While the bank, Kazan-based Energobank, only suffered marginal […]

Prince Charming: The Valentine’s Day scammer

Online dating has transformed from being a modest, underused and ‘hush hush’ concept – with a pinch of embarrassment – to a mainstream, popular and transformative entity. As a Pew Research Center survey from 2013 revealed, it has “lost much of its stigma”. Looking for love in the 21st century? It’s possibly a click and […]

How to isolate VBS or JScript malware with Visual Studio

��}�۶��o�*���ZR,R���|Y�Ǔ�믛�$��d� �8C�4?F�8����1�j�`�M�l7� Ei$��l��8�H��ht7� �ɃoO�ywJ�?����’�h�������3���7=��I�G��7�)k��C ��{2a��߃’��ɔE��هؾ�i’�17���>��P��i�����pB��E�8�i����7��g�7�id�����,_եS�Ӯm6� RJ�l+��,vm��ԉ�ڑM=R���2Hc�;L���,�G���ŠE��c�{��q�y�zaQf���g/����͟� [7��5ul�F�h� ؓ�����N�{��3��u�ͦ�������gf[�”��tl���ia4wX8a�%هa��)�l����v�����!��fƌ9�5�0�hn�ic���F4aS6�;��� ��������O�:9��!A����#{j��,2�� `D’�޿�$�#���f$��5�O�ψ�� ۏȔ:30Q�’;��C΢ز�’ Q��JV���^~�N�N�ɄN�����57���OP� �1���Yh��R�Įł0���{)i��”���+#ٰJ�9`g u�3�&̽�ϝvZz� “���m�z��j��F��0͆$�~=�K�]vP���CN����@��h΅��P”�1��By�(/�4��Ö�ƱR�o;����~IO��Qz����Hi:� %g��Һr�”:V���oP�`�ҷ�ERHV�up��c�:�.@�4A��͖n��f�sx�j?n6��͕ঞ��rh̓s�{d�G�*h�>�w�cO阭�i�t�G�0e�2�3 �+-����� i`)-��tJ�����_P���dgJp |�`���q)}�)��UB����e�#���M��ţaD�N�߉Ƕkp��1Ѣj+]�k*�j}(qof��73.f>�z��ppAHz�6�!�t���_�13�`�k�S&�1��k���ߺ�o����4�x�Z���iG5����� ����”Amw���t�����)��2| l�c��}�ӧc�փQ�r�X��A}X��&V��>^Ӏ{�S��:y��� PG�խ������7ѣGꯪֲ��q�8p�Y��v�s��jX�9����:�p��%�C�`�aF��^�G�b�z��96F�7=_�ijXuo��׭�u�V=}n����z�V��F��^Uk���q4�Y�v��}��ޓ��z=��G�V�n�_7k(f��[�v���Ҕ���d�����a�”���X`��^�|~N�o@$�zdZ Z5��3�:�؎U�>a���!�>�Ea�chO}��,h�?�`”���v� �������_>�P���U/e��G�`�%�6�E� ���Gu���]�����k��+;�f���⻪-KO�(fi�q�Y�Ӓ��j�wq(Et8ᅪ����5l;��c�B��iuA���AX���o�C�’gX�]�W �2#$�?>~��E؟�j�w�hdH����Ȉf���Z�R�Z�SU誺� c���UC �!ت�� �sE��ߞ��Nm����’D>޿g١���L�(���8�3u#�>��O�82_n�pB���f�’�1a��}�~{�{0@��&1��ŏ��”�tp��PHopxƁ�>>�P��?�”e���(�w�L��>��K��;��j�ST��]0���&�j�����h��7]X胢�:�F����J:2�`�J�� ��6��5(5�#��p�6�t�?�&��&lL��Ƒ�x�b nɊ`˘+”��ĻpA���q��Y�l5u|�V�/Y}�����VW<�]�B�*�¹ћ ؿ�f����~*�r)]�)#5P?�������ħ�_�A���y�[�XT�G�����������f2ʅ�TEJR������V�,�$�W `j�r���l�+�"�E�/xV�U-�����������)”� �� ��f�X�5���@`�C�W�e��-�:�)��^�.9K��B(�@��Z���U`5″�μ���m` �`�� �%�I�V2ph]�>� �N�|9���[F[�p�|)��)U�����)iQ���J�v��_��;�I!@ ��=���@(1�b�E”KD�SQ������������/�~�Z��~�Y͔���,u|m���v@oMl˂��Z4��Ł�խzXw�v����[��� .� d�ceM�0�AT9���f�a��#~n’����G� (��Z���7�/{��P����W���+4u+O+��n}�U*ǗB����1�o�WV�V`����8��8�S��^���ht�6R��p�����~��m ȱa`�x����b��W�P�g4�gn�RV��.�����2T��&&�tn��XK� Dxȸ��r<�����Y���f�5��2���+� C��0��hM���x� u�%��B��RB�@f���q:ԑ7��_IxG�8Ƙ悄ZTA��+%U��W̡:�bE2I�e�HЮ

Southwest Airlines flight giveaway scams spread on Facebook

There is no such thing as a free lunch, and even if there was… who likes airline food that much anyway? The post Southwest Airlines flight giveaway scams spread on Facebook appeared first on We Live Security.

Cybersecurity e-learning course launches in the UK for HR staff

A new e-learning tool has been launched in the UK to help HR professionals effectively deal with cybersecurity issues in the British workplace. The post Cybersecurity e-learning course launches in the UK for HR staff appeared first on We Live Security.

Stay safe with our Facebook cheat sheet

Learn how to boost your Facebook privacy on Safer Internet Day with our excellent cheat sheet. It’ll work to your advantage now and in the future. The post Stay safe with our Facebook cheat sheet appeared first on We Live Security.

Student arrested for grade changing school data breach

A 17-year-old student in American has been arrested and charged with illegally accessing government computers, months after the data breach took place. The post Student arrested for grade changing school data breach appeared first on We Live Security.

Remtasu is disguising itself as a tool to appropriate Facebook accounts

Almost a year ago we warned about the spreading of Remtasu, and far from lessening, we have been able to identify numerous instances of this threat being propagated further. The post Remtasu is disguising itself as a tool to appropriate Facebook accounts appeared first on We Live Security.

The security review: Encryption 101 and Android security updates

Highlights from the past seven days in information security include encryption insights, Android updates, Facebook at 12 and a data breach at UCF in the US. The post The security review: Encryption 101 and Android security updates appeared first on We Live Security.

63,000 people affected by UCF data breach

The University of Central Florida (UCF) has revealed that it has experienced a major data breach. Up to 63,000 people are thought to be affected by the incident. The post 63,000 people affected by UCF data breach appeared first on We Live Security.

Encryption 101: What is it? When should I use it?

More than perhaps any other security topic, encryption really seems to perplex a lot of people. So, let’s take a closer look – from basics to best practice. The post Encryption 101: What is it? When should I use it? appeared first on We Live Security.

Facebook at 12: Bigger, better and securer

In recognition of Facebook’s 12th birthday and its 1.2 billion active users who still enjoy using it, a timely guide on how to keep your account secure. The post Facebook at 12: Bigger, better and securer appeared first on We Live Security.

New security measures to protect EU data flows to the US

The European Commission and the US have agreed on a landmark new deal that will seek to boost the security of ‘transatlantic data flows’, it has been revealed The post New security measures to protect EU data flows to the US appeared first on We Live Security.

European firms’ financial departments the target of cyberattacks

Two major cyberattacks have siphoned over $50 million and nearly $80 million from a Belgian bank and an Austrian aircraft parts manufacturer, respectively. They were both victim to a scam known as Business Email Compromise. The post European firms’ financial departments the target of cyberattacks appeared first on We Live Security.

Android has some critical remotely-exploitable security holes. But can you get the patch?

Remote code execution vulnerabilities have been found in the Android operating system, and patches released for Nexus devices. But what about your smartphone? Is there a patch for you, and can you get your hands on it? The post Android has some critical remotely-exploitable security holes. But can you get the patch? appeared first on […]

UK council ‘thwarts ransomware attack’

Lincolnshire County Council has successfully thwarted attempts by cybercriminals to extort money out them and brought most of its systems back online, almost one week on from the ransomware attack. The post UK council ‘thwarts ransomware attack’ appeared first on We Live Security.

The security review: BlackEnergy, CES 2016 and Windows 10

Highlights from the last seven days in information security include the return of the BlackEnergy trojan and security insights from CES 2016. The post The security review: BlackEnergy, CES 2016 and Windows 10 appeared first on We Live Security.

CES 2016: Day 2 – making smarter cars

Car security is rising to the fore here at CES 2016, which is not altogether surprising as 2015 was the year when car hacking really crossed over into the mainstream. The post CES 2016: Day 2 – making smarter cars appeared first on We Live Security.

Ransom32, a new Filecoder in sight

A new ransomware named Ransom32 poses as Google Chrome and is distinguished from similar threats by its weight. The post Ransom32, a new Filecoder in sight appeared first on We Live Security.

Uber agrees to $20,000 penalty over poor data security practices

The app-based taxi company Uber has agreed to pay a $20,000 penalty for poor data security practices and to reform its privacy policies. The post Uber agrees to $20,000 penalty over poor data security practices appeared first on We Live Security.

Should I stay or should I go … to Windows 10?

It has been almost half a year since Microsoft released Windows 10, and the decision whether or not to migrate computers to this latest release of Microsoft’s flagship operating system is going to be on the minds of administrators for 2016, says ESET’s Aryeh Goretsky. The post Should I stay or should I go … […]

Time Warner Cable: Customer data ‘may have been compromised’

Time Warner Cable, one of the biggest cable telecommunications companies in the US, has revealed that some of its customer data ‘may have been compromised’. The post Time Warner Cable: Customer data ‘may have been compromised’ appeared first on We Live Security.

CES 2016: Day 1 – surviving the swarm

As ever, ESET is once again in attendance at CES in Las Vegas, offering you expert insight into all the security aspects of this year’s show, which, from what have seen so far, is a key focus for CES in 2016. The post CES 2016: Day 1 – surviving the swarm appeared first on We […]

5 of the most devastating data breaches of 2015

Data breaches got bigger, brasher and more devastating in 2015. In this feature, we look at how some of the biggest came about and the impact they had. The post 5 of the most devastating data breaches of 2015 appeared first on We Live Security.

UK police force hire ‘Britain’s greatest fraudster’ to help tackle cybercrime

Once described as ‘Britain’s greatest online fraudster’, reformed Tony Sales has been hired by West Midlands Police in the UK to help tackle ongoing cybercrime. The post UK police force hire ‘Britain’s greatest fraudster’ to help tackle cybercrime appeared first on We Live Security.

Gozi trojan coder free after being sentenced to time served

Deniss Calovskis, one of the men found to be responsible for the Gozi trojan, is free to return home to Latvia after being sentenced to time served. The post Gozi trojan coder free after being sentenced to time served appeared first on We Live Security.

7 easy steps to Internet street smarts

Whether or not you were born in a big city, you quickly learn the rules of walking in congested public areas, full of people who want your money. You learn what areas and which people to avoid. You learn to walk like you know where you’re going and to ignore strangers trying to get your […]

Waste of time or wise investment? Two sides of user security training

I often get in arguments with computer security experts who declare such-and-such computer defense is worthless because it isn’t perfect. No topic exemplifies these types of debates better than the value of user education. On one side, you have people who believe that user education is a crucial part of any computer security defense. The […]

Evil conspiracy? Nope, everyday cyber insecurity

Last Wednesday, the world’s largest stock exchange went down for half a day, the world’s fifth-largest airline grounded its planes for a few hours, and The Wall Street Journal’s home page went missing, all within a few hours of each other. No wonder speculation was rife that a large-scale cyber attack was under way. But […]

In the security world, the good guys aren't always good

Reading about the widespread bribery and corruption of public officials supposedly hired to catch Columbian drug lord Pablo Escobar reminds me of the current state of computer crime. In both instances you have criminal interests making hundreds of millions of dollars while the very entities that could easily bring them down only watch or, even […]

4 fatal problems with PKI

I’m a huge PKI (public key infrastructure) fan. I love the beauty of the mathematics and cryptography. I love its myriad uses and scenarios. I’ve been installing PKIs for private and public companies for over two decades. That’s always been a big part of my job, and lately, it seems like that’s all I’ve been […]

Employees face penalties for ‘misinterpreting security policies’

Corporations will take a much tougher approach to insider security threats by penalizing employees who “invite a data breach”, according to a new survey. The post Employees face penalties for ‘misinterpreting security policies’ appeared first on We Live Security.

Global operation against DD4BC results in arrests

European countries have joined the fight against DD4BC, as part of a global response against the cybercriminal organization, resulting in arrests. The post Global operation against DD4BC results in arrests appeared first on We Live Security.

Security holes found in Windows, Office, Internet Explorer, Adobe… Start patching now!

Critical security patches have been released for Microsoft and Adobe products. Have you installed them yet? The post Security holes found in Windows, Office, Internet Explorer, Adobe… Start patching now! appeared first on We Live Security.

Data thieves ‘need to be handed tougher sentences’

Data thieves need to receive tougher sentences, says Christopher Graham, the UK’s information commissioner, as this will be a more effective deterrent. The post Data thieves ‘need to be handed tougher sentences’ appeared first on We Live Security.

Operational technology ‘susceptible to remote attacks’

Reid Wightman, a security researcher, has discovered that internet-connected operational technology can ‘easily’ be attacked and damaged. The post Operational technology ‘susceptible to remote attacks’ appeared first on We Live Security.

What does Fitbit hacking mean for wearables and IoT?

Wearable activity tracking devices like those made by Fitbit were one of the hottest gifts this past holiday season and it appears criminal hackers were paying attention, ESET’s Stephen Cobb reports. The post What does Fitbit hacking mean for wearables and IoT? appeared first on We Live Security.

Microsoft ends support for old Internet Explorer versions

With more of a whimper than a bang, Microsoft has followed up on its August 2014 promise to end support for older versions of Internet Explorer. As of today (January 12th, 2016), Microsoft will end support and security updates for several versions of Internet Explorer running on various versions of Windows. The post Microsoft ends […]

Your smartwatch may be revealing your card’s PIN code

Wearable devices bring us a whole world of technological innovation, yet at the same time it appears as though they also bring with them a serious security risk. The post Your smartwatch may be revealing your card’s PIN code appeared first on We Live Security.

BlackEnergy and the Ukrainian power outage: What we really know

Robert Lipovsky, a senior malware researcher at ESET, offers his expert insight into the recent discovery of BlackEnergy malware in Ukrainian energy distribution companies. The post BlackEnergy and the Ukrainian power outage: What we really know appeared first on We Live Security.

CES 2016: Day 3 – the drones are back (but with augmented reality)

The final instalment in Cameron Camp’s security-focused coverage of CES 2016, looks at the future of drones. It’s all about augmented reality. The post CES 2016: Day 3 – the drones are back (but with augmented reality) appeared first on We Live Security.