Menu

Category Archives: Security

Articles about security

Data leaks evolving into weapons of business destruction
Security for your collaborative software
US tech giants say they didn’t do Yahoo-style email spying
Subpoena for Signal Messaging Data Renders Little

LinuxSecurity.com: An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

Mastercard rolls out pay-by-selfie across Europe
These diabetes pumps obey unencrypted radio commands – which is, frankly, f*%king stupid
CloudFlare shows Tor users the way out of CAPTCHA hell
Wasted: Kaspersky makes jokers of upstart ransomware VXers

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Let’s not meet up with JPEG 2000 – researchers find security hole in image codec
DNS traffic monitoring, a threat to Tor users’ anonymity
Snoop! stooge! Yahoo! handed! all! your! email! to! Uncle! Sam! – and! any! passing! hacker!

security update

WikiLeaks plans to dump more sensitive files on US election
It’s time to close your Yahoo account
Yahoo built a software to secretly scan user emails for the NSA
Cloud, IoT Big Factors in Annual BSIMM 7 Report
Vulnerabilities in Insulin Pumps Can Lead to Overdose
After Mozilla inquiry, Apple untrusts Chinese certificate authority
True man-in-the-middle: Transmitting logins through the human body
IoT Devices at Risk After Mirai Code Leaked that Exploits Default Credentials
48 characters enough to crash most Linux distros, says sysadmin
Industrial control kit hackable, warn researchers
IoT botnet highlights the dangers of default passwords
IBM’s IoT blockchain service gets ready to set sail
Remember 68 Million Hacked Dropbox Data? It’s available for free download
6 security distractions derailing IT

Most companies don’t do what they need to do to reduce security risks. How do I know? Because I’ve consulted for hundreds of them. They don’t patch their most attacked programs in a timely manner, and they do a poor job of teaching their users how to avoid social engineering attacks — the two commonsense […]

OpenJPEG Bug Helping Attackers Conduct Remote Code Execution
Organizations ‘need to deliver social engineering training’

More focus on how to spot social engineering attacks is needed in organizations, according to expert Jenny Radcliffe. The post Organizations ‘need to deliver social engineering training’ appeared first on WeLiveSecurity.

400 Android apps hiding DressCode malware on Google Play Store
Happy VXers get 400 enterprise-popping apps hosted on Google Play
Domain name resolution is a Tor attack vector, but don’t worry
SANS issues call to arms to battle IoT botnets
Researchers gut EMC’s VMAX, vApp with five god mode hack holes
Apple iMessage URLs ship OS, device, and IP data to sites, dev says
Apple chops woeful WoSign HTTPS certs from iOS, macOS
Hack Crashes Linux Distros with 48 Characters of Code
Watch Out Gamers: Hacked Steam Accounts Distributing Malware

security update

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: New mozilla-thunderbird packages are available for Slackware 14.1, 14.2, and -current to fix security issues. [More Info…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com:

LinuxSecurity.com: Security Report Summary

Apple To Block WoSign Intermediate Certificates
Hacking, Trading Forum w0rm.ws Hacked; Exploit Kits, Database Leaked
Source Code Released for Mirai DDoS Malware
Shellshock two years on – has your company forgotten about it?
Designing your business for the 21st century
iOS 10 comes with some privacy trade-offs. Here is how to lock down your device
How to disable macros in Microsoft Office
Source code unleashed for junk-blasting Internet of Things botnet
Mozilla Reduces Threat of Export-Grade Crypto to Firefox
ICO boss calls for EU-style data protection rules post-Brexit
Do you know how to steer away from online banking trouble?

As European Cyber Security Month gets underway, ESET’s Ondrej Kubovič offers some top tips when it comes to safe and secure online banking. The post Do you know how to steer away from online banking trouble? appeared first on WeLiveSecurity.

Cybersecurity ‘no longer a technical issue’

Cybersecurity has gone from being a technical issue to one that needs consideration and leadership at a board level, according to an expert. The post Cybersecurity ‘no longer a technical issue’ appeared first on WeLiveSecurity.

Demo: Hacking a voting machine
The coming IoT security plague
A first: ICANN will generate new DNSSec key
Discover VASCO’s top 10 tips for a successful and secure Mobile First Strategy
Researchers Break MarsJoke Ransomware Encryption
Download the Mirai source code, and you can run your own Internet of Things botnet
How do you work out a country’s level of cybersecurity?

The Global Cybersecurity Index (GCI) measures a nation’s commitment to cybersecurity and encourages countries to take the issue more seriously. The post How do you work out a country’s level of cybersecurity? appeared first on WeLiveSecurity.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Meet Linux.Mirai Trojan, a DDoS nightmare
Amazing little rescue drone can prevent people from drowning

security update

New Lockscreen Ransomware Targeting Android Devices
Voter Registration Systems of over 20 US States Targeted by Hackers
South Korea says their military cyber command was hacked
Criticize Donald Trump, get your site smashed offline from Russia
Fancy Bears hacked MH17 crash investigators with spear-phishing campaign
Crypto guru Matt Green asks courts for DMCA force field so he can safely write a textbook

  Another week, another threat recap. And this week wasn’t without its fair share of cyber incidents. Voter registration misstep? Check. New ransomware? Check. KrebsOnSecurity attack? Check! Here are five of the major security stories happening this week. Company Security Falls to Outdated Network Devices With the steady rise in security breaches, one of the biggest […]

Someone hacked this billboard in Indonesia and defaced with Japanese porn

security update

Academics Put Another Dent in Online Anonymity
ISC updates critical DoS bug in BIND DNS software
Upstart bags $2.5m to help put the brakes on self-driving car hackers

LinuxSecurity.com: An update for python-twisted-web is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: The system could be made unavailable under certain conditions.

Google dev tools beef up Content Security Policy defenses
Israeli Tech firm claims its new CatchApp can hack any WhatsApp account
Security firm pours cold water on Yahoo’s state-sponsored hack claim
Virtual desktop and cloud service pays £18,600 to ransomware extortionists
Firefox blocks websites with vulnerable encryption keys
Report a Grim Reminder of State of Critical Infrastructure Security
Threatpost News Wrap, September 30, 2016
NHS trusts ‘complacent’ on cloud app security risks
Flashback Friday: SQL Slammer

Within a few hours of being released in the winter of 2003, SQL Slammer had brought the internet to something of a standstill. We look back at this notable worm. The post Flashback Friday: SQL Slammer appeared first on WeLiveSecurity.

SIMS Game Custom Content Site Hacked; 118K Accounts Leaked
Earn $1.5 million by remotely jailbreaking iOS 10
What to do when hackers break into your cloud
Security analyst says Yahoo!, Dropbox, LinkedIn, Tumblr all popped by same gang
Want to make US$1.5m this weekend? Just jailbreak iOS