Menu

Latest articles

Trojan source code leak could spur new online banking attacks

security update

Publicly Attacked Microsoft IIS Zero Day Unlikely to be Patched
US ISPs to Snub Users Privacy by Collecting Personal Data
News in brief: Alabama considers porn filters; Samsung launches new Galaxy; celeb’s Instagram hacked
Workarounds Available for Flaws in Siemens RUGGEDCOM Gear
Apple issues iPhone software update after fake police ransomware scam
VMware Patches Pwn2Own VM Escape Vulnerabilities
Got a drone? Check local regulations before you fly it
Another hole opens up in LastPass that could take weeks to fix
‘Anonymous’ FTP Servers Leaving Healthcare Data Exposed
Strange Mirai botnet brew blamed for powerful application layer attack
Changes coming to TLS: Part One
Phishers target World of Warcraft users with fake in-game pet offer
Harley Geiger on Cybersecurity Policy
Scareware scammers lock iOS Safari to extort ransom from users
The uncrackable problem of end-to-end encryption
Lawmakers scathing over FBI’s facial recognition database
Scammers scare iPhone users into paying to unlock not-really-locked Safari
US House votes to undo broadband privacy rules
Macs and iPhones patched – including 23 kernel-level holes
Microsoft Offers Analysis of Zero-Day Exploited By Zirconium Group
46% off CyberPower Surge Protector 3-AC Outlet with 2 USB (2.1A) Charging Ports – Deal Alert
Intel Optane memory announced: A steroid to speed up your computer

security update

security update

security update

security update

security update

Vulnerable Smartphones, IoT Devices: 400% increase in infection rate
Apple Fixes 223 Vulnerabilities Across macOS, iOS, Safari

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

LinuxSecurity.com: Security Report Summary

News in brief: Hong Kong voters’ data lost; Rudd faces pushback; Google Home lands in Britain

Risk Level: Very Low. Type: Trojan.

LastPass is scrambling to fix another serious vulnerability
Laptops With More than 3.7 Million Hong Kong Voters’ Data Stolen
Man loses appeal over Facebook threat to kill Obama
RIP: Antivirus veteran Raimund Genes, 54
eBay to ‘downgrade’ verification by switching to SMS
Necurs: Mass mailing botnet returns with new wave of spam campaigns
Unexplained three-month absence resulted in a seven-fold decrease in rate of emails containing malware. Read More

Ransomware authors are pivoting their attacks from individuals to government entities and health care institutions, causing a threat to public safety. Traditionally, crypto ransomware targeted individuals and encrypted their personal data and files as a form of extortion for hundreds of dollars. Ransomware has evolved to target businesses and government agencies for much larger financial […]

Apple squashes cert-handling bug affecting macOS and iOS
‘Siri, please dial 999 and save Mummy’s life’
India extends ‘Orwellian’ ID card scheme as critics warn of risks
Close to 1.4 billion data records compromised in 2016

Over a billion data records were compromised globally in 2016, according to Gemalto’s latest Breach Level Index. The post Close to 1.4 billion data records compromised in 2016 appeared first on WeLiveSecurity

API flaws said to have left Symantec SSL certificates vulnerable to compromise
How to respond to device and software backdoors inserted or left by vendors
World+dog had 1.4 BEEEELLION of its data records exposed last year
Why government plans to spy on WhatsApp will fail
Free public certificate authorities: Nice idea, big flaw

Readers often ask me how I feel about the latest free, public certificate authorities (CAs). I always tell them the same thing: It’s difficult for a free CA to actually provide any security assurance. There is no free lunch.I was reminded of this maxim when I read a recent article from HashedOut revealing that the […]

“Unique and Highly Sophisticated” Vulnerability Found in LastPass Manager
As of today, iThings are even harder for police to probe
CompSci boffins propose scheme to protect privacy in database searches

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

LinuxSecurity.com: A vulnerability in Xen’s bundled QEMU version might allow privilege escalation.

LinuxSecurity.com: A vulnerability in Deluge might allow remote attackers to execute arbitrary code.

LinuxSecurity.com: A vulnerability in Libtasn1 allows remote attackers to cause a Denial of Service condition.

LinuxSecurity.com: A coding error has been found in cURL, causing the TLS Certificate Status Request extension check to always return true.

FYI Docs.com users: You may have leaked passwords, personal info – thousands have
New Clues Surface on Shamoon 2’s Destructive Behavior
APT29 Used Domain Fronting, Tor to Execute Backdoor
LastPass scrambles to fix another major flaw – once again spotted by Google’s bugfinders
News in brief: Facebook rolls out location-sharing; Uber pulls tests after crash; NASA thanks schoolboy
Here’s What a Samsung Galaxy S7 Hacked with Ransomware Looks Like
Politicians call – again – for backdoors into encrypted messages
Ex-military and security firms oppose Home Sec in WhatsApp crypto row
Fileless UAC Bypass Uses Windows Backup and Restore Utility
US to make social media checks compulsory for some visas
Microsoft’s Docs.com is sharing dangerously sensitive personal files, information
Encrypted Email Service Tutanota Celebrates 2 Million Users
LastPass steps up quickly to fix vulnerabilities spotted by researchers
Why it’s a good idea to clear your browser history and cookies
Man indicted for sending seizure-causing GIF as a ‘deadly weapon’
iPhone-havers think they’re safe. But they’re not
How to configure WinDbg for kernel debugging

In this post, Matías Porolli looks at how to configure an environment with WinDbg and virtual machines in order to debug drivers or code running in Windows kernel space. The post How to configure WinDbg for kernel debugging appeared first on WeLiveSecurity

DoubleAgent ‘vulnerability’ – just how bad is it?
Encryption is a good thing
Critical flaw alert! Stop using JSON encryption
87 fake Minecraft mods exposed Android users to scammy websites, aggressive ads
USA can afford golf for Trump. Can’t afford .com for FBI infosec service

Risk Level: Very Low. Type: Trojan.

Dishwasher has directory traversal bug
World’s largest artificial Sun switched on for the very first time
25 vBulletin Forums Hacked; Millions of Accounts Being Sold on Dark Web

security update

Google Play faces cat and mouse game with sneaky Android malware
Online stores under attack; a new fraudster bot spotted in the wild