Menu

Latest articles

Dr Hannah Fry: We need to be wary of algorithms behind closed doors
Jon Oberheide on Perimeter Security
DIY kits for sale on dark web spark rise of ransomware-as-a-service
Scammers target tax preparers with last-minute phishing attacks
Some HTTPS inspection tools might weaken security
6 of the most effective social engineering techniques
Personalized spam campaign targets Germany
A new spam campaign targeting German users uses victims’ real details and installs banking malware on compromised computers. Read More
When will blockchain technology deliver on its promise?
Cebit showcases security after Snowden
Norfolk County Council sent filing cabinet filled with kids’ info to a second-hand shop
Leading Linux distros dawdle as kernel flaw persists
Cobol plays major role in U.S. government breaches
Atlassian admins, your Struts 2 patch has landed
Git sprints carefully towards SHA-1 deprecation

LinuxSecurity.com: An update for openjpeg is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

Cisco reports bug disclosed in WikiLeaks’ Vault 7 CIA dump

security update

security update

McDonalds India’s delivery app was a golden honeypot
21 Million Decrypted Gmail, 5 Million Yahoo Accounts Being Sold on Dark Web
WWE’s Paige Nude Photos Leaked – ‘Total Divas’ Star Comments on Scandal
Ethical Hacking: The Most Important Job No One Talks About
This laptop-bricking USB stick just got even more dangerous
Surprise! WikiLeaks won’t just hand over details of zero-day vulnerabilities to tech firms
Friday security roundup: Secret Service laptop bungle, hackers win prizes, websites leak
String of fileless malware attacks possibly tied to single hacker group
The priest, the coder, the Bitcoin drug deals – and today’s guilty verdicts
Do you have an incident response plan in place?
News in brief: GCHQ hits back in ‘wiretap’ row; Uber still needs humans; Intel call to bug-hunters
Warning: Your networking tools are weakening your web security
VM Escape Earns Hackers $105K at Pwn2Own

Risk Level: Very Low. Type: Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Vulnerability Disclosed in Ubquiti Networks Admin Interface
Graham Cluley named Best IT Security blog at SysAdmin blog awards
An under-appreciated threat to your privacy: Security software
Kirk ransomware sports Star Trek-themed decryptor and little-known crypto-currency
Ethical hacking: should you pay a white hat to break in?
Despite Brexit, Brit firm lands £58m EU spy drone ‘copter contract
Threatpost News Wrap, March 17, 2017
Fappening 2.0: Private Photos of Amanda Seyfried, Emma Watson and others Leaked
National Audit Office: Brit aircraft carrier project is fine and dandy… for now
Studies are nice, but women in security say it’s time for the next step
Safari, Ubuntu Linux, Edge and Adobe Reader, Hacked At Pwn2Own 2017

The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. USAF Leaks Highly Sensitive Data Our government is back at it again. Researchers discovered the exposure […]

Flashback Friday: Operation Windigo

In 2014, ESET delivered a comprehensive and detailed report on Operation Windigo. We take a look back at what was documented and what insight was gathered. The post Flashback Friday: Operation Windigo appeared first on WeLiveSecurity

GitHub Code Execution Bug Fetches $18,000 Bounty
Shameless crooks fling Star Trek-themed ransomware at world
Yahoo breach exposes the drawbacks of state-sponsored hacking
In-the-wild exploits ramp up against high-impact sites using Apache Struts
Number of women in infosec industry ‘remains stagnant’

The number of women working within the infosec industry is “continues to remain low”, and could be exacerbating the skills gap within the industry. The post Number of women in infosec industry ‘remains stagnant’ appeared first on WeLiveSecurity

US-CERT Warns HTTPS Inspection May Degrade TLS Security
Are you undermining your web security by checking on it with the wrong tools?

Risk Level: Very Low. Type: Trojan.

How to remove ransomware: Use this battle plan to fight back
Ubiquiti network gear can be ‘hijacked by an evil URL’ – thanks to its 20-year-old PHP build
Judge issues search warrant for anyone who Googled a victim’s name in an entire US town
Security Flaw Allowed Hackers to Compromise WhatsApp, Telegram Accounts

security update

Intel touts bug bounties to hardware hackers

Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.

Yahoo breach lessons IT can’t ignore
Canada’s privacy watchdog probes US border phone seizures
News in brief: Yahoo ‘was spear-phished’; McDonald’s Twitter hijacked; Samsung moots face recognition for payments

LinuxSecurity.com: An update for tomcat6 is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which [More…]

LinuxSecurity.com: An update for policycoreutils is now available for Red Hat Enterprise Linux 7.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for policycoreutils is now available for Red Hat Enterprise Linux 7.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

LinuxSecurity.com: An update for rabbitmq-server is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]

Fileless Malware Campaigns Tied to Same Attacker
IDG Contributor Network: Kellyanne Conway’s microwave story is half-cooked

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

UK’s National Cyber Security Centre bungles simple Twitter Rickroll
Hackers Take Down Reader, Safari, Edge, Ubuntu Linux at Pwn2Own 2017
Court blocks American from suing Ethiopia over alleged hacking
How much of the IT your workers use is hiding in the shadows?
Barrister fined after idiot husband slings unencrypted client data onto the internet
UK’s Association of British Travel Agents cops to data breach
New cloud-based keylogger gaining momentum among criminals
Switch console flaw leaves Nintendo looking flat-footed
Dormant Linux kernel vulnerability finally slayed
Safety in Node.js: NodeSource to certify NPM modules
Mozilla: Everyone’s scared of hackers but clueless about fending them off
Hire a DDoS service to take down your enemies
Debunking 5 Myths About DNS
Smashing Security #012: Eau de Eugene Kaspersky
US charges Russian FSB officials in connection with massive Yahoo security breach
US faces limits in busting Russian agents over Yahoo breach
Smackdown: Office 365 vs. G Suite management
Bye bye, botnet! Kibosh put on Chamois Android fraud network