Menu

Link

Apple fixes flaw that displayed actual password rather than password hint
Dnsmasq vulnerability puts home routers and IoT devices at risk
Emergency Apple Patch Fixes High Sierra Password Hint Leak
US Top Law Enforcement Calls Strong Encryption a ‘Serious Problem’
CloudFlare Boots Off Torrent Site For Using Cryptocurrency Miner
Hackers can identify if you are using sex toys and exploit them
Sonic publicly confirms payment card breach at drive-in locations
Latin American ATM Thieves Turning to Hacking
Smartphones of NATO Soldiers Compromised By Russian Hackers
Smashing Security podcast #046: Good beard bad beard
How a missing smiley foiled a $70,000 email fraud
Inside the CCleaner Backdoor Attack
Chinese Bitcoin exchange denies hacking rumors after theft of $2.5M
Attackers Redefining Objectives, Approaches
Israeli Firm Offering WiFi Interception Service to Law Enforcement Agencies
Experts Have Sobering Message on Human Rights, Privacy for Security Pros
All 3 Billion Yahoo Users Were Hacked in 2013 Data Breach
Costin Raiu and Juan Andres Guerrero-Saade on APT Fourth-Party Collection
Facebook will use facial recognition to unlock your account
Cloudflare CTO Goes Inside the Cloudbleed Bug
2013 Yahoo Breach Affected All 3 Billion Accounts
The biggest hack in history is actually three times bigger than we feared
Five Critical Android Bugs Get Patched in October Update
Equifax Says 145.5M Affected by Breach, Ex-CEO Testifies
Chinese Bitcoin Trading Exchange Blames User For Losing $3M
Google Warns of DoS and RCE Bugs in Dnsmasq
3 vulnerable WordPress plugins affecting 21,000 websites
‘Critical’ zero-day bug found in three popular WordPress plugins
How does Behavioral Biometrics help financial institutions manage fraud risk? Download VASCO’s white paper now
‘I don’t need to understand how encryption works,’ admits UK Home Secretary
Android keyboard app misled 200 million users about how it was collecting data
Netgear Fixes 50 Vulnerabilities in Routers, Switches, NAS Devices
Judge: FBI Can Keep iPhone Crack and Price Secret
Gary McGraw on BSIMM8 and Software Security
UK National Lottery knocked offline by DDoS attack
‘Phish for the Future’ spearphishing campaign set digital civil liberty activists in its sights
Taboola ads exploited to serve up tech support scams
Banking trojan campaign uses commercial packers to target Brazilian users
Hikvision Security Cams Compromised to Display “HACKED”
Siemens Patches Improper Access Vulnerability in Ruggedcom Protocol
ICANN Postpones Scheduled DNS Crypto Key Rollover
Threatpost News Wrap, September 29, 2017
Macs Not Receiving EFI Firmware Security Updates as Expected
Google to Enforce HSTS on TLDs it Operates
Civil Liberties Activists Hit By Phishing Campaign
Windows Defender Bypass Tricks OS into Running Malicious Code
Internet Explorer bug can reveal the contents of your address bar
Popular GoKeyboard App Spying on Millions of Android Users
Smashing Security podcast #045: Deloitte fail, CCleaner, and dotards on Twitter
Europol warns ransomware has taken cybercrime ‘to another level’
CCleaner Malware: Here is the Full List of Affected Companies
Gatekeeper Alone Won’t Mitigate Apple Keychain Attack
Facebook-hijacking Faceliker malware is on the rise
Signal Testing New Private Contact Discovery Service
South Korea Blames North Korean Hackers For Stealing Bitcoin
Remote Wi-Fi Attack Backdoors iPhone 7
Heads-up teenage hoodlums! Don’t SWAT Brian Krebs or else…
Oracle Patches Apache Struts, Reminds Users to Update Equifax Bug
macOS High Sierra Available—And Vulnerable to Keychain Attack
After The Pirate Bay, Showtime Websites Also Found Mining Cryptocoins
Keychain-busting zero-day disclosed hours before release of macOS High Sierra
Mobile Stock Trading App Providers Unresponsive to Glaring Vulnerabilities
Adobe’s security team reveals its private PGP key
Deloitte: ‘Very Few Clients’ Impacted by Cyber Attack
Android Lockscreen Patterns Less Secure Than PINs
TV broadcasts in California interrupted to show “end of the world” alert
Chris Vickery on Amazon S3 Data Leaks
Adobe Private PGP Key Leak a Blunder, But It Could Have Been Worse
For eight years, hackers have been able to exploit this password-stealing flaw in Joomla
Spammed-out emails threaten websites with DDoS attack on September 30th
New ransomware scam asks for nude pics to unlock files
Over Half a Million Vehicle Records from SVR Tracking Leaked Online
Verizon Wireless Internal Credentials, Infrastructure Details Exposed in Amazon S3 Bucket
Experian Flaw Lets Attacker Obtain Credit Freeze PIN and Access Account
EternalBlue Exploit Used in Retefe Banking Trojan Campaign
2016 SEC Hack May Have Benefited Insider Trading
Samba Update Patches Two SMB-Related MiTM Bugs
CCleaner Backdoor Attack: A State-sponsored Espionage Campaign
What’s New In Android 8.0 Oreo Security
Threatpost News Wrap, September 24, 207
Massive Viacom Data Exposed Through Amazon Web Services
Iranian APT33 Targets US Firms with Destructive Malware
Locky ransomware campaign launched 20M attacks in a single day
McAfee joins the anti-Kaspersky witch hunt in shitty attempt to sell a few boxes
Joomla Patches Eight-Year-Old LDAP Injection Vulnerability
SEC reveals hackers might have used stolen data for insider trading
How SS7 Flaw Can Be Used to Hack Gmail ID and Bitcoin Wallet
Night Vision Enabled Security Cameras Secretly Transfer Your Data
Smashing Security podcast #043: Backups – a necessary evil?
More than three dozen schools call off classes after ‘cyber terrorist’ threat
Viacom cloud config goof exposed Paramount Pictures, Comedy Central, MTV, and more
What Triggers HTTPS Chrome Browser Warnings?
Malware Steals Data From Air-Gapped Network via Security Cameras
Deep-Learning PassGAN Tool Improves Password Guessing
First ever crypto-mining Chrome extension discovered
Cloud-Focused Firms Earn High Marks for Software Security in BSIMM8 Report
iOS 11 Update includes Patches for Eight Vulnerabilities
Equifax Suffered Earlier Breach in March
Red Alert 2.0: New Android banking trojan can block and log incoming calls from banks
Risks Limited With Latest Apache Bug, Optionsbleed