Security News > 2015 > July

Amazon releases new, easily auditable TLS implementation (Help Net Security)
2015-07-02 13:52

A new, open source implementation of the TLS encryption protocol has been unveiled by Amazon Web Services. Dubbed s2n (shorthand for "signal to noise"), the library doesn't implement rarely used op...

Cisco UCDM Platform Ships With Default, Static Password (Threatpost)
2015-07-02 13:35

A week after admitting that several of its security appliances ship with static SSH keys, Cisco warned customers on Wednesday that its Unified Communications Domain Manager platform has a default,...

Harvard University suffers IT security breach (Help Net Security)
2015-07-02 12:40

Discovered on June 19, the intrusion was first spotted on the Faculty of Arts and Sciences and Central Administration information technology networks, but a subsequent investigation revealed that eigh...

Cloned, booby-trapped Dark Web sites steal bitcoins, login credentials (Help Net Security)
2015-07-02 11:54

Someone is cloning .onion sites, and using the clones to intercept user traffic and offer modified content. "I noticed a while ago that there is a clone onion site for Ahmia," Juha Nurmi, founder o...

How safe is the Windows 10 Wi-Fi sharing feature? (Help Net Security)
2015-07-02 09:27

A feature that went almost unnoticed in Windows Phone 8.1 because of its modest installation base has been raising security questions now that it has been added to Windows 10. It's called Wi-Fi Sen...

A closer look into the piracy ecosystem (Help Net Security)
2015-07-02 07:30

Illegal reproduction and distribution of copyrighted material on the Web is booming as a result of security breaches in both mobile and desktop software applications. Arxan and iThreat Cyber Grou...

Rise in DDoS reflection attacks using abandoned routing protocol (Help Net Security)
2015-07-02 07:21

There's been an increase in the use of outdated Routing Information Protocol version one (RIPv1) for reflection and amplification attacks, according to Akamai. RIPv1 is a fast, easy way to dynamica...

Updated Point-to-Point Encryption standard now provides more flexibility (Help Net Security)
2015-07-02 07:00

The Payment Card Industry Security Standards Council (PCI SSC) published an important update to one of its eight security standards, simplifying the development and use of Point-to-Point Encryption (P...

Multi-link network encryptor with 100 Gbps encrypted bandwidth (Help Net Security)
2015-07-02 06:30

Gemalto released its new SafeNet Multi-Link High Speed Encryptor (HSE) solution that provides the equivalent of 10 by 10 Gbps high-speed encryptors in one unit. With a total encrypted bandwidth of 100...

Attackers Revive Deprecated RIPv1 Routing Protocol in DDoS Attacks (Threatpost)
2015-07-01 16:45

An advisory from Akamai warns of a recent reflection style DDoS attack in which the deprecated RIPv1 routing protocol was leveraged against targets.