Security News > 2016

Friday Squid Blogging: Will Fish and Chips Become Squid and Chips? (Schneier on Security)
2016-12-30 22:06

BBC.com reports that squid are proliferating around the North Sea, and speculates that they will become an increasingly common British dinner. As usual, you can also use this squid post to talk...

FBI-DHS Report Links Fancy Bear to Election Hacks (Threatpost)
2016-12-30 19:30

Joint report “Grizzly Steppe” implicates Russian hacking group Fancy Bear in U.S. election-related hacking.

PHPMailer, SwiftMailer Updates Resolve Critical Remote Code Execution Vulnerabilities (Threatpost)
2016-12-29 19:20

Critical remote code execution vulnerabilities in PHPMailer and SwiftMailer, libraries used to send emails via PHP, were patched this week.

Threatpost 2016 Year in Review (Threatpost)
2016-12-29 16:30

Threatpost writers recap 2016's biggest news stories, including the proliferation of IoT botnets, ransomware, the FBI vs. Apple story, and more.

Effects of the 2011 DigiNotar Attack (Schneier on Security)
2016-12-29 12:50

Nice article on the 2011 DigiNotar attack and how it changed security practices in the CA industry....

Four New Normals for 2017 (Threatpost)
2016-12-28 14:00

Ransomware, insecure connected devices, bug bounties and governments buying bugs: All four ceased to be novelties in 2016; they’re all new normals for cybersecurity.

How Signal Is Evading Censorship (Schneier on Security)
2016-12-28 12:20

Signal, the encrypted messaging app I prefer, is being blocked in both Egypt and the UAE. Recently, the Signal team developed a workaround: domain fronting. Signal's new anti-censorship feature...

Android Trojan Switcher Infects Routers via DNS Hijacking (Threatpost)
2016-12-28 09:00

A new Android Trojan, Switcher, uses victims' devices to infect WiFi routers and funnel users of the network to malicious sites.

PHPMailer Bug Leaves Millions of Websites Open to Attack (Threatpost)
2016-12-27 18:22

A critical PHPMailer bug tied to the way websites handle email and feedback forms is leaving millions of websites hosted on popular web-publishing platforms such as WordPress, Drupal and Joomla...

Security Risks of TSA PreCheck (Schneier on Security)
2016-12-27 12:11

Former TSA Administrator Kip Hawley wrote an op-ed pointing out the security vulnerabilities in the TSA's PreCheck program: The first vulnerability in the system is its enrollment process, which...