Security News > 2016 > November

New infosec products of the week​: November 11, 2016 (Help Net Security)
2016-11-11 13:00

Norton Mobile Security for Android boosts security and privacy protections A new version of Norton Mobile Security for Android has been released. The App Adviser feature, which deploys proactive...

Malicious spam volume hits two year high (Help Net Security)
2016-11-11 12:45

According to the Kaspersky Lab Spam and Phishing in Q3 report, the company’s products blocked 73,066,751 attempts to attack users with malicious attachments. This is the largest amount of...

The cybersecurity gap between IT capabilities and business expectations (Help Net Security)
2016-11-11 12:30

Deloitte has uncovered a shift in business priorities from “business performance” to “customers,” with 57 percent of chief information officers choosing “customers” as their top priority, compared...

OpenSSL Patches High-Severity Denial-of-Service Bug (Threatpost)
2016-11-11 12:00

An OpenSSL update released on Thursday patched three vulnerabilities included one rated high severity in TLS connections using the ChaCha20-Poly 1305 ciphersuite.

A checklist for people who understand cyber security (Help Net Security)
2016-11-10 20:38

By now, it’s pretty much an accepted reality that it’s only a matter of time until an organization – any organization – gets breached by cyber attackers. But system penetration does not mean game...

Signal Audit Reveals Protocol Cryptographically Sound (Threatpost)
2016-11-10 18:39

Academics audited the popular end-to-end encryption app Signal and their findings are encouraging.

Ultrasonic Hacking (Schneier on Security)
2016-11-10 18:19

Ad networks are surreptitiously using ultrasonic communications to jump from device to device. It should come as no surprise that this communications channel can be used to hack devices as well....

Siemens Discloses Local Privilege Escalation Bug in SCADA Gear (Threatpost)
2016-11-10 17:57

Siemens is warning customers of a local privilege escalation vulnerability that leaves over a dozen models of its SCADA equipment open to attack.

Telecrypt ransomware uses Telegram for command and control (Help Net Security)
2016-11-10 17:08

Telecrypt, a newly spotted piece of crypto ransomware that uses Telegram’s communication protocol to deliver the decryption key to the crooks, is targeting Russian-speaking users. The malware...

Yahoo Tells SEC It Knew About Data Breach in 2014 (Threatpost)
2016-11-10 16:50

Yahoo's latest SEC filing includes confirmation that it knew attackers were on its network in 2014 and stole information on 500 million accounts.