Security News > 2016 > November

Uber Portal Leaked Names, Phone Numbers, Email Addresses, Unique Identifiers (Threatpost)
2016-11-23 15:00

Vulnerabilities in UberCENTRAL, a portal used by businesses to facilitate rides, could have leaked the names, phone numbers, email addresses, and unique IDs.

InPage Zero Day Used in Attacks Against Banks (Threatpost)
2016-11-23 14:00

Banks in Asia and Africa have been targeted with exploits for a zero-day vulnerability in InPage publishing software popular in Arabic-speaking nations.

Six key principles for efficient cyber investigations (Help Net Security)
2016-11-23 13:00

Many organizations today are not equipped to defend against traditional cyberattacks, as demonstrated by the ever-increasing numbers of successful breaches reported daily – the Privacy Rights...

Headphones as Microphones (Schneier on Security)
2016-11-23 12:56

Surprising no one who has been following this sort of thing, headphones can be used as microphones....

Consumers are still making basic security faux pas online (Help Net Security)
2016-11-23 12:30

Security remains top of mind as over 70 per cent of consumers noted they always think about their security/privacy when shopping online, according to Centrify. Unfortunately, despite the changing...

Government Propaganda on Social Media (Schneier on Security)
2016-11-22 20:29

Vice Motherboard has an interesting article about governments using social-media platforms for propaganda and surveillance, and the companies that are supporting this....

Cobalt hackers executed massive, synchronized ATM heists across Europe, Russia (Help Net Security)
2016-11-22 19:42

A criminal group dubbed Cobalt is behind synchronized ATM heists that saw machines across Europe, CIS countries (including Russia), and Malaysia being raided simultaneously, in the span of a few...

Microsoft Cutting Off SHA-1 Support in February for Edge, IE 11 (Threatpost)
2016-11-22 18:23

Microsoft confirmed Feb. 14, 2017 is the cutoff date for SHA-1 support in its Microsoft Edge and Internet Explorer 11 browsers.

"Security for the High-Risk User" (Schneier on Security)
2016-11-22 16:16

Interesting paper. John Scott-Railton on securing the high-risk user....

Exploit Code Released for NTP Vulnerability (Threatpost)
2016-11-22 15:30

NTP 4.2.8p9 includes a patch for a vulnerability that could crash ntpd with a single malformed packet.