Security News > 2016 > December

The rising use of personal identities in the workplace (Help Net Security)
2016-12-14 13:00

90% of enterprise IT professionals are concerned that employee reuse of personal credentials for work purposes could compromise security. However, with 68% saying they would be comfortable...

Let's Encrypt Is Making Web Encryption Easier (Schneier on Security)
2016-12-14 12:46

That's the conclusion of a research paper: Once [costs and complexity] are eliminated, it enables big hosting providers to issue and deploy certificates for their customers in bulk, thus quickly...

Should security vendors offer product guarantees? (Help Net Security)
2016-12-14 12:45

A new Vanson Bourne survey of 500 businesses in the UK, US, France and Germany revealed that nine in ten companies want to see IT security vendors offer a guarantee on their products and services,...

Consumers regularly share passcodes, creating compromising situations (Help Net Security)
2016-12-14 12:30

Consumers keep more and more sensitive personal and professional information on their mobile phones, but most people remain alarmingly casual about adequately protecting that private content,...

Law Enforcement Targets Users of DDoS-For-Hire Services (Threatpost)
2016-12-14 12:16

Law enforcement from more than a dozen countries last week carried out a series of operations designed to crack down on DDoS-for-hire services.

Zcash Spurs Rash of Malicious Mining Software (Threatpost)
2016-12-13 22:42

Hackers are mining Zcash cryptocurrency surreptitiously on PCs infected with cleverly named programs such as system.exe, taskmngr.exe and svchost.exe.

Beta Firmware Updates Available for Vulnerable Netgear Routers (Threatpost)
2016-12-13 21:25

Netgear has built beta firmware updates for its Nighthawk routers vulnerable to a command injection attack disclosed last week.

Microsoft Patches Publicly Disclosed IE, Edge Vulnerabilities (Threatpost)
2016-12-13 20:27

Microsoft patched a half-dozen critical browser vulnerabilities that have been publicly disclosed, but apparently not used in attacks as of yet.

Netgear pushes out beta firmware for vulnerable router models (Help Net Security)
2016-12-13 20:08

Netgear has confirmed that eight of its router models are vulnerable to device hijacking due to a vulnerability that can be easily exploited by remote, unauthenticated attackers. The vulnerability...

More Android-powered devices found with Trojans in their firmware (Help Net Security)
2016-12-13 19:18

Doctor Web researchers have discovered two types of downloader Trojans that have been incorporated in the firmware of a number of Android-powered devices. Both Trojans are capable of contacting...