Security News > 2017 > January

Security audit of Dovecot mailserver reveals good security practices (Help Net Security)
2017-01-17 16:37

Dovecot – a popular open source IMAP and POP3 server for Linux/UNIX-like systems – is as secure as its developers claim it is. A security audit performed by German security outfit Cure 53 revealed...

SHA-1 End Times Have Arrived (Threatpost)
2017-01-17 16:00

Things are about to get a lot safer on the internet with SHA-2, but there is plenty of work still to be done when it comes to SHA-1 deprecation.

Why WhatsApp’s ‘Backdoor’ Isn’t a Backdoor (Threatpost)
2017-01-17 15:24

A chorus of security experts say allegations WhatsApp's end-to-end messaging platform has a backdoor are wrong and explain why reports making the claim are false.

Andrew Macpherson on Intelligence Gathering with Maltego (Threatpost)
2017-01-17 14:00

Operations Manager at Paterva Andrew Macpherson outlines the details of the "Digital Intelligence Gathering using Maltego" course being offered at SAS 2017.

In 2017, the digital will get physical when machines start to lie (Help Net Security)
2017-01-17 13:30

In a memorable scene from a 2014 episode of the series Homeland, the Vice President is murdered by hackers who tamper with his pacemaker. Despite this plot idea reportedly originating from the...

Key Transparency: A secure directory of public encryption keys (Help Net Security)
2017-01-17 13:15

Google has released Key Transparency, an open source public directory meant to simplify the discovery of intended recipients’ public encryption key. The project is still in the prototype phase,...

Patch and security management take 8 hours per month for most companies (Help Net Security)
2017-01-17 13:00

Shavlik and AppSense used VMworld Europe 2016 to collect data from frontline experts, and to highlight patch management and security concerns in corporations. A total of 178 professionals...

Significant decrease in Locky ransomware attacks (Help Net Security)
2017-01-17 12:45

Locky ransomware attacks have dramatically decreased during December 2016, according to Check Point. Locky, which uses massive spam campaigns as a major distribution vector, only surfaced in 2016...

40% of data science tasks will be automated by 2020 (Help Net Security)
2017-01-17 12:30

More than 40 percent of data science tasks will be automated by 2020, resulting in increased productivity and broader usage of data and analytics by citizen data scientists, according to Gartner,...

WhatsApp Security Vulnerability (Schneier on Security)
2017-01-17 12:09

Back in March, Rolf Weber wrote about a potential vulnerability in the WhatsApp protocol that would allow Facebook to defeat perfect forward secrecy by forcibly change users' keys, allowing it --...