Security News > 2017 > June

Zusy Malware Installs Via Mouseover – No Clicking Required (Threatpost)
2017-06-07 18:36

Zusy malware installs when victims hover over an opened PowerPoint file – no clicking needed.

Photo gallery: Infosecurity Europe 2017 Expo (Help Net Security)
2017-06-07 18:32

Infosecurity Europe 2017 is underway at Olympia London in London. Here are a few photos from the expo floor. Featured companies: Qualys, Splunk, InfoArmor, Centrify, iStorage, KnowBe4, Pen Test Partners.

Popular Chat Platforms Can Serve as C&C Servers: Researchers (Security Week)
2017-06-07 18:06

Popular chat platforms such as Slack, Discord and Telegram can be abused by malicious actors and turned into command and control (C&C) infrastructure, according to Trend Micro. read more

Threat Modeling the Internet of Things Part 2: Three Steps to Pizza (Security Week)
2017-06-07 17:16

Part 1 of this series posited that the Internet of Things (IoT) needs a more rigorous security application than it currently has, lest we end up building another patchy, vulnerability-ridden...

Backdoored Firefox extension checks Instagram for C&C info (Help Net Security)
2017-06-07 17:06

Turla, an APT cyberespionage group that has been targeting corporations, intelligence and other government agencies for years, is using a malicious Firefox extension to backdoor targets’ systems....

Analysis: FFIEC's Update to Cyber Assessment Tool (InfoRiskToday)
2017-06-07 15:33

A just released update to the FFIEC's Cybersecurity Assessment Tool helps make meeting regulators' demands for "baseline" cybersecurity more attainable, says Amy McHugh, a bank adviser and former...

Security Incidents Can Cost Industrial Firms $500K Per Year: Kaspersky (Security Week)
2017-06-07 15:07

While a majority of industrial companies claim they are well prepared to handle a cyber security incident, many have admitted experiencing at least one incident in the past 12 months, and the...

Dark web fraud guides reveal potential threats to orgs (Help Net Security)
2017-06-07 15:02

An in-depth look at content from more than 1,000 fraud guides available for sale on the dark web revealed that the majority of these guides are useless. Still, as many as 20 percent have the...

Protecting Against Malware Requires a DevOps Mindset (Security Week)
2017-06-07 14:20

Imagine a world where cyber-criminals include kill switches in all their malware that’s as simple to activate as registering a domain name. read more

Healthcare's Unique Cyber Risk Management Challenges (Security Week)
2017-06-07 13:56

The healthcare industry has experienced an onslaught of cyber-attacks over the last year, primarily driven by the fact that patient records are highly prized assets among cyber criminals. read more