Security News > 2017 > July

Microsoft Releases Outlook and Office Click-to-Run Patches (Threatpost)
2017-07-31 17:00

Microsoft patched three new Outlook vulnerabilities and re-released updates from a broken June update.

Researchers remotely hack Tesla Model X (Help Net Security)
2017-07-31 16:39

Security researchers from Tencent’s Keen Security Lab have done it again: they’ve found vulnerabilities in one of Tesla’s cars and demonstrated that they can be exploited remotely to do things...

PoC Malware Exploits Cloud Anti-Virus for Data Exfiltration (Security Week)
2017-07-31 16:31

Security researchers at SafeBreach have created proof-of-concept (PoC) malware that can exfiltrate data from endpoints that don’t have a direct Internet connection by exploiting cloud-enhanced...

Triada Trojan Preinstalled on Low-Cost Android Devices (Security Week)
2017-07-31 16:03

Several low-cost Android device models were recently found to feature the Triada Trojan built into their firmware, Dr. Web security researchers say. read more

Mortgage Phishing Scams Target Big Payouts (Security Week)
2017-07-31 15:57

Over the last few years, business email compromise (BEC) scams have rocketed -- costing victims $1.45 billion in 2016 alone (FBI report). Now a new related threat has emerged -- the mortgage...

Google Wants Symantec Certificates Replaced Until Chrome 70 (Security Week)
2017-07-31 15:16

After several months of debate, Google has released its final proposal in the case of Symantec’s certificate authority (CA) business. All Symantec-issued certificates must be replaced by the time...

Independent labs will test the security of medical devices (Help Net Security)
2017-07-31 13:48

The Medical Device Innovation, Safety and Security Consortium (MDISS) launched the first of more than a dozen planned specialized labs for security testing medical devices. Who MDISS is a...

Container security: The seven biggest mistakes companies are making (Help Net Security)
2017-07-31 13:30

As enterprises increase adoption of containers, they also risk increasing the number of mistakes they make with the technology. Given that many companies are still wrapping their heads around the...

ICS-CERT Warns of CAN Bus Vulnerability (Security Week)
2017-07-31 12:01

The United States Industrial Control Systems Cyber Emergency Response Team (ICS-CERT) issued an alert on Friday to warn relevant industries about a vulnerability affecting the Controller Area...

How Google Shrunk The Android Attack Surface (Threatpost)
2017-07-31 12:00

Google’s top Android engineer describes how the attack surface is shrinking on the mobile operating system.