Security News > 2017 > July

Zero-Day Vulnerabilities against Windows in the NSA Tools Released by the Shadow Brokers (Schneier on Security)
2017-07-28 11:16

In April, the Shadow Brokers -- presumably Russia -- released a batch of Windows exploits from what is presumably the NSA. Included in that release were eight different Windows vulnerabilities....

Researchers Demo Physical Attack via Car Wash Hack (Security Week)
2017-07-28 11:02

LAS VEGAS - BLACK HAT USA - Researchers have created proof-of-concept (PoC) exploits to demonstrate how hackers can cause physical damage to vehicles and injure their occupants by remotely...

Power Grid Malware: Don't Freak Out, But Do Prepare (InfoRiskToday)
2017-07-28 10:03

While the power grid malware unleashed against Ukraine could be repurposed to attack other grids, "it's not to the point yet where people should be freaking out or building bunkers or anything...

Understanding Small-Business Cyber-Insurance Marketplace (InfoRiskToday)
2017-07-28 10:03

A look at why the market for cyber insurance among small business struggles leads the latest edition of the ISMG Security Report. Also, how adware evolves into more troubling malware.

How Hackers Cash Out Millions of Bitcoins Received in Ransom (The Hackers News)
2017-07-28 02:13

Digital currencies have emerged as a favourite tool for hackers and cyber criminals, as digital currency transactions are nearly anonymous, allowing cyber criminals to use it in underground...

Report Depicts Shameful State of Cybersecurity Metrics (Security Week)
2017-07-28 01:59

For years, Security has sought the ear of the Board and claimed it was not offered. Today the Board is listening; but all too often Security talks in a language that Business does not understand....

Attack Uses Docker Containers To Hide, Persist, Plant Malware (Threatpost)
2017-07-27 23:30

Abuse of the Docker API allows remote code execution on targeted system, which enables hackers to escalate and persists thanks to novel attacks called Host Rebinding Attack and Shadow Containers.

Photo gallery: Black Hat USA 2017, part 2 (Help Net Security)
2017-07-27 22:40

Black Hat USA 2017 is underway at Las Vegas, and here are a few photos from the Business Hall, the Arsenal, and the Innovation City. Featured companies: NTT Security, Infobyte, Qualys, Belarc.

Trump's Cybersecurity Executive Order Will Be Judged by the Action It Inspires (InfoRiskToday)
2017-07-27 22:03

The actors behind WannaCry couldn't have timed their actions more ironically.

Security vulnerabilities in radiation monitoring devices (Help Net Security)
2017-07-27 21:06

IOActive researcher Ruben Santamarta has uncovered a number of cybersecurity vulnerabilities in widely deployed Radiation Monitoring Devices (RDMs), and has presented his research at the Black Hat...