Security News > 2017 > August

Friday Squid Blogging: Prehistoric Dolphins that Ate Squid (Schneier on Security)
2017-08-25 21:48

Paleontologists have discovered a prehistoric toothless dolphin that fed by vacuuming up squid: There actually are modern odontocetes that don't really use their teeth either. Male beaked whales,...

Leak of >1,700 valid passwords could make the IoT mess much worse (ArsTechnica)
2017-08-25 19:40

List of unsecured devices lived in obscurity since June. Now, it's going mainstream.

Defray Ransomware Seen Targeting Education, Healthcare Industry (Threatpost)
2017-08-25 19:21

Defray, a new, although small strain of ransomware, was spotted by researchers targeting comapnies in the education and healthcare verticals.

Aetna Mailing Mishap Exposes HIV Drug Information (InfoRiskToday)
2017-08-25 19:18

Up to 12,000 Potentially Affected by Use of 'Window' EnvelopesAn incident involving HIV information being potentially visible through envelope windows on thousands of letters mailed to members of...

Judge limits DOJ’s search of anti-Trump website data (Help Net Security)
2017-08-25 19:05

After the US Department of Justice demanded from DreamHost data that could identify visitors of anti-Trump website Disruptj20.org and the web host refused to comply with such an unreasonably broad...

Review: Securing the Internet of Things (Help Net Security)
2017-08-25 16:42

About the authors Shancang Li is a senior lecturer in the cyber security research unit, Department of Computer Science and Creative Technologies at University of the West of England, Bristol, UK....

Threatpost News Wrap, August 25, 2017 (Threatpost)
2017-08-25 15:30

The news of the week is discussed, including the AWS S3 leaks, Zerodium's bounty on messaging app zero days, Ropemaker, and cobot vulnerabilities.

PoS Flaws Allow Hackers to Steal Card Data, Change Prices (Security Week)
2017-08-25 15:23

Point-of-sale (PoS) systems developed by SAP and other vendors have serious vulnerabilities that can be exploited by hackers to steal payment card data from the targeted organization’s network and...

Cryptocurrency Mining Malware Hosted in Amazon S3 Bucket (Threatpost)
2017-08-25 14:00

Attackers are using an exploit kit to spread the Zminer executable that downloads a cryptocurrency miner hosted in an Amazon S3 bucket.

Chinese Man Allegedly Tied to OPM Breach Malware Arrested (InfoRiskToday)
2017-08-25 13:48

Sakula Malware Used in Both Anthem and Office of Personnel Management BreachesThe FBI has arrested Chinese national Yu Pingan on charges that he was a "malware broker" for a remote-access Trojan...