Security News > 2017 > August

Reports Suggests 'Fleeting Window' to Prevent Major Cyber Attack on Critical Infrastructure (Security Week)
2017-08-24 16:06

The National Infrastructure Advisory Council (NIAC) published a draft report this week titled Securing Cyber Assets: Addressing Urgent Cyber Threats to Critical Infrastructure (PDF). The report...

US Navy Collisions: Don't Bet on Hacking (InfoRiskToday)
2017-08-24 15:33

Human Error Remains Most Likely Explanation, Experts SayCrew error - not hacking - remains the most likely explanation for this week's deadly collision between a U.S. Navy guided-missile destroyer...

Three Questions Every CISO Should Be Able to Answer (Security Week)
2017-08-24 15:18

Working with technical officers and cyber security specialists around the world, our conversations often center around a few key themes – the risk posed by IoT, the difficulty of detecting...

Bounty for Encrypted Messaging Exploits: $500,000 (InfoRiskToday)
2017-08-24 15:03

Zero-Day Exploit Vendor Zerodium Seeks Exploits for Signal, WhatsApp, TelegramThere's another option for governments trying to overcome the end-to-end encryption barrier: buy a zero-day software...

WikiLeaks: CIA Secretly Collected Data From Liaison Services (Security Week)
2017-08-24 14:42

WikiLeaks has published another round of Vault 7 documents, this time describing a tool allegedly used by the U.S. Central Intelligence Agency (CIA) to secretly collect biometric data from the...

Deprecated, Insecure Apple Authorization API Can Be Abused to Run Code at Root (Threatpost)
2017-08-24 14:32

An insecure Apple authorization API is used by numerous popular third-party application installers and can be abused by attackers ro run code as root.

Android Oreo: What’s new on the security front (Help Net Security)
2017-08-24 13:31

On Monday, Google released the long-awaited Android 8.0 Oreo in an unveiling that coincided with the total solar eclipse visible in much of the US. The newest version of the OS contains many new...

Living in an Assume Breach world (Help Net Security)
2017-08-24 13:00

Some security professionals claim their networks are secure from hacking. They may say this to justify a recent large purchase of security equipment. But many times, they say this because...

Global DMARC adoption still slow, it’s open season for phishers (Help Net Security)
2017-08-24 12:30

92 percent of U.S. Fortune 500 companies have left their customers, partners and brand names vulnerable to domain name spoofing, one of the most common digital deception attack vectors, according...