Security News > 2017 > August

Oops! WikiLeaks Website Defaced By OurMine (The Hackers News)
2017-08-31 00:10

OurMine is in headlines once again—this time for defacing WikiLeaks website. The notorious hacking group, OurMine, is known for breaching into high-profile figures and companies' social media...

Intel Confirms Its Much-Loathed ME Feature Has A Kill Switch (Threatpost)
2017-08-30 21:43

A previously undocumented kill switch for a remote management feature baked into many Intel chips can be switched off.

Refined Security Job Codes From NIST: Help With Recruiting (InfoRiskToday)
2017-08-30 19:33

How the Latest Updates Could Help Those Looking for SpecialistsNIST's recent updates to its precise definitions of various cybersecurity jobs are designed to help make recruiting more efficient -...

Turla APT Used WhiteBear Espionage Tools Against Defense Industry, Embassies (Threatpost)
2017-08-30 19:18

The Turla APT's WhiteBear toolset was used to attack defense organizations as recently as June, and diplomatic targets in Europe, Asia and South America during most of 2016.

Hurricane Harvey: Hospital EHRs Appear to Weather the Storm (InfoRiskToday)
2017-08-30 19:03

Official Says No Major Outages Reported YetIn the wake of Hurricane Harvey, Texas hospitals have not yet reported issues involving access to electronic health records and other critical systems,...

Advantech fixes serious vulns in WebAccess HMI/SCADA software (Help Net Security)
2017-08-30 18:49

Advantech has plugged nine security holes in WebAccess and has urged users to upgrade the software as soon as possible. Advantech WebAccess is a web browser-based software package for...

A Framework for Cyber Security Insurance (Schneier on Security)
2017-08-30 18:22

New paper: "Policy measures and cyber insurance: a framework," by Daniel Woods and Andrew Simpson, Journal of Cyber Policy, 2017. Abstract: The role of the insurance industry in driving...

New Locky Variant ‘IKARUSdilapidated’ Strikes Again (Threatpost)
2017-08-30 18:13

For a second time this month, a Locky ransomware variant called IKARUSdilapidated is part of a calculated phishing attack targeting office workers with fake scanned image attachments.

Cisco unveils LabVIEW code execution flaw that won’t be patched (Help Net Security)
2017-08-30 17:16

LabVIEW, the widely used system design and development platform developed by National Instruments, sports a memory corruption vulnerability that could lead to code execution. LabVIEW is commonly...

Siemens Fixes Session Hijacking Bug in LOGO!, Warns of Man-in-the-Middle Attacks (Threatpost)
2017-08-30 17:11

Siemens fixed a session hijacking vulnerability in its LOGO! logic module Wednesday but says a second issue, one that could help facilitate a man-in-the-middle attack, has no fix currently.