Security News > 2017 > September

Optionsbleed bug makes Apache HTTP Server leak data from memory
2017-09-20 20:16

On Monday, security researcher Hanno Böck detailed a memory-leaking vulnerability in Apache HTTP Server that’s similar to the infamous OpenSSL Heartbleed bug uncovered in April 2014. Unlike...

FedEx Profit Takes $300 Million Hit After Malware Attack
2017-09-20 19:29

The malware attack that hit international delivery services company TNT Express in June had a negative impact of roughly $300 million on FedEx’s profit in the latest quarter. read more

Using security cameras and infrared light to extract data from air-gapped networks
2017-09-20 18:32

Researchers have demonstrated that it’s possible for attackers to covertly exfiltrate data from and send data into an air-gapped network by using the infrared light capabilities of (indoor and...

What’s Triggers HTTPS Chrome Browser Warnings?
2017-09-20 18:20

Researchers combed through 2,000 Chrome error reports to better classify HTTPS error warnings.

Inspector General: IRS's Aging IT Puts Taxpayer Data at Risk
2017-09-20 18:03

IRS Pegs Replacement Costs at $430 MillionThe use of aging computer hardware at the Internal Revenue Service is introducing "unnecessary risks" to sensitive taxpayer information, a new report...

Malware Steals Data From Air-Gapped Network via Security Cameras
2017-09-20 17:40

Proof-of-concept malware called aIR-Jumper can be used to bypass air-gapped network protections and send data in and out of network.

Deep-Learning PassGAN Tool Improves Password Guessing
2017-09-20 17:00

A deep-learning network known as a GAN has been applied to passwords, and a tool called PassGAN significantly improves the ability to guess user passwords over tools such as Hashcat or John the Ripper.

Deep-Learning PassGAN Tool Improve Password Guessing
2017-09-20 17:00

A deep-learning network known as a GAN has been applied to passwords, and a tool called PassGAN significantly improves the ability to guess user passwords over tools such as Hashcat or John the Ripper.

Why Adding Technical Experts to Boards Is Urgent
2017-09-20 16:33

Former RSA Chair Art Coviello on Ensuring an Effective Cybersecurity StrategyGiven the current threat environment, it's urgent that organizations add technical experts to their boards of directors...

Iranian Hackers Target Aerospace, Energy Companies
2017-09-20 15:27

A cyber espionage group linked by security researchers to the Iranian government has been observed targeting aerospace and energy organizations in the United States, Saudi Arabia and South Korea. read more