Security News > 2017 > September

Adobe Patches Two Critical Flaws in Flash Player
2017-09-12 15:49

Adobe has patched only two vulnerabilities in Flash Player this month, but they can both be exploited for remote code execution and both have been classified as critical. read more

How Collaboration and Information Sharing Can Neutralize Adversaries
2017-09-12 15:20

Despite the long-touted benefits of information sharing in security and intelligence, the practice isn’t as widely adopted as it should be. Often citing concerns over trust, many organizations...

Equifax attackers got in through an Apache Struts flaw?
2017-09-12 14:59

Have the attackers responsible for the Equifax data breach exploited a vulnerability in Apache Struts, a popular open source framework for developing web applications, to compromise the company’s...

Fire! Ready? Aim. - Security's Painful Evolution
2017-09-12 14:42

Even With Lower Capital Costs on Paper, the Cost of the “Fire, Ready, Aim" Approach is Reputation read more

Using behavior analysis to solve API security problems
2017-09-12 14:00

When people think about complex security challenges, airport security might be the most familiar. The scope of challenges and implications of breaches are daunting. This is especially true when...

Cynic's Guide to the Equifax Breach: Nothing Will Change
2017-09-12 13:33

Massive Breach Turns Equifax's 'Products' Into Victims, But Don't Expect JusticeIf the Equifax breach turns out like every other massive data breach we've seen for more than a decade, after a big...

Using Symantec's TLS/SSL Certs? Start Replacing Them. Now.
2017-09-12 13:33

Google Will Slowly Start Pulling the Rug From Under Symantec's Digital CertificatesA major operation to cleanse websites of digital certificates created under questionable circumstances is...

Visual network and file forensics with Rudra
2017-09-12 13:30

In this podcast recorded at Black Hat USA 2017, Ankur Tyagi, senior malware research engineer at Qualys, talks about visual network and file forensics. Here’s a transcript of the podcast for your...

Billions of Devices Potentially Exposed to New Bluetooth Attack
2017-09-12 13:07

Billions of Android, iOS, Windows and Linux devices that use Bluetooth may be exposed to a new attack that can be carried out remotely without any user interaction, researchers warned. read more

Wireless ‘BlueBorne’ Attacks Target Billions of Bluetooth Devices
2017-09-12 13:00

Bluetooth attack vector, dubbed ‘BlueBorne’, leaves billions of smart Bluetooth devices open to attack including Android and Apple phones and millions more Linux-based smart devices.