Security News > 2017 > November

Imgur—Popular Image Sharing Site Was Hacked In 2014; Passwords Compromised
2017-11-25 00:29

Only after a few days of Uber admitting last year's data breach of 57 million customers, the popular image sharing site disclosed that it had suffered a major data breach in 2014 that compromised...

Friday Squid Blogging: Fake Squid Seized in Cambodia
2017-11-24 22:31

Falsely labeled squid snacks were seized in Cambodia. I don't know what food product it really was. As usual, you can also use this squid post to talk about the security stories in the news that I...

Victimized Twice: Cyber Criminals Target Natural Disasters
2017-11-24 18:44

In the aftermath of recent fires in California, Spain and Portugal, hurricanes in Texas, Florida, and Puerto Rico, and recent earthquakes in Mexico and on the Iran-Iraq border, there has been a...

Necurs Returns With New Scarab Ransomware Campaign
2017-11-24 18:26

The world's largest spam botnet, Necurs, is delivering a new version of the Scarab ransomware. The campaign started at 07:30 UTC on Thanksgiving Day. By 13:30 UTC, security firm Forcepoint had...

SAML Post-Intrusion Attack Mirrors ‘Golden Ticket’
2017-11-24 15:39

A proof-of-concept attack demonstrates how adversaries can abuse Microsoft’s Active Directory Federation Services framework to go unnoticed and assume multiple user identities.

Device Manufacturers Working on Patches for Intel Chip Flaws
2017-11-24 06:43

Acer, Dell, Fujitsu, HPE, Lenovo, Intel and Panasonic are working on releasing patches for the recently disclosed vulnerabilities affecting Intel CPUs, but it could take a while until firmware...

Mozilla's Guide to Privacy-Aware Christmas Shopping
2017-11-23 18:31

Mozilla reviews the privacy practices of Internet-connected toys, home accessories, exercise equipment, and more....

MS Office Built-In Feature Could be Exploited to Create Self-Replicating Malware
2017-11-23 07:38

Earlier this month a cybersecurity researcher shared details of a security loophole with The Hacker News that affects all versions of Microsoft Office, allowing malicious actors to create and...

Remotely Exploitable Flaw Found In HP Enterprise Printers—Patch Now
2017-11-23 00:26

Security researchers have discovered a potentially dangerous vulnerability in the firmware of various Hewlett Packard (HP) enterprise printer models that could be abused by attackers to run...

Uber in Legal Crosshairs Over Hack Cover-up
2017-11-22 18:52

Two US states on Wednesday confirmed they are investigating Uber's cover-up of a hack at the ride-sharing giant that compromised the personal information of 57 million users and drivers. read more