Security News > 2017

Accurate cross-browser fingerprinting is possible, researchers show (Help Net Security)
2017-01-17 20:09

A group of researchers have come up with a browser fingerprinting technique that can allow interested parties to “identify” users across different browsers (on the same machine). The group –...

Router Vulnerabilities Disclosed in July Remain Unpatched (Threatpost)
2017-01-17 17:05

Command injection vulnerabilities and accessible default admin credentials in home routers distributed by Thailand’s largest broadband provider remain unpatched despite private disclosures to the...

Security audit of Dovecot mailserver reveals good security practices (Help Net Security)
2017-01-17 16:37

Dovecot – a popular open source IMAP and POP3 server for Linux/UNIX-like systems – is as secure as its developers claim it is. A security audit performed by German security outfit Cure 53 revealed...

SHA-1 End Times Have Arrived (Threatpost)
2017-01-17 16:00

Things are about to get a lot safer on the internet with SHA-2, but there is plenty of work still to be done when it comes to SHA-1 deprecation.

Why WhatsApp’s ‘Backdoor’ Isn’t a Backdoor (Threatpost)
2017-01-17 15:24

A chorus of security experts say allegations WhatsApp's end-to-end messaging platform has a backdoor are wrong and explain why reports making the claim are false.

Andrew Macpherson on Intelligence Gathering with Maltego (Threatpost)
2017-01-17 14:00

Operations Manager at Paterva Andrew Macpherson outlines the details of the "Digital Intelligence Gathering using Maltego" course being offered at SAS 2017.

In 2017, the digital will get physical when machines start to lie (Help Net Security)
2017-01-17 13:30

In a memorable scene from a 2014 episode of the series Homeland, the Vice President is murdered by hackers who tamper with his pacemaker. Despite this plot idea reportedly originating from the...

Key Transparency: A secure directory of public encryption keys (Help Net Security)
2017-01-17 13:15

Google has released Key Transparency, an open source public directory meant to simplify the discovery of intended recipients’ public encryption key. The project is still in the prototype phase,...

Patch and security management take 8 hours per month for most companies (Help Net Security)
2017-01-17 13:00

Shavlik and AppSense used VMworld Europe 2016 to collect data from frontline experts, and to highlight patch management and security concerns in corporations. A total of 178 professionals...

Significant decrease in Locky ransomware attacks (Help Net Security)
2017-01-17 12:45

Locky ransomware attacks have dramatically decreased during December 2016, according to Check Point. Locky, which uses massive spam campaigns as a major distribution vector, only surfaced in 2016...