Security News > 2017

ShadowBrokers Selling Windows Exploits, Attack Tools (Threatpost)
2017-01-11 20:04

The ShadowBrokers are selling a cache of Windows exploits and attack tools for 750 Bitcoin.

Addressing the challenges of vulnerability coordination (Help Net Security)
2017-01-11 19:12

The FIRST Vulnerability Coordination Special Interest Group (SIG) made available for public comment through January 31, 2017 the draft Guidelines and Practices for Multi-party Vulnerability...

Second Try at Windows LSASS Patch Addresses Vulnerability (Threatpost)
2017-01-11 18:01

Microsoft on Tuesday patched a vulnerability in LSASS, the second attempt it has taken at fixing a remote denial-of-service issue in the critical Windows process.

Spammers Revive Hancitor Downloader Campaigns (Threatpost)
2017-01-11 17:48

A recent lull in the distribution of spam linking to the malicious downloader Hancitor has been snapped as researchers warn of new campaigns.

Is your Windows 10 migration strategy leaving you vulnerable? (Help Net Security)
2017-01-11 13:46

Despite enhanced security being a key driver in the move to Windows 10, many organizations are putting their security at risk with their choice of migration strategy, according to new research by...

Ransom is the main motivation behind cyber attacks (Help Net Security)
2017-01-11 13:00

49% of businesses confirmed being the subject of a ransom campaign in 2016, according to Radware. What’s more, 27% of IT professionals surveyed chose data leakage or loss as a key concern when...

How the application landscape is impacting IT organizations (Help Net Security)
2017-01-11 12:45

Accelerating cloud adoption is creating increased demand for security application services including WAF, DNSSEC, and DDoS protection, according to F5 Networks. As an increase in application...

Law Enforcement Access to IoT Data (Schneier on Security)
2017-01-11 12:22

In the first of what will undoubtedly be a large number of battles between companies that make IoT devices and the police, Amazon is refusing to comply with a warrant demanding data on what its...

Microsoft Issues Record Low Number of Patch Tuesday Bulletins (Threatpost)
2017-01-10 20:52

Microsoft patched vulnerabilities that were tied to a variety of its products including Office 2016, its Edge browser and its Local Security Authority Subsystem Service (LSASS).

Microsoft Patches Two Critical Security Vulnerabilities (Threatpost)
2017-01-10 20:52

Microsoft patched two vulnerabilities rated critical that tied to Office 2016, its Edge browser and its Local Security Authority Subsystem Service (LSASS).