Security News > 2018 > April

Windows USB-stick-of-death, router bugs resurrected, and more
2018-04-28 07:44

Your weekend guide to computer security cockups Roundup Here's your summary of infosec news – from router holes to Windows crashes – beyond what we've already covered this week.…

Friday Squid Blogging: Bizarre Contorted Squid
2018-04-27 21:37

This bizarre contorted squid might be a new species, or a previously known species exhibiting a new behavior. No one knows. As usual, you can also use this squid post to talk about the security...

FDA Unveils Plan for 'Software as a Medical Device' Review
2018-04-27 21:17

Agency Says It Would Assess Vendors' 'Cybersecurity Responsibility'The FDA is proposing to pre-certify vendors of certain medical device software, including various mobile apps, allowing the...

Ozzie Ozzie Ozzie, oi oi oi! Tech zillionaire Ray's backdoor crypto for the Feds is Clipper chip v2
2018-04-27 20:51

Lotus Notes man has a plan... and a patent Analysis Those who cannot remember the past are condemned to repeat it, particularly if forgetfulness promises profit.…

SamSam Ransomware Evolves Its Tactics Towards Targeting Whole Companies
2018-04-27 19:41

The gang behind the Atlanta city shutdown and other attacks is selecting victims carefully and offering volume discounts to unlock whole organizations.

Security Trade-Offs in the New EU Privacy Law
2018-04-27 17:27

On two occasions this past year I’ve published stories here warning about the prospect that new European privacy regulations could result in more spams and scams ending up in your inbox. This post...

Uber Tightens Bug Bounty Extortion Policies
2018-04-27 17:16

Uber is tightening policies around its bug bounty program after a 2016 data breach exposed deep flaws in its policies around handling extortion.

Microsoft Outlook rolling out end-to-end encryption to protect business email
2018-04-27 16:09

Outlook will also ask a user if they wish to encrypt an email if it detects sensitive information, like a bank account number, in the email.

ThaiCERT Seizes Hidden Cobra Server Linked to GhostSecret, Sony Attacks
2018-04-27 15:58

It's analyzing the server, operated by the North Korea-sponsored APT, which was used to control the global GhostSecret espionage campaign affecting 17 countries.

Deception Technology: Dispelling Myths
2018-04-27 15:48

Carolyn Crandall of Attivo Networks on Improving Intrusion DetectionBecause network intrusions are inevitable, organizations need to improve detection to more quickly respond to attacks, says...