Security News > 2018 > May

2 million lines of source code left exposed by phone company EE
2018-05-14 11:22

What should be secret AWS and API keys were (un)secured with the default password credentials: "admin" as the name, "admin" for a password.

Uninstall or Disable PGP Tools, Security Researchers Warn
2018-05-14 10:48

Exploitable Vulnerabilities Could Reveal Plaintext of Encrypted EmailsEuropean computer security researchers say they have discovered vulnerabilities that relate to two techniques used to encrypt...

Simple bug could lead to RCE flaw on apps built with Electron Framework
2018-05-14 10:03

A critical remote code execution vulnerability has been discovered in the popular Electron web application framework that could allow attackers to execute malicious code on victims' computers....

Sizing Up the Impact of Synthetic Identity Fraud
2018-05-14 09:48

Credit card losses due to synthetic identity fraud exceeded $800 million in the U.S. last year, says Julie Conroy of Aite Group, who analyzes the evolving threat and offers mitigation insights.

Monday review – the hot 18 stories of the week
2018-05-14 09:39

From the WhatsApp text bomb and iOS 11.4's 7-day USB shutout to the critical bug in 7-zip, and more!

Critical Flaws in PGP and S/MIME Tools Can Reveal Encrypted Emails in Plaintext
2018-05-14 07:48

An important warning for people using widely used email encryption tools—PGP and S/MIME—for sensitive communication. A team of European security researchers has released a warning about a set of...

PGP and S/MIME decryptors can leak plaintext from emails, says infosec Professor
2018-05-14 06:46

Users advised to stop using and/or uninstall plugins ASAP to stop Pretty Grievous P0wnage A professor of Computer Security at the Münster University of Applied Sciences‏ has warned that popular...

Code Execution Flaw in Electron Framework Could Affect Many Apps
2018-05-14 05:16

GitHub’s open source development framework Electron is affected by a vulnerability that can allow remote code execution. Technical details and proof-of-concept (PoC) code were made public last...

Family Planning office warns customers best bits may be exposed
2018-05-14 03:59

Contact form data left on server for more than TWO YEARS, then came ransomware The Australian State of New South Wales' reproductive and sexual health organisation Family Planning NSW has advised...

Chili's Restaurants Hit by Payment Card Breach
2018-05-14 03:56

People who recently paid with their credit or debit card at a Chili’s restaurant may have had their information stolen by cybercriminals, according to Dallas-based Brinker International. Brinker,...