Security News > 2019 > November

Traficom’s Cybersecurity label helps consumers identify devices that are sufficiently secure
2019-11-28 02:00

The Finnish Transport and Communications Agency Traficom has launched a Cybersecurity label. The label guarantees to consumers that the labelled devices have basic information security features....

OpenNebula 5.10 is now available
2019-11-28 01:30

OpenNebula 5.10, code-named “Boomerang”, is the sixth update release of the OpenNebula 5 series. The ongoing development and evolution of OpenNebula has focused on targeting usability and...

This week, we give thanks to Fortinet for reminding us what awful crypto with hardcoded keys looks like
2019-11-28 00:42

Plus more from the world of infosec Roundup Here's a summary of recent infosec news beyond what we've already covered – earlier than usual because some of us have Thanksgiving to get through in...

DHS Mandates Federal Agencies to Run Vulnerability Disclosure Policy
2019-11-27 21:34

The DHS is requiring all federal agencies to develop a vulnerability disclosure policy. The goal is that people who discover vulnerabilities in government systems have a mechanism for reporting...

NSO Group President Defends Controversial Tactics
2019-11-27 19:41

Firm defends controversial business offerings, claims it should be considered a force of good.

Magento Marketplace Suffers Data Breach Exposing Users' Account Info
2019-11-27 18:56

If you have ever registered an account with the official Magento marketplace to bought or sold any extension, plugin, or e-commerce website theme, you must change your password immediately....

Joker's Stash Advertises More Stolen Payment Card Data
2019-11-27 18:48

Carder Forum Listing Appears Tied to Breaches at Four Restaurant ChainsThe notorious Joker's Stash carder marketplace has a fresh listing for payment card data that appears to have been stolen...

The sinister timing of deepfakes and the 2020 election
2019-11-27 18:08

Education and legislation are needed to combat the significant threat of deepfakes.

Dexphot Malware Uses Randomization, Encryption, and Polymorphism to Evade Detection
2019-11-27 17:53

Malware that Microsoft has been tracking for over a year has been leveraging numerous techniques for evasion, including random file names, fileless installation, and polymorphism.  read more

SDKs Misused to Scrape Twitter, Facebook Account Info
2019-11-27 17:44

Malicious mobile apps could be created to scrape and share profile information, email addresses and more.