Security News

New Flash zero-day exploit bypasses browser, infects via Office documents instead
2018-06-08 17:12

If you thought you were safe from malware spread via Adobe Flash think again-a new attack hides Flash scripts in Office files to download its payload.

Browser Side-Channel Flaw De-Anonymizes Facebook Data
2018-06-01 20:47

An attacker can pick up the profile picture, username and the "likes" of unsuspecting visitors who find themselves landing on a malicious website.

Google Patches 34 Browser Bugs in Chrome 67, Adds Spectre Fixes
2018-05-30 15:32

Google has rolled out its newest browser version (Chrome 67.0.3396.62) for Windows, Mac and Linux this week with new security fixes and biometric features.

BackSwap Trojan exploits standard browser features to empty bank accounts
2018-05-29 17:03

Creating effective and stealthy banking malware is becoming increasingly difficult, forcing malware authors to come up with innovative methods. The latest creative burst in this malware segment...

BackSwap Trojan Uses New Browser Monitoring and Injection Techniques
2018-05-29 14:51

A newly discovered banking Trojan uses innovative techniques to detect when a bank’s website is accessed and to inject malicious code into targeted pages, ESET warns. read more

Wanna break Microsoft's Edge browser? Google's explained how
2018-05-15 04:58

JavaScript just-in-time compilation and some memory meddling make a mess Back in February 2018, Google's Project Zero went public with a Microsoft Edge bug that Redmond couldn't fix in time for...

VirusTotal Browser Extension Now Firefox Quantum-Compatible
2018-05-05 15:23

VirusTotal released an updated VTZilla browser extension this week to offer support for Firefox Quantum, the new and improved Web browser from Mozilla.

Chrome Browser Now Enforces Certificate Transparency
2018-05-02 18:53

Effective May 1, Google’s Chrome browser will display a warning when encountering certificates that are not compliant with the Chromium Certificate Transparency (CT) Policy. read more

New cryptomining malware doesn't need a browser session to operate
2018-04-13 19:11

XMRig is an endpoint cryptomining malware capable of doing damage without an active browser session, and its use is on the rise.

Enhanced FIDO Authentication Standard Expands to the Browser
2018-04-11 20:01

A new version of the FIDO authentication standard is designed to enable the elimination of passwords for a broader range of devices, says Phil Dunkelberger, CEO of Nok Nok Labs, who describes the...