Security News

APT Targeting Tibetans Packs Four Vulnerabilities in One Compromise (Threatpost)
2016-04-19 11:00

Tibetans along with journalists and human rights workers in Hong Kong and Taiwan have been targeted in campaigns using phishing emails laced with Microsoft RTF attachments that exploit four...

Facebook Fixes Instagram Vulnerability That Opened 1M Accounts to Compromise (Threatpost)
2016-03-28 18:58

Facebook was quick to fix an issue earlier this month that could’ve let an attacker break into four percent of all active, locked accounts.

Emergency Java update plugs system compromise hole (Help Net Security)
2016-03-24 16:50

Oracle has issued an emergency security update for Java to plug a critical flaw (CVE-2016-0636) that could be exploited by luring users to visit a web page hosting the exploit. Oracle has chosen...

Patched Apple Bug Paved Way to Root Compromises (Threatpost)
2016-03-24 14:18

Apple patched an OS X vulnerability in a kernel driver that could give attackers root-level privileges on a Mac computer, researchers at Cisco Talos said.

Nexus Android Devices Vulnerable to Rooting Application, Permanent Compromise (Threatpost)
2016-03-23 11:00

Researchers have discovered a rooting application used to attack a Nexus Android device. The discovery forced Google to develop an emergency patch last week.

Bug in surveillance app opens Netgear NAS systems to compromise (Help Net Security)
2016-03-14 15:52

A security vulnerability in the ReadyNAS Surveillance Application can be exploited by unauthenticated, remote attackers to gain root access to Netgear NAS systems, Sysdream Labs researcher Nicolas...

Critical bug in libotr could open users of ChatSecure, Adium, Pidgin to compromise (Help Net Security)
2016-03-10 16:44

A vulnerability in “libotr,” the C code implementation of the Off-the-Record (OTR) protocol that is used in many secure instant messengers such as ChatSecure, Pidgin, Adium and Kopete, could be...