Security News

Bugs in Drupal's update process could lead to backdoored updates, site compromise (Help Net Security)
2016-01-07 11:06

Drupal's update process is deeply flawed, says IOActive researcher Fernando Arnaboldi. He recently discovered three separate flaws in it, the worst of which could be exploited by attackers to swap ...

User Errors Often Compromise Encryption (Schneier on Security)
2015-12-17 12:46

This should come as no surprise: users often compromise their own security by making mistakes setting up and using their encryption apps. Paper: "On the Security and Usability of Crypto Phones,"...

Business email compromise scams still happening, still successful (Help Net Security)
2015-12-11 09:50

Despite repeated warnings issued by law enforcement, information sharing organizations, and security companies, Business Email Compromise (BEC) scams still abound and the scammers still "earn" money. ...

Four critical Android bugs patched, one could lead to permanent device compromise (Help Net Security)
2015-12-08 07:34

Google's December security update for Android has been pushed out to Nexus devices on Monday, and it contains fixes for 19 vulnerabilities, four of which are deemed "critical". Among these is an el...

Millions of smartphones, IoT devices risk compromise due to 3-year-old bug (Help Net Security)
2015-12-07 08:16

Can you believe that an estimated 6.1 million smart phones, routers, and smart TVs are vulnerable to remote code execution attacks due to security bugs that have been fixed back in 2012? According ...