Security News

Attackers take over org's OWA server, harvest domain credentials with malicious DLL (Help Net Security)
2015-10-06 11:38

Researchers from cyber attack detection and response outfit Cybereason have discovered a novel APT technique that was used by attackers to gain persistence in an (unnamed) organization' environment an...

Fake PayPal app is going after German users' banking credentials (Help Net Security)
2015-10-02 09:17

An email spam run impersonating PayPal is actively targeting German Android users and trying to trick them into downloading what is ostensibly the official PayPal app, but is actually a banking Trojan...

Dyreza Trojan Targeting IT Supply Chain Credentials (Threatpost)
2015-09-29 15:37

The Dyreza, or Dyre, Trojan has been spotted phishing credentials in attacks against the IT supply chain.

Schneider Patches Plaintext Credentials Bug in Building Automation System (Threatpost)
2015-09-16 20:15

Schneider Electric has published new firmware for its StruxureWare Building Expert building automation system that patches a remotely exploitable vulnerability.

CoreBot Malware Steals Credentials-For Now (Threatpost)
2015-08-31 15:31

CoreBot is new information-stealing malware in the wild with a modular design that could turn the credential-stealing malware into something much worse.

Protect against privileged credential attacks with zero trust (Help Net Security)
2015-08-27 09:18

Enterprise networks – and the attacks against them – have evolved. No longer static, they are dynamic entities. And yet, IT organizations continue to use traditional security controls that aim to prot...

CERT Warns of Hard-Coded Credentials in DSL SOHO Routers (Threatpost)
2015-08-26 14:33

DSL routers from a number of manufacturers contain hard-coded credentials that could allow a hacker to access the devices via telnet services and remotely control them.