Security News

Freelance devs: Oh, you wanted the app to be secure? The job spec didn't mention that
2019-03-11 06:14

Boffins find pros-for-hire no better at writing secure code than compsci beginners Freelance developers hired to implement password-based security systems do so about as effectively as computer...

As netizens, devs scream bloody murder over Chrome ad-block block, Googlers insist: It's not set in stone (yet)
2019-01-23 22:11

Advertising giant insists it's all still on drawing board – as plugin devs face code rewrites Analysis Following uproar from developers and netizens over proposed changes to Chrome that threaten...

Open-source devs: Wget off your bloated festive behinds and patch this user cred-blabbing bug
2019-01-02 11:36

New year, new security fails, new CVE Happy New Year! Oh, and if you include GNU's wget utility in software you write, pull down the new version released on Boxing Day and push out updates to your users.…

Twitter: Don't panic, but we may have leaked your DMs to rando devs
2018-09-21 21:45

Internet outrage mobile insists year-long API bug would have been super-hard to exploit Twitter is in full damage control mode after disclosing that it may have inappropriately exposed some...

Gits exposed, kinky app devs spanked, Feds spy on spyware buyers, etc
2018-09-08 09:46

Mac APT unearthed and other infosec bits and bytes summarized just for you Roundup This week brought with it a Supermicro shoring up firmware security, a North Korean hacking charge, and a spying...

Hey you smart, well-paid devs. Stop clicking on those phishing links and bringing in malware muck on your shoes
2018-07-25 19:02

At Node Summit, coders served some humble pie Software developers have been lionized in recent years for their influence over the information economy. At the Node Summit in San Francisco,...

Devs know application security is important, but have no time for it
2018-04-17 12:10

Sonatype polled 2,076 IT professionals to discover practitioner perspectives on evolving DevSecOps practices, shifting investments, and changing perceptions, and the results of the survey showed...

Security? We've heard of it, say web-app devs. 31 in 33 codebases have at least one big bad vuln
2018-04-16 19:06

HTTP 404: Secure code not found Automated source code analysis of 33 web applications has found that 94 per cent of them have at least one high-severity vulnerability, according to security biz...

Buggy Verge crypto-cash gets hacked, devs go fork themselves, hard
2018-04-01 00:00

Alt-currency's value tumbles amid malicious mining mishaps The Verge cryptocurrency has seen its value drop by 25 per cent after hackers exploiting a bug in the alt-coin's software forced its...