Security News

Google’s Key Transparency Simplifies Public Key Lookups (Threatpost)
2017-01-13 18:57

Google has taken a big step toward simplifying public key lookups at Internet scale with the release to open source on Thursday of Key Transparency.

Google Patches Android Custom Boot Mode Vulnerability (Threatpost)
2017-01-06 21:03

IBM's X-Force security team discovers a high-risk vulnerability in the Android platform opening phones up to DoS and elevation of privilege vulnerabilities.

Google Patches 29 Critical Android Vulnerabilities Including Holes in Mediaserver, Qualcomm (Threatpost)
2017-01-04 18:33

Google patched a critical hole in its problematic Android Mediaserver component that could have allowed an attacker to use email, web browsing, and MMS processing of media files to remotely execute code.

Google Releases Crypto Test Suite (Schneier on Security)
2016-12-20 12:12

Google has released Project Wycheproof a test suite designed to test cryptographic libraries against a series of known attacks. From a blog post: In cryptography, subtle mistakes can have...

Google Unveils Cryptographic Library Test Suite Wycheproof (Threatpost)
2016-12-19 20:15

Google on Monday announced Project Wycheproof, a collection of unit tests designed to help check for weaknesses in cryptographic algorithms.

Microsoft, Google to Block Flash by Default in Edge, Chrome (Threatpost)
2016-12-15 18:46

Microsoft followed Google's lead and said it will soon block Flash Player by default in the Edge browser.

Google publishes eight national security letters (Help Net Security)
2016-12-15 13:15

Have you ever wondered what a national security letter (NSL) received by Google looks like? Well, wonder no more, as the Internet giant has published eight of them. Along with the letters, Google...

Google Discloses Contents of Eight National Security Letters (Threatpost)
2016-12-14 18:57

Google Tuesday disclosed the contents of eight National Security Letters it received between 2010 and 2015, becoming the latest company under reforms afforded by the USA Freedom Act to do so.

Google Debuts Continuous Fuzzer for Open Source Software (Threatpost)
2016-12-05 20:22

A new Google program OSS-Fuzz is aimed at continuously fuzzing open source software and has already detected over 150 bugs.

Google Fixes 12 High-Severity Flaws In Chrome Browser (Threatpost)
2016-12-02 16:45

Chrome 55.0.2883.75 for Windows, Mac, and Linux was released Thursday and patched 36 vulnerabilities, including 12 high-severity flaws eligible for bounties.