Security News

Android Trojan Switcher Infects Routers via DNS Hijacking (Threatpost)
2016-12-28 09:00

A new Android Trojan, Switcher, uses victims' devices to infect WiFi routers and funnel users of the network to malicious sites.

Critical flaw opens Netgear routers to hijacking (Help Net Security)
2016-12-12 15:16

Several Netgear router models can be easily hijacked by remote, unauthenticated attackers, CERT/CC has warned on Friday. The vulnerability that allows this takeover can be exploited by simply...

OAuth 2.0 Hack Exposes 1 Billion Mobile Apps to Account Hijacking (Threatpost)
2016-11-10 14:41

Mobile app developers need to be aware of improper OAuth 2.0 implementations that have put one billion mobile apps at risk to takeover.

Serious TCP Bug in Linux Systems Allows Traffic Hijacking (Threatpost)
2016-08-10 16:55

A serious vulnerability in the TCP implementation in Linux systems can be used identify hosts communicating over the protocol and attack that traffic.

QRLJacking: A new attack vector for hijacking online accounts (Help Net Security)
2016-08-01 20:53

We all know that scanning random QR codes is a risky proposition, but a newly detailed social engineering attack vector dubbed QRLJacking adds another risk layer to their use. Many web apps and...

Hijacking Someone's Facebook Account with a Fake Passport Copy (Schneier on Security)
2016-07-07 18:27

BBC has the story. The confusion is that a scan of a passport is much easier to forge than an actual passport. This is a truly hard problem: how do you give people the ability to get back into...