Security News

Serious TCP Bug in Linux Systems Allows Traffic Hijacking (Threatpost)
2016-08-10 16:55

A serious vulnerability in the TCP implementation in Linux systems can be used identify hosts communicating over the protocol and attack that traffic.

QRLJacking: A new attack vector for hijacking online accounts (Help Net Security)
2016-08-01 20:53

We all know that scanning random QR codes is a risky proposition, but a newly detailed social engineering attack vector dubbed QRLJacking adds another risk layer to their use. Many web apps and...

Hijacking Someone's Facebook Account with a Fake Passport Copy (Schneier on Security)
2016-07-07 18:27

BBC has the story. The confusion is that a scan of a passport is much easier to forge than an actual passport. This is a truly hard problem: how do you give people the ability to get back into...

Hijacking the PC Update Process (Schneier on Security)
2016-06-06 11:10

There's a new report on security vulnerabilities in the PC initialization/update process, allowing someone to hijack it to install malware: One of the major things we found was the presence of...

FreedomPop Account Hijacking Flaws Remain Unpatched (Threatpost)
2016-05-03 15:36

A serious vulnerability in mobile provider FreedomPop has yet to be patched and can be leveraged with online banking flaws to put customer accounts at risk.