Security News

Meet the new aviation insecurity, same as the old aviation insecurity: Next-gen ACAS X just as vulnerable to spoofing as its predecessor
2020-10-06 10:46

Aviation boffins have found that next-gen collision aircraft avoidance systems appear to be just as vulnerable to signal spoofing attacks as older kit. In a paper distributed via ArXiv, computer scientists at the UK's University of Oxford and Switzerland's Federal Office for Defence Procurement analyzed the Airborne Collision Avoidance System X, due to be deployed on commercial aircraft in the next few years, and found that it can be manipulated by a miscreant to produce fake collision alerts that prompt pilots to take evasive action.

The Insecurity of WordPress and Apache Struts
2020-03-18 12:45

A study that analyzed all the vulnerability disclosures between 2010 and 2019 found that around 55% of all the security bugs that have been weaponized and exploited in the wild were for two major application frameworks, namely WordPress and Apache Struts. The Drupal content management system ranked third, followed by Ruby on Rails and Laravel, according to a report published this week by risk analysis firm RiskSense.

Election Machine Insecurity Story
2019-12-05 12:06

Interesting story of a flawed computer voting machine and a paper ballot available for recount. All ended well, but only because of that paper backup. Vote totals in a Northampton County judge's...

How Insecurity Can Bolster Your Security Program
2019-06-12 15:33

Insecurity Can Help Organizations Continually Learn and Make Changes read more

Extinguishing the IoT Insecurity Dumpster Fire
2019-05-06 14:10

Will connected devices be insecure forever? Or will legislation - such as the recent UK mandate announced this week - help boost IoT security?

NIST and the Small Business:  Addressing Cyber Insecurity
2018-10-09 12:03

In August, President Trump signed the NIST Small Business Cybersecurity Act.

Estimating the Cost of Internet Insecurity
2018-01-29 12:18

It's really hard to estimate the cost of an insecure Internet. Studies are all over the map. A methodical study by RAND is the best work I've seen at trying to put a number on this. The results...

Cyber insecurity is pervasive, citizens feeling concerned and vulnerable (Help Net Security)
2017-04-11 13:00

More than three-quarters of U.S. citizens (79 percent) are concerned about the privacy and security of their personal digital data, and 63 percent say they would feel more confident if the...