Security News

RiskIQ JavaScript Threats Module protects orgs’ high-traffic payment pages from JavaScript attacks
2019-08-01 03:45

RiskIQ, the global leader in attack surface management, announced the launch of RiskIQ JavaScript Threats Module to ensure customer trust in e-commerce by protecting organizations’ high-traffic...

JavaScript tells all, which turns out not to be so great for privacy: Side-channel leaks can be exploited to follow you around the interweb
2019-06-11 08:58

And using browser privacy extensions may just make matters worse Boffins from Graz University of Technology in Austria have devised an automated system for browser profiling using two new side...

Jscrambler launches Self-Healing JavaScript to prevent code tempering
2019-06-11 01:30

Jscrambler, a technology company specializing in JavaScript Application Security and Web Page Monitoring solutions announces Self-Healing JavaScript – a world first for JavaScript application...

CSS tracking trick can monitor your mouse without JavaScript
2019-05-09 14:40

A security researcher has demonstrated a new way to track mouse movements even if users block JavaScript.

JavaScript Sniffer Attacks: More Online Stores Targeted
2019-05-07 21:33

Latest Attack Targets Online Campus Stores in US and CanadaJavaScript sniffers, which are used to skim credit card and other customer data from e-commerce websites, are a persistent threat. In the...

E-commerce JavaScript Sniffer Attacks Proliferate: Report
2019-04-05 20:18

Group-IB Researchers Analyze the Latest Global TrendsJavaScript sniffers - specialized malware that skims credit card information and other data from online shopping - are becoming far more...

JavaScript Library Introduced XSS Flaw in Google Search
2019-04-01 18:35

A change made several months ago in an open-source JavaScript library introduced a cross-site scripting (XSS) vulnerability in Google Search and likely other Google products. read more

FBI warns of SIM-swap scams, IBM finds holes in visitor software, 13-year-old girl charged over JavaScript prank...
2019-03-09 08:30

Tired: Booth babes. Wired: Floof babes. Expired: Conference hall carpets Roundup This week we had an NSA reverse-engineering toolkit released at the RSA Conference, a buffer bashed aboard British...

JavaScript library used for sneak attack on Copay Bitcoin wallet
2018-11-28 12:51

A mystery payload sneaked into a hugely popular JavaScript library was part of a plot to ransack Bitcoins from BitPay’s Copay mobile cryptocoin wallet, it has been alleged.

Talk about a cache flow problem: This JavaScript can snoop on other browser tabs to work out what you're visiting
2018-11-21 07:04

Yes, even the Tor browser can be spied on by this nasty code Special report Computer science boffins have demonstrated a side-channel attack technique that bypasses recently-introduced privacy...