Security News

CSS tracking trick can monitor your mouse without JavaScript
2019-05-09 14:40

A security researcher has demonstrated a new way to track mouse movements even if users block JavaScript.

JavaScript Sniffer Attacks: More Online Stores Targeted
2019-05-07 21:33

Latest Attack Targets Online Campus Stores in US and CanadaJavaScript sniffers, which are used to skim credit card and other customer data from e-commerce websites, are a persistent threat. In the...

E-commerce JavaScript Sniffer Attacks Proliferate: Report
2019-04-05 20:18

Group-IB Researchers Analyze the Latest Global TrendsJavaScript sniffers - specialized malware that skims credit card information and other data from online shopping - are becoming far more...

JavaScript Library Introduced XSS Flaw in Google Search
2019-04-01 18:35

A change made several months ago in an open-source JavaScript library introduced a cross-site scripting (XSS) vulnerability in Google Search and likely other Google products. read more

FBI warns of SIM-swap scams, IBM finds holes in visitor software, 13-year-old girl charged over JavaScript prank...
2019-03-09 08:30

Tired: Booth babes. Wired: Floof babes. Expired: Conference hall carpets Roundup This week we had an NSA reverse-engineering toolkit released at the RSA Conference, a buffer bashed aboard British...

JavaScript library used for sneak attack on Copay Bitcoin wallet
2018-11-28 12:51

A mystery payload sneaked into a hugely popular JavaScript library was part of a plot to ransack Bitcoins from BitPay’s Copay mobile cryptocoin wallet, it has been alleged.

Talk about a cache flow problem: This JavaScript can snoop on other browser tabs to work out what you're visiting
2018-11-21 07:04

Yes, even the Tor browser can be spied on by this nasty code Special report Computer science boffins have demonstrated a side-channel attack technique that bypasses recently-introduced privacy...

StatCounter fingers cache-poisoning caper for Bitcoin-slurping JavaScript hijack
2018-11-08 04:52

The good news? Nobody appears to have lost any Bitcoin, says Gate.io This week's hijacking of StatCounter's JavaScript to swipe Bitcoins from a crypto-coin exchange was the result of a web cache...

Hackers seed StatCounter with nasty JavaScript in elaborate bitcoin theft scheme
2018-11-06 23:24

Gate.io exchange believed to be target of embedded attack One of the top traffic metrics sites on the internet is reportedly being used by criminals to steal bitcoins from a currency exchange.…

Google logins make JavaScript mandatory, Huawei China spy shock, Mac malware, Iran gets new Stuxnet, and more
2018-11-03 13:07

Plus, SystemD gets system de-bugged, again Roundup This week there were Hacked Home Hubs, buggered BBC Bits, and PortSmash privilege punch-ups.…