Security News

Heads up: Debian's package manager is APT for root-level malware injection... Fix out now to thwart MITM hijacks
2019-01-22 22:11

Disable redirects before applying update The Debian Project has patched a security flaw in its software manager Apt that can be exploited by miscreants to execute commands as root on victims'...

Destructive and MiTM Capabilities of VPNFilter Malware Revealed
2018-06-06 14:33

It turns out that the threat of the massive VPNFilter botnet malware that was discovered late last month is beyond what we initially thought. Security researchers from Cisco's Talos cyber...

Pet Trackers Open to MITM Attacks, Interception
2018-05-25 19:25

Several well-rated pet trackers contain flaws stemming from the use of Bluetooth LE, poor certificate handling and more.

Security company Fox-IT reveals, details MitM attack they suffered in September
2017-12-15 18:48

Dutch IT security consultancy/service provider Fox-IT has revealed on Thursday that it has suffered a security breach, which resulted in some files and emails sent by the company’s customers to be...

Banking Apps Found Vulnerable to MITM Attacks
2017-12-07 18:51

Using a free tool called Spinner, researchers identified certificate pinning vulnerabilities in mobile banking apps that left customers vulnerable to man-in-the-middle attacks.

Security Flaw Leaves Major Banking Apps Vulnerable to MiTM Attacks Over SSL
2017-12-07 17:03

A team of security researchers has discovered a critical implementation flaw in major mobile banking applications that could leave banking credentials of millions of users vulnerable to hackers....

AWS S3 Buckets at Risk of "GhostWriter" MiTM Attack
2017-11-06 13:25

GhostWriter: Writable AWS S3 Buckets Could Be Exploited to Overwrite Existing Data and Files, or Upload Malware read more

Samba Update Patches Two SMB-Related MiTM Bugs
2017-09-22 15:00

Samba released three security updates, including two related to SMB connections that could be abused by an attacker already on the network to hijack connections and manipulate traffic or data sent...

Password Reset MITM: Exposing the need for better security choices (Help Net Security)
2017-06-23 18:13

Attackers that have set up a malicious site can use users’ account registration process to successfully perform a password reset process on a number of popular websites and messaging mobile...