Security News

New Actor DarkHydrus Targets Middle East with Open-Source Phishing
2018-08-09 15:28

DarkHydrus uses the open-source Phishery tool to create two of the known Word documents used in the attacks.

DarkHydrus Uses Open Source Phishery Tool in Middle-East Attacks
2018-08-09 02:58

The recently detailed DarkHydrus threat group is leveraging the open-source Phishery tool to create malicious documents used in attacks on government entities in the Middle East, Palo Alto...

Facebook Open Sources Fizz — TLS 1.3 Library For Speed and Security
2018-08-07 12:18

Facebook has open sourced Fizz—a library designed to help developers implement TLS 1.3 protocol with all recommended security and performance related configurations. Since late last month, Google...

Facebook Open Sources TLS 1.3 Library
2018-08-07 11:42

Facebook on Monday announced the open source availability of Fizz, a TLS library written in C++ 14 that includes the new generation of Transport Layer Security (TLS 1.3). read more

Researchers to release open source tools to identify Twitter bots at scale
2018-08-06 19:48

Duo Security published technical research and methodology detailing how to identify automated Twitter accounts, known as bots, at a mass scale. Using machine learning algorithms to identify bot...

New Open Source Tools Help Find Large Twitter Botnets
2018-08-06 15:52

Duo Security has created open source tools and disclosed techniques that can be useful in identifying automated Twitter accounts, which are often used for malicious purposes. read more

Attackers Target iPhones Using Open Source MDM Solution
2018-07-13 14:28

Recently discovered cyber attacks targeting iPhone users have been using an open source mobile device management (MDM) system to control enrolled devices, Talos reports. read more

Open Source Components: Safety Checks Required
2018-07-03 20:33

Synopsys's Steve Giguere Talks Crowdsourcing, Code Quality, DevSecOps ChallengesOpen source software components may be free, but that doesn't automatically make them safe to use. "There can be...

Zip Slip Flaw Affects Thousands of Open-Source Projects
2018-06-06 20:58

An exploit allows attackers to remotely overwrite archive files with their own content, and from there pivot to achieving remote command execution on the machine.

Cryptocurrency: A Gold Mine For Open-Source Intelligence
2018-06-04 10:18

Expert Says Virtual Currency Systems Leak Useful Data To Track CriminalsExperts have long warned that bitcoin is not as private as it appears. The very design of bitcoin, as well as some other...