Security News

They forked this one up: Microsoft modifies open-source code, blows hole in Windows Defender
2018-04-01 00:00

Rar! That's a scary bug A remote-code execution vulnerability in Windows Defender – a flaw that can be exploited by malicious .rar files to run malware on PCs – has been traced back to an...

Kaspersky Open Sources Internal Distributed YARA Scanner
2018-03-28 12:26

Kaspersky Lab has released the source code of an internally-developed distributed YARA scanner as a way of giving back to the infosec community. Originally developed by VirusTotal software...

Open Source Vulnerabilities: Are You Prepared to Run the Race?
2017-12-14 16:12

After going through 24 seasons of cross-country, winter track, and spring track with my boys, I fully understand that if you put your toe on the line, you had better be prepared to race, or bad...

Avast Open Sources Machine-Code Decompiler in Battle Against Malware
2017-12-14 15:31

In an effort to boost the fight against malicious software, anti-malware company Avast this week announced the release of its retargetable machine-code decompiler as open source.  read more

New .NET-Based Ransomware Uses Open Source Code
2017-12-01 17:17

Two newly discovered .NET-based ransomware families are using open source repositories to encrypt users’ files, Zscaler security researchers say. read more

Secureworks Releases Open Source IDS Tools
2017-11-20 19:31

Secureworks has released two open source tools, Flowsynth and Dalton, designed to help analysts test rules for intrusion detection systems (IDS) and intrusion prevention systems (IPS) such as...

FireEye releases open source managed password cracking tool
2017-10-31 20:26

FireEye has released GoCrack, an open source tool for managing password cracking tasks across multiple machines. “Simply deploy a GoCrack server along with a worker on every GPU/CPU capable...

Microsoft Open Sources Website Scanning Tool 'Sonar'
2017-10-26 15:21

Microsoft announced this week the availability of Sonar, an open source linting and website scanning tool designed to help developers identify and fix performance and security issues. read more

The pervasive risk of vulnerable open source components
2017-10-18 13:05

Veracode announced findings from the 2017 State of Software Security Report, a comprehensive review of application security testing data from scans conducted by a base of more than 1,400...

Companies turn a blind eye to open source risk
2017-10-17 14:17

Though open source software (OSS) helps software suppliers be nimble and build products faster, there are hidden software supply chain risks all software suppliers and IoT manufacturers should...