Security News

NSA veteran chief fears crippling cyber-attack on Western energy infrastructure
2015-04-27 16:01

http://www.telegraph.co.uk/news/worldnews/northamerica/usa/11563746/NSA-veteran-chief-fears-crippling-cyber-attack-on-Western-energy-infrastructure.html By Ambrose Evans-Pritchard Houston...

Security Experts Hack Teleoperated Surgical Robot
2015-04-27 16:01

http://www.technologyreview.com/view/537001/security-experts-hack-teleoperated-surgical-robot/ MIT Technology Review Emerging Technology From the arXiv April 24, 2015

Details on WordPress Zero Day Disclosed (Threatpost)
2015-04-27 15:56

A Finnish researcher has disclosed details on an unpatched stored cross-site scripting vulnerability in the WordPress core engine.

Second Crypto Bug in Networking Library Could Affect 25,000 Apps (Threatpost)
2015-04-27 15:38

A few weeks after the developers of the AFNetworking library that’s popular among iOS and OS X app developers patched a serious bug in the library that enabled man-in-the-middle attacks, another,...

Siemens Patches Ghost Flaw Simatic Product (Threatpost)
2015-04-27 14:51

Siemens has released an update for some of its ICS products that are affected but the glibc Ghost vulnerability that was disclosed in January. The vulnerability affected both the Siemens Sinumerik...

Planning for the Internet of Things (Help Net Security)
2015-04-27 13:45

As organizations plan for the future, and how security has to operate within their business, they now have to worry about the Internet of Things (IoT). There's a clear need to put in place the righ...

WordPress vulnerable to yet another, still to be patched XSS flaw (Help Net Security)
2015-04-27 13:18

The latest WordPress version (4.2, released on Thursday) and several earlier ones are vulnerable to a stored cross-site scripting (XSS) vulnerability that can be exploited to inject JavaScript in Word...

Successful POS attacks are the result of poor security, researchers find (Help Net Security)
2015-04-27 11:57

Most data breaches involving payment card information - and there have been too many in the last two years - can be traced back to a lack of implementation of security measures. Most breaches invol...

How Google saw the DDoS attack against Github and GreatFire (Help Net Security)
2015-04-27 10:37

The recent DDoS attacks aimed at GreatFire, a website that exposes China's internet censorship efforts and helps users get access to their mirror-sites, and GitHub, the world's largest code hosting se...

The invasion of biometrics (Help Net Security)
2015-04-27 08:12

Depending on where you stand biometrics is a good thing or something that is downright sinister. The truth is that to a degree biometric technologies have a valid and useful purpose but also have the ...