Security News

Adobe launches bountyless bug hunt program on HackerOne (Naked Security)
2015-03-06 17:12

Forget cash, Adobe is offering reputational points instead with its new bug bounty program.

FREAK: Security Rollback Attack Against SSL (Schneier on Security)
2015-03-06 16:46

This week we learned about an attack called "FREAK" -- "Factoring Attack on RSA-EXPORT Keys" -- that can break the encryption of many websites. Basically, some sites' implementations of secure...

The C99Shell PHP backdoor lives on (Help Net Security)
2015-03-06 13:33

The C99Shell PHP backdoor, originally spotted in 2007, is still around, and is still a danger to both web server operators and end-users. After getting a tip from a designer about a hacked Joomla p...

Fake "Flash Player Pro" update delivers password-stealing Trojan (Help Net Security)
2015-03-06 13:06

Researchers are warning about a new malware delivery campaign aimed at spreading Fareit, a password-stealing Trojan that can also download additional malware. This campaign is targeting users who's...

Gazon - the Android virus that SMSes everyone (Naked Security)
2015-03-06 12:56

The Android SMS virus "Gazon" sends itself to everyone in your contact list - including your friends, your mum... ...and your customers. Not a good look.

The TSA's FAST Personality Screening Program Violates the Fourth Amendment (Schneier on Security)
2015-03-06 12:28

New law journal article: "A Slow March Towards Thought Crime: How the Department of Homeland Security's FAST Program Violates the Fourth Amendment," by Christopher A. Rogers. From the abstract:...

Windows vulnerable to FREAK attacks after all (Help Net Security)
2015-03-06 11:42

Microsoft has released a security advisory on Thursday, confirming that all supported releases of Microsoft Windows are vulnerable to the recently documented FREAK (Factoring RSA Export Keys) attack. ...

Mandarin Oriental hotel chain confirms credit card breach (Naked Security)
2015-03-06 11:24

Thieves planted malware on POS systems on some US and European Mandarin Oriental hotels. Guests, restaurant and gift shop customers: check your statements!

Facebook post criticizing employer lands Florida man in Abu Dhabi prison (Naked Security)
2015-03-06 10:42

Used to First Amendment protection, he never would have imagined that berating his employer would land him in an Emirati jail. Now, Ryan Pate faces a potential 5 years in jail and a stiff fine.

Cryptowall makes a comeback via malicious help files (Help Net Security)
2015-03-06 09:57

A new spam wave has hit hundreds of mailboxes with malicious .chm attachments to spread the infamous Cryptowall ransomware. Cryptowall is an advanced version of Cryptolocker, a file-encrypting rans...