Security News

Unprotected Government Server Exposes Years of FBI Investigations
2019-01-17 07:48

A massive government data belonging to the Oklahoma Department of Securities (ODS) was left unsecured on a storage server for at least a week, exposing a whopping 3 terabytes of data containing...

Millions of Oklahoma Gov Files Exposed by Wide-Open Server
2019-01-16 20:25

The storage server was left open for about a week and exposed everything from sensitive FBI investigations to data related to patients with AIDS.

Epic's Fortnite fail: Ancient UT2004 server used for login-stealing proof-of-concept
2019-01-16 14:13

A tale of XSS, SQL injection and OAuth implementation Crafty infosec bods exploited XSS vulns on dusty corners of Epic Games’ web infrastructure to steal Fortnite gamers’ login tokens and...

Unprotected VOIP Server Exposed Millions of SMS Messages, Call Logs
2019-01-16 09:33

A California-based Voice-Over-IP (VoIP) services provider VOIPO has accidentally left tens of gigabytes of its customer data, containing millions of call logs, SMS/MMS messages, and plaintext...

Oh, SSH, IT please see this: Malicious servers can fsck with your PC's files during scp slurps
2019-01-15 01:44

Data transfer tools caught not checking what exactly they're downloading A decades-old oversight in the design of Secure Copy Protocol (SCP) tools can be exploited by malicious servers to...

Facebooker swatted, Kaspersky snares an NSA thief, NASA server exposed, and more
2019-01-12 10:30

Plus, Vita boot ROM caper, TCL caught slinging Android malware, etc Roundup This week we saw a Huawei official cuffed (again), telcos caught selling tracking data (again) and Microsoft patching...

Welcome to 2019: Your Exchange server can be pwned by an email (and other bugs need fixing)
2019-01-08 23:28

Plus, bonus shock: Adobe spares Flash in January patch dump Microsoft has released the first Patch Tuesday bundle of the year, patching up 49 CVE-listed security vulnerabilities and issuing two...

AppGuard releases server protection
2019-01-08 04:00

AppGuard launched AppGuard Server, the server protection solution built from scratch that addresses specific server only requirements. It is the lightest weight solution available, ensuring no...

Servers Can Be Bricked Remotely via BMC Attack
2018-12-19 15:19

Hackers could remotely brick servers by launching firmware attacks that involve the Baseboard Management Controller (BMC), researchers at firmware security company Eclypsium have demonstrated. read more

How BMC and UEFI can be exploited to brick servers and take down your data center
2018-12-19 15:00

Out-of-band management systems can be a weak link to securing your data center. Here's how a debug utility can be leveraged to brick your systems.