Security News

New malware found using Google Drive as its command-and-control server
2019-01-21 15:48

Since most security tools also keep an eye on the network traffic to detect malicious IP addresses, attackers are increasingly adopting infrastructure of legitimate services in their attacks to...

US midterms barely over when Russians came knocking on our servers (again), Democrats claim
2019-01-18 20:05

Лучшая защита – нападение? Russian hackers attempted to infiltrate the Democratic National Committee (DNC) just after the US midterm elections last year, according to a new court filing.…

Misconfigured Server Leaks Oklahoma Department of Securities Data
2019-01-17 17:02

A storage server configured for public access was found to expose terabytes of data belonging to the Oklahoma Department of Securities, UpGuard reveals. read more

South Korea says mystery hackers cracked advanced weapons servers
2019-01-17 08:01

No idea who could have been behind this one... The South Korea Ministry of National Defense says 10 of its internal PCs have been compromised by North Korea unknown hackers .…

Unprotected Government Server Exposes Years of FBI Investigations
2019-01-17 07:48

A massive government data belonging to the Oklahoma Department of Securities (ODS) was left unsecured on a storage server for at least a week, exposing a whopping 3 terabytes of data containing...

Millions of Oklahoma Gov Files Exposed by Wide-Open Server
2019-01-16 20:25

The storage server was left open for about a week and exposed everything from sensitive FBI investigations to data related to patients with AIDS.

Epic's Fortnite fail: Ancient UT2004 server used for login-stealing proof-of-concept
2019-01-16 14:13

A tale of XSS, SQL injection and OAuth implementation Crafty infosec bods exploited XSS vulns on dusty corners of Epic Games’ web infrastructure to steal Fortnite gamers’ login tokens and...

Unprotected VOIP Server Exposed Millions of SMS Messages, Call Logs
2019-01-16 09:33

A California-based Voice-Over-IP (VoIP) services provider VOIPO has accidentally left tens of gigabytes of its customer data, containing millions of call logs, SMS/MMS messages, and plaintext...

Oh, SSH, IT please see this: Malicious servers can fsck with your PC's files during scp slurps
2019-01-15 01:44

Data transfer tools caught not checking what exactly they're downloading A decades-old oversight in the design of Secure Copy Protocol (SCP) tools can be exploited by malicious servers to...

Facebooker swatted, Kaspersky snares an NSA thief, NASA server exposed, and more
2019-01-12 10:30

Plus, Vita boot ROM caper, TCL caught slinging Android malware, etc Roundup This week we saw a Huawei official cuffed (again), telcos caught selling tracking data (again) and Microsoft patching...