Security News

500 Million Yahoo Accounts Stolen By State-Sponsored Hackers (Threatpost)
2016-09-22 19:47

Yahoo confirmed that in 2014 state-sponsored hackers stole information associated with 500 million accounts from its network.

Drupal Patches Three Vulnerabilities in Core Engine (Threatpost)
2016-09-22 19:05

Three vulnerabilities were patched Wednesday in the Drupal content management system’s core engine, two of which were rated critical.

Cisco Warns of Command Injection Flaw in Cloud Platform (Threatpost)
2016-09-22 17:07

Cisco rolls out a bevy of patches tied to vulnerabilities found in its cloud services platform, IOS software and Prime Home products.

DHS Announces Intent to Draft IoT Security Framework (Threatpost)
2016-09-22 16:54

The Department of Homeland Security formally announced its plan to develop a set of strategic principles for the Internet of Things.

Yahoo Reportedly to Confirm Breach of Hundreds of Millions of Credentials (Threatpost)
2016-09-22 16:31

Yahoo is expected to confirm a data breach that exposed hundreds of millions of credentials dating back to 2012.

Malware Evades Detection with Novel Technique (Threatpost)
2016-09-22 13:00

Document-based macro malware flies under the security radar by first detecting existing documents on PC.

SWIFT Confirms Banks Still Being Targeted, Announces Mitigation Tool (Threatpost)
2016-09-21 21:06

SWIFT's chief information security officer said Wednesday that the cooperative is still seeing cases in which its customers' environments have been compromised.

Google Retreats on Some Allo Privacy Promises (Threatpost)
2016-09-21 18:13

Google released its smart messaging app called Allo, but a decision to log chats indefinitely has privacy advocates worried.

iSpy Keylogger Targets Passwords, Skype, Webcams (Threatpost)
2016-09-21 18:06

Zscater identified a keylogger on steroids that targets passwords, webcam and software licenses.

RIG Picks Up Where Neutrino Left Off, Pushes CrypMIC Ransomware (Threatpost)
2016-09-21 13:29

Researchers said they’ve seen an uptick in RIG Exploit Kit traffic and that attackers have begun using the kit to peddle CrypMIC ransomware.