Security News

Cisco Warns of IOS Flaw Vulnerable to ShadowBrokers Attack (Threatpost)
2016-09-19 15:41

Cisco has issued an advisory warning its customers that products running its IOS software are vulnerable to attacks disclosed by the ShadowBrokers

Snowden Slammed in House Committee Report (Threatpost)
2016-09-17 13:00

A House Committee report slammed the former U.S. defense contractor saying he has done "tremendous damage" to the United States national security.

FBI Encouraging Ransomware Victims To Report Infections (Threatpost)
2016-09-16 18:46

The Federal Bureau of Investigation this week urged victims of ransomware to report infections to federal law enforcement in hopes of better understanding the threat.

Bugs in Signal Messaging App Corrupt Attachments, Crash App (Threatpost)
2016-09-16 18:11

Signal has fixed bugs in its Android messaging app that allow an attacker to corrupt an encrypted attachment and remotely crash the application.

Researcher Proves Viability of NAND Mirroring to Bypass iPhone Passcode Restrictions (Threatpost)
2016-09-16 17:15

A researcher from Cambridge University successfully bypassed an iPhone 5c's passcode restrictions using NAND mirroring.

Threatpost News Wrap, September 16, 2016 (Threatpost)
2016-09-16 15:30

The news of the week is discussed, including Schneier's DDoS article, a patched IE/Edge zero day, a new OS X malware detection method, and Google's Project Zero prize.

Neverquest Trojan Gets Big Summer Update (Threatpost)
2016-09-15 19:52

Developers behind the notorious Neverquest had a busy summer adding many new features to the potent Trojan.

Attack Leverages Windows Safe Mode (Threatpost)
2016-09-15 18:54

Researchers say a proof-of-concept attack using Windows Safe Mode can lead to credential theft and allow hackers to move laterally within a corporate network.

Microsoft Shuts Down Zero Day Used in AdGholas Malvertising Campaigns (Threatpost)
2016-09-15 17:48

Microsoft this week patched a zero-day vulnerability in the Internet Explorer and Edge browsers being used in the AdGholas malvertising campaign.

Cisco Patches Critical WebEx Meetings Server Vulnerability (Threatpost)
2016-09-15 17:04

Cisco warned customers of 12 vulnerabilities across its product line this week, including a critical vulnerability in the software that powers its conferencing solution WebEx Meetings Server.