Security News

Generic OS X Malware Detection Method Explained (Threatpost)
2016-09-13 13:14

A researcher says the future of OS X malware detection may be rooted in patterns and heatmap visualization.

New Windows Patch Policy At Odds With Acceptable Risk (Threatpost)
2016-09-12 19:38

Microsoft’s switch to rollup patching for Windows 7/8.1 will have an impact on security, one expert says.

FDA, DHS Investigating St. Jude Device Vulnerabilities (Threatpost)
2016-09-12 19:32

The FDA and DHS are jointly investigating cybersecurity vulnerabilities in St. Jude Medical devices.

Critical MySQL Vulnerability Disclosed (Threatpost)
2016-09-12 15:00

A researcher has disclosed some details and a limited proof-of-concept for a critical MySQL vulnerability. The flaw has been patched in MariaDB and PerconaDB.

Patched Android Libutils Vulnerability Harkens Back to Stagefright (Threatpost)
2016-09-09 18:06

Google Project Zero this week disclosed details on a critical vulnerability in Libutils in Android that is similar to the Stagefright flaws.

White House Hires First Federal CISO (Threatpost)
2016-09-09 16:43

The White House hired retired Brigadier General Gregory J. Touhill as the first federal CISO.

Fallout Over OPM Breach Report Begins (Threatpost)
2016-09-09 13:00

A report on the U.S. Office of Personnel Management breaches that exposed sensitive data belonging to more than 22 million people has sparked a cavalcade of finger pointing, politicking and...

Chrome to Label Some HTTP Sites ‘Not Secure’ in 2017 (Threatpost)
2016-09-08 19:43

Google Chrome will begin marking some HTTP sites as non-secure in 2017.

WordPress Update Resolves XSS, Path Traversal Vulnerabilities (Threatpost)
2016-09-08 16:23

Developers with WordPress are strongly encouraging users of the content management system to update to the most recent version, 4.6.1, released on Wednesday.

DHS Urges Vigilance in Protecting Networking Gear (Threatpost)
2016-09-08 15:09

A Homeland Security alert warns network operators that the security of routers and firewalls must be revisited in the wake of the ShadowBrokers dump and other attacks on enterprise networking equipment.