Security News

GTAGaming Hack Blamed on Old vBulletin Software (Threatpost)
2016-08-24 20:11

A breach that exposed 200,000 Grand Theft Auto fan forum users' email addresses and private data is being blamed on an exploit of outdated and vulnerable vBulletin software.

Leaked ShadowBrokers Attack Upgraded to Target Current Versions of Cisco ASA (Threatpost)
2016-08-24 17:04

Researchers at Silent Signal have ported the ShadowBrokers' Equation Group exploit for Cisco ASA firewalls to newer versions of the product.

Wildfire Ransomware Campaign Disrupted (Threatpost)
2016-08-24 16:57

Victims of the mostly Dutch-leaning ransomware WildFire can now get their files back without paying attackers.

New Collision Attacks Against 3DES, Blowfish Allow for Cookie Decryption (Threatpost)
2016-08-24 12:00

Researchers have found a new way to recover and decrypt authentication cookies from 3DES and Blowfish protected traffic. In response, OpenSSL is expected to deprecate 3DES' designation from high to medium.

Epic Games Forums Hacked, SQL Injection Vulnerability Blamed (Threatpost)
2016-08-23 17:09

A SQL injection vulnerability is being blamed in the hack of 800,000 users accounts for popular gaming forums run by Epic Games.

GozNym Banking Trojan Targeting German Banks (Threatpost)
2016-08-23 17:03

Fresh from targeting banks in Poland, the banking Trojan GozNym has begun taking aim at banks in Germany.

Timing of Browser-Based Security Alerts Could Be Better (Threatpost)
2016-08-23 15:32

New academic research shows that security warnings should be better timed to pop up when computers users are less likely to be multitasking.

Obihai Patches Memory Corruption, DoS, CSRF Vulnerabilities in IP Phones (Threatpost)
2016-08-22 19:58

Obihai Technology recently patched a slew of issues in its ObiPhone IP phone products that could have led to memory corruption, a buffer overflow, and denial of service conditions, among other outcomes.

Hancitor Downloader Shifts Attack Strategy (Threatpost)
2016-08-22 18:27

Macro-based attacks are a dime a dozen, but a new Hancitor variant illustrates how cybercriminals are upping their game when it comes building more sophisticated malicious attachments.

Juniper Acknowledges Equation Group Exploits Target ScreenOS (Threatpost)
2016-08-22 17:52

Juniper Networks on Friday acknowledged that exploits contained in the ShadowBrokers data dump target NetScreen firewalls running ScreenOS.