Security News

Seeking Alpha Mobile Financial App Forgoes Encryption (Threatpost)
2016-07-13 13:05

The Seeking Alpha mobile app operates without a measure of encryption, putting user information, including credentials and strategic financial interests at risk.

Windows Print Spooler Flaws Lead to Code Execution (Threatpost)
2016-07-12 20:01

Microsoft today released six critical bulletins as part of its July Patch Tuesday update, including patches for remote code execution flaws in Windows Print Spooler components.

Google, Niantic to Limit Data Pokémon GO Collects (Threatpost)
2016-07-12 18:42

Niantic said Monday night it wasn’t the company’s intent to request full access permission of its users’ Google accounts via Pokémon GO.

Little Snitch Bug Leaves Some Mac Systems Open to Attack (Threatpost)
2016-07-12 17:51

Mac OS firewall Little Snitch is vulnerable to local escalation of privileges attacks that could give criminals the ability plant rootkits and keylogger on some Mac OS X El Capitan systems.

Adobe Patches 52 Vulnerabilities in Flash Player (Threatpost)
2016-07-12 17:11

Adobe today pushed out an updated Flash Player today that patched 52 vulnerabilities, most of which led to remote code execution on compromised machines.

xDedic Hacked Server Market Resurfaces on Tor Domain (Threatpost)
2016-07-12 15:40

The xDedic market has resurfaced, this time on a Tor network domain and with the inclusion of a new enrollment fee.

Ranscam Ransomware Deletes Victims’ Files Outright (Threatpost)
2016-07-12 14:44

No encryption is needed for the ransomware Ranscam, which simply deletes users' files, even if the victim chooses to pay, researchers claim.

Malware Dropper Built to Target European Energy Company (Threatpost)
2016-07-12 13:31

Researchers at SentinelOne said they have discovered a malware dropper for the Furtim malware that was designed to attack an unnamed energy company in Europe.

Jigsaw Ransomware Decrypted, Again (Threatpost)
2016-07-11 21:12

Jigsaw ransomware’s encryption has been thwarted by Check Point researchers who discovered a fatal flaw.

Datadog Forces Password Reset Following Breach (Threatpost)
2016-07-11 19:03

Datadog, a software-as-a service-based provider of IT infrastructure monitoring and analytics services, has forced a password reset on all of its user and admin accounts following a breach last Friday.