Security News

Microsoft Patches Critical Windows Search Vulnerability (Threatpost)
2017-08-08 21:21

Microsoft patched 25 critical vulnerabilities, including a remote code execution bug in Windows Search.

Updates to Sofacy, Turla Highlight 2017 Q2 APT Activity (Threatpost)
2017-08-08 20:34

Attackers behind APT campaigns have kept busy in Q2 2017, adding new ways to bypass detection, crafting new payloads to drop, and identifying new zero days and backdoors to help them infect users...

Engineering Firm Leaks Sensitive Data on Dell, SBC and Oracle (Threatpost)
2017-08-08 18:08

Power Quality Engineering publicly exposed sensitive electrical infrastructure data on the public internet tied to Dell Technologies, SBC, Freescale, Oracle, Texas Instruments and the City of Austin.

Flash Player Marches Toward End, Patches Two Code Execution Bugs in Latest Update (Threatpost)
2017-08-08 17:40

Adobe today pushed out its first Flash Player update since announcing it would end-of-life the software in 2020.

Google Patches 10 Critical Bugs in August Android Security Bulletin (Threatpost)
2017-08-08 12:12

Google's August Android Security Bulletin featured patches for nearly a dozen remote code execution bugs impacting Google's Pixel and Nexus handsets.

Marcus Hutchins’ Only Certainty is Uncertainty (Threatpost)
2017-08-07 20:45

WannaCry hero Marcus Hutchins pleaded not guilty last week could be freed today on $30,000 bond before the case moves to Wisconsin.

Lawsuit Alleges Disney Illegally Tracks Children Via Apps (Threatpost)
2017-08-07 18:52

Following a class action lawsuit, Disney is fighting allegations this week that its apps fail to safeguard children’s personal information.

Tech Support Scammers Cast a Wider Net (Threatpost)
2017-08-07 17:32

Microsoft is warning of a wave of phishing campaigns pushing tech support scams via malicious links to phony Amazon, Alibaba and LinkedIn web pages.

Attackers Use Typo-Squatting To Steal npm Credentials (Threatpost)
2017-08-04 21:24

Criminals used a typo-squatting technique and uploaded rogue JavaScript libraries to a popular code repository npm.

Exploits Available for Siemens Molecular Imaging Vulnerabilities (Threatpost)
2017-08-04 18:24

ICS-CERT published advisories this week warning users of Siemens molecular imaging products of publicly exploits for Windows 7 versions of those devices.