Security News

Irongate ICS Malware Steals From Stuxnet Playbook (Threatpost)
2016-06-02 12:45

Researchers find industrial control system malware similar to BlackEnergy, Havex, and Stuxnet going undetected on Google VirusTotal for years.

Arrests Made In $45M Russian Bank Hack (Threatpost)
2016-06-01 19:34

Russian authorities made 50 arrests related to a five-year campaign to steal $45M from Russia's largest bank, Sberbank.

Moxa Discontinuing Vulnerable Line of ICS Devices (Threatpost)
2016-06-01 19:30

Moxa has opted to discontinue embedded computers that suffer from a vulnerability which can allow remote authenticated users to write to the firmware and render devices unusable.

FBI Wants Biometric Database Exempt From Privacy Rules (Threatpost)
2016-06-01 18:05

The FBI proposal to keep its massive biometric database private is opposed by privacy activists who are demanding more time to review the request.

Yahoo Discloses Contents of Three National Security Letters (Threatpost)
2016-06-01 17:29

Yahoo today disclosed the contents of three National Security Letters it received in 2013 and 2015, becoming the first company under reforms afforded by the USA FREEDOM Act to do so.

Windows Zero Day Selling for $90,000 (Threatpost)
2016-05-31 21:44

Hackers claim to have unearthed a zero-day vulnerability giving attackers admin rights to any Windows machine from Windows 2000 to a fully patched version of Windows 10.

SandJacking Attack Puts iOS Devices At Risk to Rogue Apps (Threatpost)
2016-05-31 19:21

At Hack in the Box last week, a researcher demonstrated a new tool that swaps out legitimate iOS apps with malicious versions, beating mitigations in place on Apple devices.

Millions of Stolen MySpace, Tumblr Credentials Being Sold Online (Threatpost)
2016-05-31 17:37

Hackers are selling roughly 427 million passwords belonging to users of MySpace along with information on 65 million Tumblr users.

Hackers Find Bugs, Extort Ransom and Call it a Public Service (Threatpost)
2016-05-31 16:35

Crooks breaking into enterprise networks are holding data they steal for ransom under the guise they are doing the company a favor exposing a flaw.

Bloatware Insecurity Continues to Haunt Consumer, Business Laptops (Threatpost)
2016-05-31 15:11

High-severity vulnerabilities were found in pre-installed software updaters present in consumer and business laptops from vendors such as Dell, HP, Lenovo, Asus and Acer.