Security News

Cybercrime Hit Businesses Hardest in 2015, says IC3 Report (Threatpost)
2016-05-27 19:53

Businesses were hit hardest by inbox-based scams in 2015 that robbed U.S. companies of $263 million.

Judge Tosses Evidence Gathered by FBI’s Tor Exploit (Threatpost)
2016-05-27 14:00

A federal judge granted a defense motion in the case of a Vancouver teacher charged with possession of child pornography, excluding evidence gathered by a FBI network investigative technique that...

Researcher Pockets $30,000 in Chrome Bounties (Threatpost)
2016-05-27 11:00

Mariusz Mlynski is having a May to remember, earning $30,000 in bounties from Google for vulnerabilities he discovered and disclosed, on top of another $15,500 earlier this month from the same program.

Microsoft Moves Against Bad Passwords (Threatpost)
2016-05-26 21:20

Microsoft says enterprises need to ban common passwords and rethink outdated ideas about what makes a strong password.

Amazon Users Targets of Massive Locky Spear-Phishing Campaign (Threatpost)
2016-05-26 16:05

Researchers tracked a Locky ransomware and spam attack that spoofed an Amazon shipping email that included an estimated 100 million sent missives.

Canary Watch Project Runs Its Course (Threatpost)
2016-05-26 14:41

The coalition behind CanaryWatch.org, a database of warrant canaries, has decided to no longer accept new submissions, nor monitor existing canaries for changes.

Moxa MiiNePort Devices Leak Data, Open to Unauthorized Access (Threatpost)
2016-05-25 19:31

Embedded serial device servers built by Moxa and used in a number of critical industries remain vulnerable to three serious security issues that have not been patched by the vendor.

Wekby APT Gang Using DNS Tunneling for Command and Control (Threatpost)
2016-05-25 18:58

Wekby attackers are turning to the technique known as DNS tunneling in lieu of more conventional HTTP delivery of command and controls for remote access control of infected computer networks.

APT Groups Finding Success with Patched Microsoft Flaw (Threatpost)
2016-05-25 16:58

Researchers at Kaspersky Lab have identified six APT groups using exploits for a Microsoft Office flaw that was patched in September 2015.

Google Aims to Kill Passwords with Project Abacus (Threatpost)
2016-05-25 11:28

Google wants to kill passwords with Project Abacus, which Google said will become available on Android devices by the end of 2016.