Security News

Amazon Faces Backlash Over Removal Of Device Encryption (Threatpost)
2016-03-04 17:41

Amazon's decision to remove device encryption from its tablets has sparked a backlash with customers and raised concerns wtih privacy activists.

Threatpost News Wrap, March 4, 2016 (Threatpost)
2016-03-04 15:28

Mike Mimoso and Chris Brook recap RSA 2016, the pervasiveness of the FBI vs. Apple debate, OpenSSL two years after Heartbleed, and why hacking back is always a bad idea.

Cisco Fixes Another Default, Static Password Flaw (Threatpost)
2016-03-03 22:56

Cisco released a critical patch for its Nexus 3000 and 3500 switches that removes a default administrative account with static credentials.

Apple Hackers, Crypto Experts Ask Courts to Vacate Order (Threatpost)
2016-03-03 22:47

An amicus brief filed on behalf of well known past and present Apple hackers asks the government to vacate its order asking Apple to unlock a terrorist's phone.

Weak Bank Password Policies Leave 350 Million Vulnerable, Say Researchers (Threatpost)
2016-03-03 16:21

Researchers claim major banks are implementing poor password policies and leaving customers vulnerable to brute force "key-search" attack.

OpenSSL Operating With Renewed Vision Two Years After Heartbleed (Threatpost)
2016-03-03 13:00

At the RSA Conference, nearly two years after Heartbleed, members of OpenSSL's Development Team described some benefits the nasty bug afforded them.

Gentle Reminder at RSA: Hacking Back is a Bad Idea (Threatpost)
2016-03-02 22:17

A panel at RSA Conference on appropriate responses to state-sponsored espionage of intellectual property for economic gain served as a reminder of the dangers of hacking back.

DROWN Flaw Illustrates Dangers of Intentionally Weak Crypto (Threatpost)
2016-03-02 21:10

The massive DROWN vulnerability resurrects fears over lingering export-grade cryptography

NSA’s Rogers Quiet on Apple-FBI Debate at RSA (Threatpost)
2016-03-02 12:00

NSA Director Admiral Michael Rogers spoke at RSA Conference about public-private cooperation and sharing, but failed to touch on the agency's silence around the Apple-FBI debate.

Crypto Panel Experts Clash on FBI-Apple Debate (Threatpost)
2016-03-01 22:10

The annual Cryptographers' Panel at RSA Conference took on the FBI-Apple debate head-on, and could not arrive at a unified conclusion.