Security News

Harvard Paper Rebuts Going Dark (Threatpost)
2016-02-01 19:49

While the government still covets exceptional access to encrypted data, a Harvard paper says that plenty of surveillance opportunities remain, especially with the Internet of Things, metadata and more.

Critical Wi-Fi Flaw Patched on Android (Threatpost)
2016-02-01 19:00

Google's monthly Android Security Bulletin includes a patch for a critical flaw in the Broadcom Wi-Fi driver and another set of exploitable issues in Mediaserver.

Attackers Dropping Kasidet Bot via Office Macros (Threatpost)
2016-02-01 18:07

The bot Kasidet, also known as Neutrino, is being spread via macros in Microsoft Office documents.

Data Theft Hole Identified in LG G3 Smartphones (Threatpost)
2016-01-29 20:13

A group of researchers are encouraging any smartphone users who own an L3 G3 to upgrade their devices after coming across a serious security vulnerability in the devices.

Threatpost News Wrap, January 29, 2016 (Threatpost)
2016-01-29 16:10

Mike Mimoso and Chris Brook discuss the news of the week, including the latest on the BlackEnergy APT Group, Amazon getting into the SSL certificate game, and government agencies being told to...

VirusTotal Supports Firmware Scanning (Threatpost)
2016-01-29 15:35

Online malware scanner VirusTotal said it now supports firmware files and can scan uploads for malware implants and other infections.

Oracle to Kill Java Browser Plugin (Threatpost)
2016-01-28 17:43

Oracle has finally announced its intent to nail the coffin shut on its Java browser plugin.

OpenSSL Patches Serious Flaw that Puts ‘Popular Applications’ At Risk (Threatpost)
2016-01-28 16:16

The OpenSSL project team today patched two vulnerabilities in the crypto library, one of which is rated high severity and exposes many popular applications to attack.

Jon Callas on Securing Our Private Data (Threatpost)
2016-01-28 15:00

Officers Mike Mimoso talks to privacy and security veteran Jon Callas of Silent Circle about the digital footprint businesses and consumers leave, how to secure our private data, and how a new...

Java Serialization Bug Crops Up At PayPal (Threatpost)
2016-01-28 14:04

PayPal has rewarded two researchers with bug bounties for the discovery of a Java serialization vulnerability in manager.paypal.com