Security News

Relentless Sofacy APT Attacks Armed With Zero Days, New Backdoors (Threatpost)
2015-12-04 12:05

Researchers at Kaspersky Lab release an update on the Sofacy gang, also known as APT28, explaining a set of new malware implants, backdoors and zero days at the group's disposal.

Signal Encrypted Messaging Comes to Desktop (Threatpost)
2015-12-03 15:15

Moxie Marlinspike’s Open Whisper Systems released Signal Desktop, a desktop version of Signal end-to-end encrypted messaging application.

Flash’s Farewell Under Way (Threatpost)
2015-12-03 13:00

Adobe’s announcement that it has retooled—and renamed—Flash is a longterm signal that the vulnerable and fatigued platform is on its last legs.

Cisco Patches WebEx App for Android, Warns of Unpatched Flaws (Threatpost)
2015-12-02 20:28

Cisco patched its WebEx mobile app for Android, and published advisories warning of vulnerabilities in three other products.

Angler Exploit Kit Spreading Cryptowall 4.0 Ransomware (Threatpost)
2015-12-02 20:18

One of the most popular exploit kits, Angler, has been spotted spreading the ransomware Cryptowall 4.0.

Advantech ICS Gear Still Vulnerable to Shellshock, Heartbleed (Threatpost)
2015-12-02 17:29

Rapid7 disclosed that Advantech EKI industrial control gear remains vulnerable to Shellshock and Heartbleed, in addition to a host of other vulnerabilities.

Google Ends Chrome Support on 32-bit Linux, Releases Chrome 47 (Threatpost)
2015-12-02 16:18

Google released Chrome 47 this week and announced that it will end Chrome support for older, 32-bit Linux distributions early next year.

Microsoft Removes Trust for eDellroot Certificates (Threatpost)
2015-12-01 19:15

In the wake of last week’s eDellroot fiasco, Microsoft announced Monday that its revoked support for all the self-signed, trusted root certificates that were found on some Dell computers.

China APT Gang Targets Hong Kong Media via Dropbox (Threatpost)
2015-12-01 16:37

A Chinese APT gang is targeting Hong Kong media outlets with backdoors that connect to legitimate Dropbox accounts.

National Security Letter Details Unmasked (Threatpost)
2015-12-01 14:46

Details of a National Security Letter attachment were publicly shared, revealing the FBI covets not only telephone and Internet records, but also location data.