Security News

Advantech Clears Hard-Coded SSH Keys from EKI Switches (Threatpost)
2015-11-06 15:02

Critical industrial switches from Advantech used worldwide for automation contained hard-coded SSH keys that put devices and networks at risk.

Chimera Ransomware Promises to Publish Encrypted Data Online (Threatpost)
2015-11-06 13:44

The Chimera ransomware targets companies in Germany with a promise to publish victims' encrypted data online if a $700 ransom is not paid.

Updated Cryptowall Encrypts File Names, Mocks Victims (Threatpost)
2015-11-05 20:09

The latest Cryptowall ransomware update makes it harder to recover encrypted files, and also mocks the victim in a revamped ransom note.

Mozilla Embraces Private Browsing with Tracking Protection in Firefox 42 (Threatpost)
2015-11-05 18:13

Mozilla has pushed a feature in Firefox live that allows Firefox web browsers to block certain page elements while browsing privately.

Same Rhetoric Permeates Going Dark Encryption Debate (Threatpost)
2015-11-05 16:54

The Going Dark encryption debate resurfaced at the Advanced Cyber Security Center annual conference, and the government's stance hasn't changed much.

New Tinba Variant Seen Targeting Russian, Japanese Banks (Threatpost)
2015-11-04 17:00

Cybercriminals behind the Tinba banking Trojan have been honing in on some of the larger banks in Russia and Japan, experts claim.

Chinese Mobile Ad Library Backdoored to Spy on iOS Devices (Threatpost)
2015-11-04 16:00

Versions of a popular Chinese mobile ad library have been backdoored with capabilities that can be used to surreptitiously record audio and steal data stored on thousands of iOS devices.

Shuanet Adware Rooting Android Devices Via Trojanized Apps (Threatpost)
2015-11-04 14:00

Researchers at mobile security firm Lookout have found a new strain of adware, Shuanet, spreading via Trojanized Android apps that roots mobile devices.

Google Project Zero Turns Over 11 Bugs in Galaxy S6 Edge (Threatpost)
2015-11-03 19:36

Google's Project Zero tested the security of one of its biggest OEM partners, Samsung, finding 11 critical vulnerabilities in the Galaxy S6 Edge.

Updated XcodeGhost Adds iOS9 Support (Threatpost)
2015-11-03 19:06

A new version of XcodeGhost has added new obfuscation techniques, and support for iOS9. Infections have also reached out beyond China.