Security News

CISA Passes Senate Without Addressing Privacy Concerns (Threatpost)
2015-10-28 18:54

Members of the Senate voted overwhelmingly Tuesday to pass a version of the Cybersecurity Information Sharing Act, a bill that many opposed argue will lead to continued pervasive government spying.

Gary McGraw on BSIMM6 and Software Security (Threatpost)
2015-10-28 13:00

Mike Mimoso talks to Cigital's Gary McGraw about software security and analysis from the sixth version of the Building Security in Maturity Model report.

Car Hacking, Mobile Jailbreaking Among DCMA Exemptions Granted (Threatpost)
2015-10-27 20:34

Car hacking and phone jailbreaking were made exempt from restrictions in the DCMA.

Attackers Targeting Unpatched Joomla Sites Through SQL Injection Vulnerability (Threatpost)
2015-10-27 17:43

Attackers have been carrying out attacks on sites running old, unpatched versions of Joomla following the disclosure of a critical SQL injection vulnerability in the software last week

Adobe Patches Memory Corruption Flaw in Shockwave (Threatpost)
2015-10-27 17:05

Adobe updated its Shockwave Player, patching a critical memory corruption vulnerability in the software.

New Campaign Shows Dridex Active, Targeting French (Threatpost)
2015-10-26 19:31

Two weeks after authorities announced they had taken down the botnet behind the banking malware Dridex, new research suggests the threat is alive and well.

Yahoo Hires Bob Lord as its CISO (Threatpost)
2015-10-26 16:16

Yahoo has hired former Twitter and Rapid7 security executive Bob Lord as its new CISO, taking over for Alex Stamos, who this summer left Yahoo for Facebook.

TalkTalk Hackers Demand Ransom from CEO (Threatpost)
2015-10-26 15:30

TalkTalk CEO Dido Harding said someone purporting to be the hackers who attacked the U.K. telecom demanded a ransom to keep them from publishing the stolen data.

NSA’s Divorce from ECC Causing Crypto Hand-Wringing (Threatpost)
2015-10-23 19:55

The NSA is moving away from Elliptic Curve Cryptography, and cryptographers aren't buying their reasoning that advances in post quantum computing put ECC in jeopardy.

Threatpost News Wrap, October 23, 2015 (Threatpost)
2015-10-23 15:41

Mike Mimoso and Chris Brook discuss the news of the week: How Facebook will begin warning users of nation-state attacks, all the Apple and Oracle patches, and the latest attacks against the...