Security News

Just Like Old Days: IOT Security Pits Regulators Against Market (Threatpost)
2015-09-11 12:16

A panel discussion at the Security of Things Forum debated the need for regulation to ensure the security and privacy of connected devices.

Password Cracking Crew Cracks 11M Ashley Madison Passwords (Threatpost)
2015-09-10 18:14

A San Diego-based password cracking group has taken a big step towards deciphering some of the 36 million odd passwords leaked in last month’s Ashley Madison breach

Valasek: Today’s Furby Bug is Tomorrow’s SCADA Vulnerability (Threatpost)
2015-09-10 15:40

Car hacker Chris Valasek said at the Security of Things Forum that researchers looking at connected and embedded device security cannot ignore low-impact vulnerabilities.

Pair of Drupal Modules Patch Access Bypass Flaws (Threatpost)
2015-09-10 14:36

A pair of modules included in the Drupal content management system have been updated to fix access bypass vulnerabilities that could allow an attacker to take actions on the behalf of some users....

NY Health Provider Excellus Discloses Data Breach Dating to 2013 (Threatpost)
2015-09-10 13:09

Excellus BlueCross BlueShield, a large health care provider in New York state, says it was hit by an attack that began in 2013 and wasn’t discovered until last month, resulting in the compromise...

FTC, Experts Push Startups to Think About Security From the Beginning (Threatpost)
2015-09-09 19:03

About a decade ago, many large software makers learned some very difficult lessons about software security and building security into their products from the start. Some are still learning. The...

Musical Chairs Campaign Found Deploying New Gh0st RAT Variant (Threatpost)
2015-09-09 16:24

Researchers have peeled back the layers on a new campaign that spans multiple years and involves a new variant of the ubiquitous Gh0st remote access tool (RAT).

Android Stagefright Exploit Code Released to Public (Threatpost)
2015-09-09 16:06

Exploit code for the Android Stagefright vulnerability was made public, and researcher Joshua Drake hopes organizations will test Android systems and devices against the code.

Security of iMessage System Comes to the Fore Again (Threatpost)
2015-09-09 14:11

The iMessage system, like much of what Apple does, is mostly a black box. The company doesn’t talk much about how the system works, and although some security researchers found a couple years ago...

Turla APT Group Abusing Satellite Internet Links (Threatpost)
2015-09-09 13:00

Researchers at Kaspersky Lab have revealed that the Turla APT gang is using satellite-based Internet links to hide command-and-control activities.