Security News

Netflix Sleepy Puppy Awakens XSS Vulnerabilities in Secondary Applications (Threatpost)
2015-09-02 18:21

Netflix released Sleepy Puppy, a cross-site scripting payload management framework, to open source. The tool finds XSS vulnerabilities in secondary applications.

Victims of June OPM Hack Still Haven’t Been Notified (Threatpost)
2015-09-02 16:49

Millions of government workers whose information was implicated in this year’s expansive Office of Personnel Management hack still haven’t been notified, the agency revealed this week.

Victims of June OPM Hack Still Haven’t Been Notified (Threatpost)
2015-09-02 16:49

Millions of government workers whose information was implicated in this year’s expansive Office of Personnel Management hack still haven’t been notified, the agency revealed this week.

Google Patches Critical Vulnerabilities in Chrome 45 (Threatpost)
2015-09-02 12:48

Google promoted Chrome 45 to a stable release, patching 29 security vulnerabilities. It has also started pausing ads running Flash.

Google Patches Critical Vulnerabilities in Chrome 45 (Threatpost)
2015-09-02 12:48

Google promoted Chrome 45 to a stable release, patching 29 security vulnerabilities. It has also started pausing ads running Flash.

Encryption, Lock Mechanism Vulnerabilities Plague AppLock (Threatpost)
2015-09-01 18:36

Multiple weaknesses exist in AppLock, a popular lock application for Android devices that boasts over 100 million users.

Google, Mozilla, Microsoft to Sever RC4 Support in Early 2016 (Threatpost)
2015-09-01 17:56

Google and Mozilla today announced they’ve settled on a timeframe to permanently deprecate the shaky RC4 encryption algorithm.

UPnP Trouble Puts Devices Behind Firewall at Risk (Threatpost)
2015-09-01 17:11

Networked devices behind a firewall are at risk to attack because of poor authentication in the UPnP protocol in most home routers.

In Wake of Cyberattacks, U.S. Readies Sanctions Against China (Threatpost)
2015-09-01 10:34

The U.S. government is purportedly readying economic sanctions against China and is prepared to call out several Chinese companies and individuals for cyber espionage.

CERT Warns of Slew of Bugs in Belkin N600 Routers (Threatpost)
2015-08-31 20:06

The CERT/CC is warning users that some Belkin home routers contain a number of vulnerabilities that could allow an attacker to spoof DNS responses, intercept credentials sent in cleartext, access...