Security News

Facebook Awards $100,000 for New Class of Vulnerabilities and Detection Tool (Threatpost)
2015-08-12 23:00

Facebook doubles the payout of its Internet Defense Prize with a $100,000 award to a team of Georgia Tech researchers for a new class of browser-based memory-corruption vulnerabilities and a...

Vulnerabilities Identified in Several WordPress Plugins (Threatpost)
2015-08-12 19:59

Researchers have identified a handful of vulnerabilities present in three different plugins used by the content management system WordPress.

Cisco Warns Customers About Attacks Installing Malicious IOS Bootstrap Images (Threatpost)
2015-08-12 18:01

Cisco is warning enterprise customers about a spike in attacks in which hackers use valid credentials on IOS devices to log in as administrators and then upload malicious ROMMON images to take...

Microsoft Patches USB-Related Flaw Used in Targeted Attacks (Threatpost)
2015-08-12 14:49

A vulnerability patched by Microsoft in the Windows Mount Manager is being exploited in targeted attacks.

Firefox 40 Begins Warning Users About Unsigned Add-Ons (Threatpost)
2015-08-12 14:22

With Tuesday’s release of Firefox 40, Mozilla has begun the process of requiring all add-ons for the browser to be signed. The company announced the forthcoming change in February, and Firefox 40...

Twitter Adds Email Privacy Data to Transparency Report (Threatpost)
2015-08-12 13:23

The number of information requests Twitter is receiving from the United States government is increasing steadily, having risen roughly 50 percent in the first six months of this year compared to...

Microsoft Patches Critical Vulnerabilities in New Edge Browser (Threatpost)
2015-08-11 18:56

Microsoft released a security bulletin for its new Edge browser, patching four critical vulnerabilities.

Hack-Fueled ‘Unprecedented’ Insider Trading Ring Nets $100M (Threatpost)
2015-08-11 18:52

Hackers based in Ukraine and Russia allegedly broke into servers belonging to several newswires and passed sensitive information onto an underground trading ring as part of what’s being referred...

Oracle CSO: You ‘Must Not Reverse Engineer Our Code’ (Threatpost)
2015-08-11 18:43

Oracle, never the most researcher-friendly software vendor, has taken its antagonism to another level after publishing a blog post by CSO Mary Ann Davidson that rails against reverse engineering...

Huge Flash Update Patches More Than 30 Vulnerabilities (Threatpost)
2015-08-11 17:15

Adobe has released a massive update for Flash, the application that has become the Internet’s problem child. The update contains patches for more than 30 vulnerabilities in Flash on Windows, OS X,...