Security News

Patched Android ‘Serialization’ Vulnerability Affects 55 Percent of Devices (Threatpost)
2015-08-11 16:33

Google has patched a severe Android serialization vulnerability that exposes more than half of devices to takeover.

Sen. Warren Worried About Banks’ New Encrypted Messaging Platform (Threatpost)
2015-08-11 14:23

The list of politicians in Washington wringing their hands over the increasing use of encryption by consumers and businesses is growing longer by the day. Sen. Elizabeth Warren added her name to...

Researchers Unveil Square Reader Mobile POS Hacks (Threatpost)
2015-08-10 17:19

At Black Hat, two recent Boston University computer engineering graduates revealed software and hardware hacks against the latest versions of the popular Square Reader.

Darkhotel APT Latest to Use Hacking Team Zero Day (Threatpost)
2015-08-10 15:19

The Darkhotel APT gang has extended its geographic reach to victims in a host of additional countries, and has added to its cache of zero days with its use of a HackingTeam exploit for a Flash...

Privacy Badger 1.0 Released With Support For EFF Do Not Track Policy (Threatpost)
2015-08-10 15:13

The EFF has released the 1.0 version of Privacy Badger, its browser extension that blocks the hidden trackers used on many sites to follow users around the Web. The extension has been out in beta...

Mozilla Patches Bug Used in Active Attacks (Threatpost)
2015-08-10 13:46

Mozilla has released a patch for a vulnerability in Firefox that was discovered when a user found it being actively exploited in the wild. The bug affects Firefox’s PDF viewer and Mozilla...

Manipulating WSUS to Own Enterprises (Threatpost)
2015-08-07 13:00

Researchers at Black Hat found a weak spot in some WSUS configurations that could allow an attacker to compromise any server or desktop in an enterprise.

‘Prohibition Era’ Of Security Research May Be Ahead (Threatpost)
2015-08-06 21:26

LAS VEGAS–Export controls have become a dirty phrase in the security community, especially among researchers, pen testers, and others who rely on vulnerability information and exploits to do their...

BLEKey Device Breaks RFID Physical Access Controls (Threatpost)
2015-08-06 20:42

A device called BEKey which is the size of a quarter and can be installed in 60 seconds on a proximity card reader could potentially be used to break physical access controls in 80 percent of deployments.

Updated DGA Changer Malware Generates Fake Domain Stream (Threatpost)
2015-08-06 17:46

Researchers at Seculert have discovered the latest twist to DGA Changer, which now is able to generate a fake stream of domains if it detects it’s being executed in a virtual machine.