Security News

Classic Ether Wallet Compromised via Social Engineering (Threatpost)
2017-07-03 18:10

Developers of Classic Ether Wallet said an attacker managed to hijack the domain for the wallet via social engineering late Thursday evening.

Siemens Patches Critical Intel AMT Flaw in Industrial Products (Threatpost)
2017-06-30 18:16

Siemens patched a recently disclosed vulnerability pertaining to systems with specific Intel processors. If exploited, the flaw could let an attacker gain system privileges.

Majority of Sites Fail Mozilla’s Comprehensive Security Review (Threatpost)
2017-06-30 17:11

A thorough review of the top 1 million websites reveals 93 percent fail Mozilla’s Observatory security review.

Threatpost News Wrap, June 30, 2017 (Threatpost)
2017-06-30 13:00

Mike Mimoso and Chris Brook discuss this week's ExPetr global ransomware outbreak, how it was distributed, the wiper aspect, and similarities to 2016's Petya ransomware.

This Retail Website Considers Password Security Optional (Threatpost)
2017-06-30 11:00

The glaring privacy issues tied to an online health and beauty retailer allows customers to log-in to their users accounts with just their email address - no password needed.

ExPetr Called a Wiper Attack, Not Ransomware (Threatpost)
2017-06-29 19:46

The global outbreak of the Petya/ExPetr malware wasn't a ransomware attack, it was wiper malware aimed to sabotage, according to experts.

Linux Systemd Bug Could Have Led to Crash, Code Execution (Threatpost)
2017-06-29 17:59

Ubuntu fixed a Linux bug that could have let an attacker cause a denial of service or execute arbitrary code with a TCP payload this week.

‘Little Hope’ to Recover Data Lost to Petya Ransomware (Threatpost)
2017-06-28 19:05

Researchers at Kaspersky Lab have discovered an error in the ExPetr ransomware code that prevents recovery of lost data.

Microsoft Issues ‘Important’ Security Fix for Azure AD Connect (Threatpost)
2017-06-28 18:52

Microsoft is warning customers of an “important” update to its Azure AD Connect service that could allow for an elevation of privilege attack against affected systems.

New Petya Distribution Vectors Bubbling to Surface (Threatpost)
2017-06-28 16:26

Microsoft has made a definitive link between MEDoc and initial distribution of the Petya ransomware. Kaspersky Lab, meanwhile, has identified a Ukrainian government website used in a watering hole attack.