Security News

Adware-Laden Skype Botnet Disrupted (Threatpost)
2015-06-04 21:05

The latest campaign to leverage Skype – a botnet circulating adware, composed entirely of Skype users - was recently disrupted by researchers.

Tesla Motors Starts Bug Bounty–But Not For Its Cars (Threatpost)
2015-06-04 18:22

Tesla Motors has started a bug bounty program that will pay researchers up to $1,000 for disclosing vulnerabilities. However, the rewards don’t apply to bugs found in the company’s vehicles. The...

Author Behind Ransomware Tox Calls it Quits, Sells Platform (Threatpost)
2015-06-04 15:41

The developer behind Tox, a ransomware-as-a-service tool that only surfaced late last month, acknowledged he's over his head and will sell the platform off.

Using a Toy to Open a Fixed-Code Garage Door in 10 Seconds (Threatpost)
2015-06-04 14:42

It may be time to upgrade your garage door opener. Security researcher Samy Kamkar has developed a new technique that enables him to open almost any garage door that uses a fixed code–and he...

Privacy Proponents Rally In Favor of Tracking Protection in Firefox (Threatpost)
2015-06-03 18:21

Privacy advocates are calling on Mozilla to better deploy Tracking Protection, a technology that offers more stringent privacy and speeds up page loads by blocking requests to tracking domains, in...

Facebook Requires SHA-2 as of Oct. 1 (Threatpost)
2015-06-03 18:00

Facebook has put developers on notice that as of Oct. 1, apps that do not support SHA-2 will no longer connect to its network.

Zero-Day Disclosed in Unity Web Player (Threatpost)
2015-06-03 16:12

A zero-day vulnerability has been disclosed in the popular Unity Web Player browser plugin. The flaw allows an attacker crossdomain access to websites and services using the victim's credentials.

Microsoft to Support SSH in Windows (Threatpost)
2015-06-03 15:29

After several false starts, Microsoft finally is planning to support SSH in Windows and the company’s engineers also will contribute to the OpenSSH project. While SSH has been a popular tool for...

Audit of GitHub SSH Keys Finds Many Still Vulnerable to Old Debian Bug (Threatpost)
2015-06-03 11:37

An audit of the SSH keys associated with more than a million GitHub accounts shows that some users have weak, easily factorable keys and many more are using keys that are still vulnerable to the...

Locker Ransomware Decryption Keys Posted Online (Threatpost)
2015-06-02 17:38

The author of the Locker crypto-ransomware posted decryption keys to Pastebin and said the malware was to begin activating itself at midnight.