Security News

Security Questions Not So Secure (Threatpost)
2015-05-21 14:44

The Internet knows a lot about you, including your mother’s maiden name, your favorite food, and what street your first pet grew up on. And, according to some new research from the company,...

Security Researchers Wary of Proposed Wassenaar Rules (Threatpost)
2015-05-20 20:26

The Commerce Department’s Bureau of Industry and Security today made public its proposal to implement the controversial Wassenaar Arrangement.

Justice Department Charges Six Chinese Nationals with Insider Theft (Threatpost)
2015-05-20 20:00

The Northern District of California has announced the indictment of six Chinese nationals, charging them with theft of trade secrets and economic espionage.

SQL Attack Results in Breach of Telstra-Owned Telecom Pacnet (Threatpost)
2015-05-20 19:55

Telstra's Pacnet, a telecom service provider primarily based in China and Singapore, suffered a breach early last month that may wind up affecting thousands of customers.

How I Got Here: Marcus Ranum (Threatpost)
2015-05-20 16:13

​Dennis Fisher talks with security pioneer Marcus Ranum about writing an early Internet firewall at DEC, the security gold-rush era of the 1990s and early 2000s, why he never patented most of the...

Apple Releases Patches For a Watch (Threatpost)
2015-05-20 15:49

What happens when you build a watch that is essentially an absurdly powerful computer that also tells time? You have to patch that watch. And that’s what Apple has done for the first time,...

New Logjam Attack on Diffie-Hellman Threatens Security of Browsers, VPNs (Threatpost)
2015-05-20 11:28

Researchers have uncovered a flaw in the way that some servers handle the Diffie-Hellman key exchange, a bug that’s somewhat similar to the FREAK attack and threatens the security of many Web and...

Details Surface on Unpatched KCodes NetUSB Bug (Threatpost)
2015-05-19 18:41

KCodes NetUSB, a Linux kernel module that provides USB services over IP, contains unpatched vulnerabilities according to an alert from CERT/CC and Sec Consult

St. Louis Federal Reserve Falls Victim to DNS Hijack (Threatpost)
2015-05-19 17:57

The Federal Reserve Bank of St. Louis confirmed this week that it fell victim to a DNS hijack last month that may have redirected users to bogus webpages and exposed customers to phishing, malware...

Google Fixes Sandbox Escape in Chrome (Threatpost)
2015-05-19 17:19

Google has patched a high-risk vulnerability in its Chrome browser that allows an attacker to escape the Chrome sandbox. That vulnerability is one of 37 bugs fixed in version 43 of Chrome. Six of...