Security News

Malvertising Leads to Magnitude Exploit Kit, Ransomware Infection (Threatpost)
2015-05-19 16:38

Researchers from ZScaler have uncovered a new scheme where criminals are using malversting to redirect to pages hosting the Magnitude exploit kit and the CryptoWall ransomware.

Address-Spoofing Bug Haunts Android Stock Browser (Threatpost)
2015-05-19 14:29

There’s an easily exploitable vulnerability in the Android stock browser that enables an attacker to spoof the URL in the address bar and force a victim to visit a malicious site while believing...

President Urged to Reject Mandatory Backdoors (Threatpost)
2015-05-19 13:56

A coalition of 150 tech companies and privacy champions sent a letter to President Obama urging him to reject any proposals mandating backdoor access to software and devices.

Researchers, IEEE Release Medical Device Security Guidelines (Threatpost)
2015-05-18 20:36

A collection of research scientists, with help from the IEEE Cybersecurity Initiative, have released a new set of guidelines for developers to take into account to ensure security figures into how...

APT Group Embeds Command and Control Data on TechNet Pages (Threatpost)
2015-05-18 19:03

The so-called Deputy Dog APT group has surfaced again with a means of keeping its command and control servers under wraps that involves Microsoft’s TechNet online resources.

Penn State Offline Following Advanced Two-Year Cyberattack (Threatpost)
2015-05-18 16:46

Penn State announced that its school of engineering was the victim of a more than two-year long cyberattack perpetuated by advanced persistent threat groups.

Oracle Patches VENOM Vulnerability (Threatpost)
2015-05-18 14:49

Oracle on Saturday released its patch for the VENOM vulnerability, a guest escape flaw that affects many virtualization platforms.

TeslaCrypt Ransomware Taking a Toll on Victims (Threatpost)
2015-05-18 14:44

The attackers behind the TeslaCrypt ransomware, which is one of the newer entries on the scene, may not be making as much money yet as some of their more experienced competitors, but researchers...

Researchers Disclose Further Vulnerabilities in Google App Engine (Threatpost)
2015-05-15 16:44

A group of Polish researchers is claims there are still several outstanding vulnerabilities in Google App Engines, including three complete Java sandbox escapes.

Threatpost News Wrap, May 15, 2015 (Threatpost)
2015-05-15 15:34

Dennis Fisher and Mike Mimoso talk about the VENOM vulnerability, the idea of marketing bugs, Microsoft's new Edge browser security features and the awesome CSI: Cyber finale.