Security News

‘VENOM’ Flaw in Virtualization Software Could Lead to VM Escapes, Data Theft (Threatpost)
2015-05-13 13:34

Researchers have uncovered a vulnerability in an obscure component of many virtualization platforms that they say can allow an attacker to escape from a guest virtual machine and gain code...

Default Credentials Lead to Massive DDoS-For-Hire Botnet (Threatpost)
2015-05-12 20:44

Tens of thousands of home and office-based routers have been hijacked over the last several months to stage a distributed denial of service attack campaign.

Firefox 38 Fixes 13 Flaws, Ships With DRM Support (Threatpost)
2015-05-12 19:39

Mozilla has fixed 13 security flaws in Firefox 38, including five critical vulnerabilities. The new version of the browser also includes a feature that enables the use of DRM-enabled video content...

Microsoft Patches Remote Code Execution Bugs in IE, Font Drivers, Windows Journal (Threatpost)
2015-05-12 18:49

The May 2015 Microsoft Patch Tuesday security updates include 13 bulletins, three of them rated critical for bugs in IE, font drivers and Windows Journal.

Adobe Unleashes Big Updates for Flash, Reader, Acrobat (Threatpost)
2015-05-12 16:43

Adobe released security updates for Flash, Reader and Acrobat, patching 52 vulnerabilities.

Microsoft Edge Browser Seen as a Big Security Upgrade (Threatpost)
2015-05-12 15:42

For many years now, the browser has been the most dangerous piece of software on most users’ machines. Attackers love to target browsers and a remote code execution bug in a major browser is gold...

Angler Exploit Kit Pushing New, Unnamed Ransomware (Threatpost)
2015-05-12 14:52

The Angler exploit kit is pushing yet another new variant of the TeslaCrypt and AlphaCrypt ransomware. It is similar to Cryptolocker but remains unnamed.

Datapp Sniffs Out Unencrypted Mobile Data (Threatpost)
2015-05-12 13:49

Datapp, a Windows program developed at the University of New Haven, sniffs out unencrypted mobile data sent over HTTP.

Home Automation Software Z-Way Vulnerable to Remote Attacks (Threatpost)
2015-05-12 13:41

A researcher warns users of the extensible Z-Way controller project that a weakness built into the software could easily expose it to attacks.

Ed Felten Joins White House as Deputy CTO (Threatpost)
2015-05-11 19:09

Ed Felten, a professor at Princeton University and a well-respected voice on security and privacy issues, is joining the White House as the deputy CTO. In his new role, Felten will be working...