Security News

Jeremiah Grossman on Adapting to a Changing Market (Threatpost)
2015-04-21 14:32

Dennis Fisher talks with Jeremiah Grossman of WhiteHat Security about his RSA Conference talk on the coming change in the security industry regarding guarantees, security insurance and how it will...

Remote Code Execution Hole Patched in Magento eCommerce Platform (Threatpost)
2015-04-20 20:12

A nasty remote code execution vulnerability was recently patched in Magento, eBay’s eCommerce platform

Previewing RSA 2015 with Brian Donohue (Threatpost)
2015-04-20 13:22

Dennis Fisher talks with Brian Donohue in advance of Brian's first visit to the RSA Conference this week. They discuss what to expect in terms of the content, the chaos and the suit-to-civilian...

Google Moving Toward Encrypted Ad Services (Threatpost)
2015-04-17 15:42

Google engineers have spent the last several years moving many of the company’s online services to encrypted links. Gmail is HTTPS by default, and Google search is done over SSL for much of the...

Threatpost News Wrap, April 17, 2015 (Threatpost)
2015-04-17 15:36

Dennis Fisher and Mike Mimoso discuss the Windows HTTP.sys vulnerability, Google's decision to turn off the NPAPI in Chrome and the voting machine security disaster in Virginia.

Active DoS Exploits for MS15-034 Under Way (Threatpost)
2015-04-17 15:06

Public denial-of-service exploits for a critical vulnerability in Microsoft's implementation of the HTTP protocol stack, HTTP.sys are under way, while remote code execution attacks may still be to come.

Ransomware Teslacrypt Still Targeting Gamers (Threatpost)
2015-04-16 18:19

Teslacrypt, the fairly new strain of ransomware that's been targeting gamers, is continuing to make the rounds online.

Virginia Voting Machines Exposed to Simple, Potentially Election-Altering Hacks Since 2004 (Threatpost)
2015-04-16 17:16

Voting machines in Virginia are hopelessly vulnerable to scores of low level hacks, calling into question the integrity of recent elections there.

Google Shuts Off NPAPI in Chrome (Threatpost)
2015-04-16 14:27

With the release of Chrome 42 this week, Google fixed more than 40 vulnerabilities. But the most significant security change in the new browser is Google’s decision to disable the NPAPI,...

Dropbox Launches Bounty Program on HackerOne (Threatpost)
2015-04-15 17:59

Dropbox has become the latest high-profile Internet firm to start a bug bounty program, hooking up with HackerOne to provide rewards to security researchers who report vulnerabilities through the...