Security News

US-CERT Warns of Issues With DNS Zone Transfer Requests (Threatpost)
2015-04-14 14:48

The US-CERT is warning administrators and network operators that a misconfiguration issue with some DNS servers that has been known about for more than 15 years and can give attackers detailed...

Zero-Day Market Economics Favor Incentives for Defensive Tools (Threatpost)
2015-04-14 13:00

Research on the economics of the zero-day market conducted by HackerOne, MIT, Harvard and Facebook will be presented at RSA Conference.

As Ransomware Attacks Evolve, More Potential Victims Are at Risk (Threatpost)
2015-04-14 10:00

In early December, as most people were dealing with the stress of looking for the perfect holiday gifts and planning out their upcoming celebrations, police officers in a small New England town...

Vulnerabilities Identified in NY Banking Vendors (Threatpost)
2015-04-13 18:56

To bolster security, banks in New York are planning to enact new regulations for any third party vendors they do business with.

New SMB Flaw Affects All Versions of Windows (Threatpost)
2015-04-13 14:49

There is a serious vulnerability in all supported versions of Windows that can allow an attacker who has control of some portion of a victim’s network traffic to steal users’ credentials for...

Details Disclosed on Darwin Nuke Bug in OS X, iOS (Threatpost)
2015-04-13 14:03

Researchers at Kaspersky Lab disclosed some details on the so-called Darwin Nuke vulnerability in Apple OS X and iOS.

Coordinated Takedown Puts End to Simda Botnet (Threatpost)
2015-04-13 11:08

A coordinated operation between international police and private technology companies shuts down the Simda botnet.

Threatpost News Wrap, April 10, 2015 (Threatpost)
2015-04-10 17:31

Dennis Fisher and Mike Mimoso discuss the big Apple news from the week, Cisco and L3 crushing some SSH attacks, the great John Oliver interview of Edward Snowden and the dwindling days before RSA.

Github Attack Perpetrated by China’s Great Cannon Traffic Injection Tool (Threatpost)
2015-04-10 17:06

The Great Firewall's offensive counterpart, the Great Cannon, which inject malicious scripts to reroute traffic, is responsible for recent massive DDoS attacks targeting Github and GreatFire.org.

Older Versions of OS X Remain Vulnerable to Rootpipe ‘Hidden Backdoor API’ (Threatpost)
2015-04-10 14:34

Apple said it will not backport fixes for a hidden backdoor API discovered in OS X.