Security News

US, European Law Enforcement Carry Out Beebone Botnet Takedown (Threatpost)
2015-04-09 19:53

U.S. and European law enforcement combined resources to take down the Beebone, or AAEH, botnet.

Group Behind SSH Brute Force Attacks Slowed Down (Threatpost)
2015-04-09 17:42

A criminal group whose actions have at times been responsible for one-third of the Internet’s SSH traffic—most of it in the form of SSH brute force attacks—has been cut off from a portion of the Internet.

Apple Fixes Proxy Manipulating Phantom Attack in iOS 8.3 (Threatpost)
2015-04-09 15:10

If left unpatched and exploited one of the vulnerabilities fixed in this week’s iOS update could’ve rendered an iPhone near useless.

Apple Patches 80 Bugs in OS X Yosemite 10.10.3 (Threatpost)
2015-04-09 15:03

Apple released Yosemite 10.10.3, which included security updates for 80 vulnerabilities in OS X.

Apple Leaves CNNIC Root in iOS, OSX Certificate Trust Lists (Threatpost)
2015-04-09 14:57

When it was revealed late last month that a Chinese certificate authority had allowed an intermediate CA to issue unauthorized certificates for some Google domains, both Google and Mozilla reacted...

Apple iOS 8.3 Includes Long List of Security Fixes (Threatpost)
2015-04-09 09:00

Apple has released iOS 8.3, a major security upgrade for iPhone and iPad users that includes patches for more than three dozen vulnerabilities. The new version of iOS has security fixes for...

New Coalition Launches Fight Against Patriot Act Section 215 (Threatpost)
2015-04-08 18:28

A broad group of civil-rights, technology and political groups from across the spectrum has developed a new initiative to advocate for the repeal of Section 215 of the USA PATRIOT Act, the part...

Two NTP Key Authentication Vulnerabilities Patched (Threatpost)
2015-04-08 15:37

DHS warns of two symmetric key authentication vulnerabilities in the NTP protocol that were patched this week.

New Evasion Techniques Help AlienSpy RAT Spread Citadel Malware (Threatpost)
2015-04-08 14:40

Researchers at Fidelis report a new strain of AlienSpy, a remote access tool that’s being used to deliver the Citadel Trojan to critical industries.

Peristent XSS Vulnerability Plagues WordPress Plugin (Threatpost)
2015-04-07 18:37

A persistent cross-site scripting (XSS) vulnerability exists in some versions of a popular WordPress caching engine plugin.