Security News

Adobe Fixes 21 Critical Vulnerabilities with June Patch Tuesday Update (Threatpost)
2017-06-13 18:33

Adobe fixed 21 vulnerabilities across four products - Flash, Shockwave Player, Captivate, and Adobe Digital Editions - on Tuesday.

Patrick Wardle on MacRansom Ransomware-as-a-Service (Threatpost)
2017-06-13 15:30

Patrick Wardle of Synack and the Objective-See blog talks to Mike Mimoso about the emergence of a ransomware service targeting MacOS machines. Wardle explains why he characterizes MacRansom as...

FIN7 Hitting Restaurants with Fileless Malware (Threatpost)
2017-06-13 11:15

A campaign attributed to the FIN7 attackers targets restaurants with phishing emails and infected RTF Word documents that carry out fileless malware attacks.

Free Mac-Based Ransomware-as-a-Service MacRansom Surfaces (Threatpost)
2017-06-12 20:19

A new, free macOS-based ransomware as a service has surfaced on the darkweb. Researchers say once the malware encrypts users' files, they're "pretty much gone for good."

Blinking Router LEDs Leak Data From Air-Gapped Networks (Threatpost)
2017-06-12 18:41

Researchers say sensitive data can be extracted from air-gapped networks via a wireless router's blinking LEDs.

Attackers Mining Cryptocurrency Using Exploits for Samba Vulnerability (Threatpost)
2017-06-12 13:34

Kaspersky Lab said it has seen some of the first exploits targeting a patched Samba vulnerability, and those are being used to mine Monero cryptocurrency.

GameStop Online Shoppers Officially Warned of Breach (Threatpost)
2017-06-09 20:11

Some customers are irked it took GameStop months to inform them that their personal and financial information could have been compromised in a breach of GameStop.com that began in August 2016.

Google Releases reCAPTCHA API for Android (Threatpost)
2017-06-09 19:38

Google has released a reCAPTCHA API for Android, a first for the mobile applications.

Platinum APT First to Abuse Intel Chip Management Feature (Threatpost)
2017-06-09 16:46

Microsoft has found a file-transfer tool used by the Platinum APT that leverages Intel Active Management Technology to stealthily load malware onto networked computers.

Threatpost News Wrap, June 9, 2017 (Threatpost)
2017-06-09 13:00

How EternalBlue was ported to Windows 10, a Facebook phishing study, QakBot, and this week's Apple security announcements are all discussed.