Security News

ShadowBrokers Put Price on Monthly Zero Day Leaks (Threatpost)
2017-05-30 15:47

The ShadowBrokers announced details on how to subscribe to its Monthly Dump Service, which is available for 100 Zcash.

Microsoft Quietly Patches Another Critical Malware Protection Engine Flaw (Threatpost)
2017-05-28 10:00

Microsoft quietly patched a critical vulnerability found by Google's Project Zero team in the Malware Protection Engine.

Mark Dowd on Exploit Mitigation Development (Threatpost)
2017-05-26 16:00

Mark Dowd discusses why certain exploit mitigations have been so successful in driving up the cost of exploit development for attackers.

Pacemaker Ecosystem Fails its Cybersecurity Checkup (Threatpost)
2017-05-26 15:00

Pacemakers and pacemaker programmers lack authentication and are plagued with thousands of software vulnerabilities across leading manufacturers.

Threatpost News Wrap, May 26, 2017 (Threatpost)
2017-05-26 14:00

Mike Mimoso and Chris Brook recap the news of the week, including the EternalRocks worm, the latest on WannaCry, a subtitle hack, and a Twitter flaw.

Rash Of Phishing Attacks Use HTTPS To Con Victims (Threatpost)
2017-05-26 12:00

Phishing sites are deploying freely available TLS certificates in order to dupe victims into thinking they're visiting a safe site.

Keybase Extension Brings End-to-End Encrypted Chat To Twitter, Reddit, GitHub (Threatpost)
2017-05-25 18:43

A recently released extension for Chrome, developed by the public key crypto database Keybase, brought end-to-end encrypted messaging to several apps this week.

Revised Active Defense Bill Allows Victims to Recover or Destroy Stolen Data (Threatpost)
2017-05-25 18:14

Rep. Tom Graves has revised a draft of the Active Cyber Defense Certainty Act with new provisions that include mandatory notification and permission to recovery or destroy stolen data on the...

WannaCry Ransom Note Written by Chinese, English Speaking Authors (Threatpost)
2017-05-25 17:00

A linguistics analysis of the 28 ransom notes included with WannaCry indicate that native Chinese and English speakers wrote the original note, Flashpoint said.

Samba Patches Wormable Bug Exploitable With One Line Of Code (Threatpost)
2017-05-25 16:20

The Samba Team has patched a severe bug that leaves computers vulnerable to wormable exploit.