Security News

Spammer’s Arrest Puts End to Kelihos Botnet (Threatpost)
2017-04-11 17:43

Notorious spammer Peter Levashov was arrested over the weekend; Levashov is the alleged botmaster behind the Kelihos botnet.

Tools Used by Lamberts APT Found in Vault 7 Dumps (Threatpost)
2017-04-11 13:47

Researchers at Kaspersky Lab today disclosed the activities of the Lamberts APT, a group using many of the tools and tactics found in the Vault 7 dumps.

Breaking Signal: A Six-Month Journey (Threatpost)
2017-04-11 10:00

Researchers spent six months poking holes in Signal and urge a bigger spotlight on security testing.

ShadowBrokers Dump More Equation Group Hacks, Auction File Password (Threatpost)
2017-04-10 19:26

The ShadowBrokers' latest dump of Equation Group hacks focuses on UNIX systems and GSM networks, and was accompanied by an open letter to President Trump.

Travel Routers, NAS Devices Among Easily Hacked IoT Devices (Threatpost)
2017-04-10 19:04

A researcher poked holes in seven different IoT devices at last week's Security Analyst Summit, including a host of travel routers, NAS devices, and an IP-enabled camera.

Riverbed Patches Vulnerabilities in Application Monitoring Portal (Threatpost)
2017-04-10 15:39

Riverbed Technology, whose products are used by most of the Global 500, patched vulnerabilities in its SteelCentral Portal used for critical application performance monitoring.

Researcher Warns SIEMs Are Weak Link In Network Security Chain (Threatpost)
2017-04-07 21:00

Security information and event management solutions are supposed to boost security, but researchers say the network analysis tools are ripe attack targets.

Baseband Zero Day Exposes Millions of Mobile Phones to Attack (Threatpost)
2017-04-07 20:10

A previously undisclosed baseband vulnerability impacting Huawei smartphones, laptop WWAN modules and IoT components was revealed Thursday at the Infiltrate Conference

Creating a More Altruistic Bug Bounty Program (Threatpost)
2017-04-07 18:22

David Jacoby and Frans Rosén said at this year's Security Analyst Summit they offered companies free pen-testing and raised $15,000 for charity in the process.

Apache Struts 2 Exploits Installing Cerber Ransomware (Threatpost)
2017-04-07 16:46

Attackers are attempting to exploit the recent Apache Struts vulnerability on Windows servers and the payload is a variant of the Cerber ransomware.