Security News

Github Repository Owners Targeted by Data-Stealing Malware (Threatpost)
2017-03-30 18:29

Owners of Github repositories were the focus of a phishing campaign spreading the Dimnie information-stealing malware.

NukeBot Banking Trojan Source Code Leaked Online by Author (Threatpost)
2017-03-30 18:21

The author behind the banking Trojan NukeBot released source code for the malware earlier this month in an apparent effort to regain the trust of the cybercrime community.

Industry Braces for Repeal of ISP Privacy Rules (Threatpost)
2017-03-30 10:00

Businesses say overturning one of the nation’s strongest internet privacy protection rules will deal a blow to data privacy, security and integrity for businesses and consumers alike.

Publicly Attacked Microsoft IIS Zero Day Unlikely to be Patched (Threatpost)
2017-03-29 19:15

Researchers have disclosed a zero-day vulnerability and proof-of-concept exploit for a flaw in Microsoft IIS 6.0. The zero-day has been under attack since last July, the researchers said.

Workarounds Available for Flaws in Siemens RUGGEDCOM Gear (Threatpost)
2017-03-29 17:29

Five vulnerabilities exist in Siemens RUGGEDCOM gear; the vendor has made a number of workarounds available, but it's unknown whether patches will be made available.

VMware Patches Pwn2Own VM Escape Vulnerabilities (Threatpost)
2017-03-29 16:00

VMware patched vulnerabilities uncovered earlier this month at Pwn2Own that could have let an attacker execute code on the VMware Workstation and carry out a virtual machine escape.

‘Anonymous’ FTP Servers Leaving Healthcare Data Exposed (Threatpost)
2017-03-29 14:00

The FBI warned medical and dental offices running FTP servers in anonymous mode that criminals are targeting these installations and stealing personal healthcare information.

Harley Geiger on Cybersecurity Policy (Threatpost)
2017-03-29 13:00

Harley Geiger, director of public policy at Rapid7, talks about how policy goes hand in hand with technology when it comes to cybersecurity, the government's focus on IoT and critical...

Microsoft Offers Analysis of Zero-Day Being Exploited By Zirconium Group (Threatpost)
2017-03-28 21:12

Microsoft patched a zero-day vulnerability actively used in a campaign by a hacking group known as Zirconium.

Apple Fixes 223 Vulnerabilities Across macOS, iOS, Safari (Threatpost)
2017-03-28 18:38

Apple fixed hundreds of bugs, 223 to be exact, across macOS Sierra, iOS, Safari, watchOS, and tvOS on Monday.