Security News

Attacks On MongoDB Rise As Hijackings Continue (Threatpost)
2017-01-05 19:53

Open MongoDB databases are being targeted by criminals who are deleting the contents and asking for a ransom.

U.S. Intelligence Report Due Next Week on Election Hack (Threatpost)
2017-01-05 18:14

The U.S. intelligence committee is expected to publish an unclassified report on Russia's involvement with influencing the presidential election.

FireCrypt Ransomware Contains DDoS Functionality (Threatpost)
2017-01-05 17:50

In addition to encrypting files, a new strain of ransomware, FireCrypt, also attempts to carry out a weak DDoS attack.

Claudio Guarnieri on Security Without Borders (Threatpost)
2017-01-05 14:00

Security researcher and activist Claudio Guarnieri talks to Mike Mimoso about a new project announced last week at the Chaos Communication Congress called Security Without Borders.

FTC Issues Public Challenge to Improve IoT Patching (Threatpost)
2017-01-04 20:44

The FTC announced the IoT Home Inspector Challenge, a contest with the goal of coming up with a patching solution fit for consumer-grade connected devices used in the home.

What Hack? Burlington Electric Speaks Out (Threatpost)
2017-01-04 19:01

Burlington Electric Department general manager Neale Lunderville speaks out about last week's incident and response to reports the electric grid had been hacked.

Google Patches 29 Critical Android Vulnerabilities Including Holes in Mediaserver, Qualcomm (Threatpost)
2017-01-04 18:33

Google patched a critical hole in its problematic Android Mediaserver component that could have allowed an attacker to use email, web browsing, and MMS processing of media files to remotely execute code.

Costin Raiu on the Importance of Using YARA (Threatpost)
2017-01-04 14:30

Kaspersky Lab's Costin Raiu talks about the benefits of taking the YARA training class available at SAS 2017.

Box.com Plugs Account Data Leakage Flaw (Threatpost)
2017-01-03 21:28

Confidential documents and data belonging to Box.com users were accessible via search engine queries. Box.com has "fixed" the issue.

Vermont Grid ‘Hack’ Latest Tumble Down Attribution Rabbit Hole (Threatpost)
2017-01-03 20:56

The rush to connect a security incident at a Vermont utility to Russian government hackers is more evidence of the challenges around attribution.