Security News

Regulation May Be Best Answer to IoT Insecurity (Threatpost)
2016-11-16 18:10

Technologists, including Bruce Schneier, testifying before a House committee today on IoT security said that regulation could be the only answer to solving existing vulnerabilities.

PoisonTap Steals Cookies, Drops Backdoors on Password-Protected Computers (Threatpost)
2016-11-16 17:55

Samy Kamkar's latest hacking device, PoisonTap, can steal HTTP cookies from millions of websites and install persistent web-based backdoors.

Carbanak Attacks Shift to Hospitality Sector (Threatpost)
2016-11-15 20:57

The Carbanak cybercrime gang has shifted strategy and targets the hospitality and restaurant industries with new techniques and malware.

Cryptsetup Vulnerability Grants Root Shell Access on Some Linux Systems (Threatpost)
2016-11-15 20:28

A vulnerability in cryptsetup, a utility used to set up encrypted filesystems on Linux distributions, could allow an attacker to retrieve a root rescue shell on some systems.

Lobbyists Press Trump to Support Strong Encryption, Surveillance Reform (Threatpost)
2016-11-15 17:11

A lobbying organization sent a letter to President-Elect Donald Trump, asking him to support the expansion of strong encryption and reform government surveillance activities.

VMware Patches VM Escape Vulnerability (Threatpost)
2016-11-15 15:54

VMware patched a vulnerability in Workstation and Fusion that could allow an attacker to run code on a host machine.

Microsoft Bolsters Ransomware Protection in Windows 10 Anniversary Update (Threatpost)
2016-11-14 22:43

Microsoft beefs-up ransomware defenses in Windows 10 Anniversary Update starting with Edge browser and the introduction of an Advanced Threat Protection (ATP) tool for the enterprise.

CrySis Ransomware Master Decryption Keys Released (Threatpost)
2016-11-14 19:20

The master decryption keys unlocking files encrypted by the CrySis ransomware have been released. Kaspersky Lab has already updated its Rakhni decryptor to help victims restore their data.

Adult FriendFinder Hack Exposes 400 Million Accounts (Threatpost)
2016-11-14 18:17

The FriendFinder Network has reportedly been hacked exposing 400 million user accounts of Adult FriendFinder, Penthouse.com and Stripshow.com.

Army Bug Bounty Building New Relationships with Hackers (Threatpost)
2016-11-14 17:03

The government announced its second bug bounty program called Hack the Army, which will concentrate on finding bugs in recruiting websites and databases.