Security News

Google Handles Record Number of Government Requests for Data (Threatpost)
2016-10-13 17:43

Google updated its Transparency Report, reporting a record number of government requests for data, and that it received at least one National Security Letter during the second half of 2015.

Facebook Bug Bounty Program Pays Out $5 Million in Five Years (Threatpost)
2016-10-13 16:56

Facebook announced this week that its paid out more than $5 million to 900 researchers in the five years since it implemented its bug bounty program.

Cisco Patches Critical Bug In Video Conferencing Server Hardware (Threatpost)
2016-10-13 15:56

A vulnerability in Cisco’s meeting server software allows a remote attacker to masquerade as legit user.

Old SSH Vulnerability at Center of Credential-Stuffing Attacks (Threatpost)
2016-10-13 15:27

Akamai warns that attackers are compromising IOT devices and using them as proxies to test stolen credentials against web-based applications.

Android Fragmentation Sinks Patching Gains (Threatpost)
2016-10-13 14:38

One year after kicking off monthly Android security updates and Google still is way behind Apple when it comes to patching.

Vera Bradley Retail Chain Breached (Threatpost)
2016-10-12 21:25

Women’s accessories giant Vera Bradley is reporting a breach of its retail store point-of-sale system.

Disappearing Messages Added to Signal App (Threatpost)
2016-10-12 17:05

Open Whisper Systems announced that it has added the disappearing messages feature to the Signal encrypted messaging app.

Gary McGraw on BSIMM7 and Secure Software Development (Threatpost)
2016-10-12 15:45

Mike Mimoso talks to Cigital CTO and software security pioneer Gary McGraw about the latest results pulled from the Building Security In Maturity Model (BSIMM).

Nuclear Power Plant Disrupted by Cyber Attack (Threatpost)
2016-10-11 21:08

The head of an international nuclear energy consortium said this week that a cyber attack caused a ‘disruption’ at a nuclear power plant in the last several years.

Microsoft Patches Five Zero Days Under Attack (Threatpost)
2016-10-11 19:18

Microsoft released 10 security bulletins on Patch Tuesday that included patches for five zero day vulnerabilities under attack that had not been publicly disclosed until today.