Security News

Adobe Fixes 81 Vulnerabilities in Acrobat, Reader, Flash (Threatpost)
2016-10-11 18:02

Adobe patched 81 vulnerabilities, including a handful of critical bugs, in Acrobat, Reader, and Flash on Tuesday.

IoT Botnet Uses HTTP Traffic to DDoS Targets (Threatpost)
2016-10-11 15:52

The IoT botnet behind the some of the largest publicly recorded DDoS attacks is flooding its targets with HTTP traffic in Layer 7 attacks.

StrongPity APT Covets Secrets of Crypto Users (Threatpost)
2016-10-10 13:54

Kaspersky Lab researchers have uncovered the StrongPity APT, a group that uses watering hole attacks to infect machines of users seeking encryption technologies such as WinRAR and TrueCrypt.

When DVRs Attack: A Post IoT Attack Analysis (Threatpost)
2016-10-10 13:00

Researchers sort out what went wrong when an estimated 500,000 DVRs and IP-based cameras were used in a series of massive DDoS attacks in September.

Threatpost News Wrap, October 7, 2016 (Threatpost)
2016-10-07 15:30

Mike Mimoso and Chris Brook discuss this week's Virus Bulletin conference in Denver and CNBC's Cambridge Cyber Summit at MIT, the NSA contractor arrest, APT false flags, and more.

The Ethics and Morality Behind APT Reports (Threatpost)
2016-10-07 15:00

Investigating state-sponsored espionage and counterterrorism is one thing. Writing public reports about these activities is another.

Cisco Warns of Critical Flaws in Nexus Switches (Threatpost)
2016-10-07 14:55

Networking giant Cisco issued five security bulletins this week with two critical bugs allowing remote execute code.

Free Tool Protects Mac Users from Webcam Surveillance (Threatpost)
2016-10-07 11:00

Mac security researcher Patrick Wardle released a tool called OverSight that monitors when malware may be recording a webcam or audio session on a macOS machine.

Web-Based Keylogger Used to Steal Credit Card Data from Popular Sites (Threatpost)
2016-10-06 20:26

Researchers estimate thousands of ecommerce sites are under attack by a single threat actor that has infected servers with a web-based keylogger.

EFF: NSA’s Support of Encryption ‘Disingenuous’ (Threatpost)
2016-10-06 17:49

Cindy Cohn, the EFF's Executive Director, called the NSA's support of strong encryption disingenuous during a cybersecurity conference panel Wednesday.