Security News

Apple To Block WoSign Intermediate Certificates (Threatpost)
2016-10-03 16:06

Apple said over the weekend it would soon distrust certificates issued by WoSign's Free SSL Certificate G2 intermediate CA on macOS.

Source Code Released for Mirai DDoS Malware (Threatpost)
2016-10-03 14:58

An attacker known as Anna-senpai released source code for the Mirai malware, which was used in a 620 Gbps DDoS attack against Krebs on Security.

Mozilla Reduces Threat of Export-Grade Crypto to Firefox (Threatpost)
2016-10-03 12:45

The Firefox browser will now deny TLS connections to servers using weak Diffie-Hellman keys.

Researchers Break MarsJoke Ransomware Encryption (Threatpost)
2016-10-03 09:00

Victims infected with the MarsJoke ransomware can now decrypt their files; researchers cracked the encryption in the CTB-Locker lookalike last week.

Academics Put Another Dent in Online Anonymity (Threatpost)
2016-09-30 19:45

Academics from Stanford and Princeton release an online tool called Footprints that correlates browsing history with Twitter feeds to reveal a users identity.

Report a Grim Reminder of State of Critical Infrastructure Security (Threatpost)
2016-09-30 16:23

Government ICS report reveals access control a major issue for sector along with nagging issues around poor code quality and cryptography.

Threatpost News Wrap, September 30, 2016 (Threatpost)
2016-09-30 14:37

The latest on the Yahoo breach, Germany's problem with WhatsApp-Facebook, Facebook's osquery tool for Windows, and Zerodium's $1.5M iOS bounty are all discussed.

Backdoored D-Link Router Should be Trashed, Researcher Says (Threatpost)
2016-09-29 20:04

A researcher who found a slew of vulnerabilities in a popular router says it’s so hopelessly broken that consumers who own them should throw them away.

Zerodium Triples its iOS 10 Bounty to $1.5 Million (Threatpost)
2016-09-29 19:08

Zerodium tripled the bounty it offers for an Apple iOS 10 remote jailbreak, boosting the reward to $1.5 million.

Yahoo Challenged on Claims Breach Was State-Sponsored Attack (Threatpost)
2016-09-29 18:15

Experts challenge Yahoo's assertion that state-sponsored hackers were behind a 2014 breach that resulted in 500 million lost records.