Security News

Proposed US fix for Boeing 737 Max software woes does not address Ethiopian crash scenario, UK pilot union warns
2020-09-23 10:02

The British Airline Pilots' Association has told American aviation regulators that the Boeing 737 Max needs better fixes for its infamous MCAS software, warning that a plane crash which killed 149 people could happen again. Airlines, in contrast, are broadly happy with proposed changes to the Boeing 737 Max, even as trade unions bellow at the US Federal Aviation Administration that more needs to be done.

Judge Halts WeChat Download Ban in US-China Tech Battle
2020-09-21 10:10

A US judge on Sunday blocked the government's ban on WeChat downloads, hours before it was due to take effect in an ongoing technology and espionage battle between Washington and Beijing. The Trump administration had ordered a ban on downloads of the messaging platform WeChat as well as hugely popular video-sharing app TikTok, both owned by Chinese companies.

US cybersecurity agency issues super-rare emergency directive to patch Windows Server flaw ASAP
2020-09-21 05:56

Uncle Sam's Cybersecurity and Infrastructure Security Agency has taken the unusual step of issuing an emergency directive that gives US government agencies a four-day deadline to roll out a Windows Server patch. The directive, issued on September 18, demanded that executive agencies to take "Immediate and emergency action" to patch CVE-2020-1472, the CVSS-perfect-ten-rated flaw that Dutch security outfit Secura BV said allows attackers to instantly become domain admin by subverting Microsoft's Netlogon cryptography.

US Cybersecurity agency issues super-rare Emergency Directive to patch Windows Server flaw ASAP
2020-09-21 05:56

Uncle Sam's Cybersecurity and Infrastructure Security Agency has taken the unusual step of issuing an emergency directive that gives US government agencies a four-day deadline to roll out a Windows Server patch. The directive, issued on September 18, demanded that executive agencies to take "Immediate and emergency action" to patch CVE-2020-1472, the CVSS-perfect-ten-rated flaw that Dutch security outfit Secura BV said allows attackers to instantly become domain admin by subverting Microsoft's Netlogon cryptography.

Trump Backs Proposed Deal to Keep TikTok Operating in US
2020-09-21 01:53

President Donald Trump said Saturday he's given his "Blessing" to a proposed deal that would see the popular video-sharing app TikTok partner with Oracle and Walmart and form a U.S. company. "We are pleased that the proposal by TikTok, Oracle, and Walmart will resolve the security concerns of the U.S. administration and settle questions around TikTok's future in the U.S.," TikTok said in a statement.

TikTok and WeChat to be banned from US app stores starting Sunday
2020-09-18 16:25

Users in the US would be unable to download the two Chinese-owned apps from local app stores, according to the Department of Commerce. On Friday, the Department of Commerce announced that both apps will be blocked as downloads across US app stores.

Bad news for 'cool dads' trying to bond with their teens: China-owned TikTok and WeChat face US download ban by Sunday
2020-09-18 15:20

The US Department of Commerce has threatened to ban new downloads of Chinese-owned social media platforms Tiktok and Wechat from app stores this weekend. Starting from Sunday 20 September, the two Chinese-owned apps will be banned from being hosted on US app stores.

US Bans WeChat, TikTok Citing Privacy, National Security
2020-09-18 13:01

The U.S. will ban the downloads of the Chinese apps TikTok and WeChat on Sunday, with a total ban on the use of the latter, citing national security and data privacy concerns. Some security experts have raised concerns that ByteDance Ltd., the Chinese company that owns TikTok, would maintain access to information on the 100 million TikTok users in the United States, creating a security risk.

Feeling bad about your last security audit? Check out what just happened to the US Department of Interior
2020-09-17 23:47

The US Department of the Interior spectacularly failed its latest computer security assessment, mostly for a lack of Wi-Fi defenses. The infosec experts also noted other security shortfalls, such as a lack of network segmentation that would allow intruders to casually move between systems, incomplete inventory records of wireless networks, and a reliance on pre-shared keys that could be exploited by miscreants to eavesdrop on network traffic.

Good: US boasts it collared two in Chinese hacking bust. Bad: They aren't the actual hackers, rest are safe in China
2020-09-16 19:41

Two people have been arrested in Malaysia as part of America's crackdown on the Chinese government's hackers. The two men, both Malaysian nationals, are not accused of breaking into computer networks.