Security News

Google boots unwanted ad injector extensions from Chrome Web Store (Help Net Security)
2015-04-02 13:52

Google is done with tolerating sneaky ad injectors and, following the results of a study they recently conducted, they removed from the Chrome Web Store 192 deceptive Chrome extensions that affected 1...

Students Build Open Source Web-Based Threat Modeling Tool (Threatpost)
2015-04-01 19:00

Students at St. Mary's University in Canada released to open source a web-based threat modeling tool called Seasponge that they hope will provide an alternative to Microsoft's free tool.

Critical Vulnerabilities Affect JSON Web Token Libraries (Threatpost)
2015-04-01 18:58

Critical vulnerabilities exist in several JSON Web Token (JWT) libraries – namely the JavaScript and PHP versions – that could let an attacker bypass the verification step.