FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayZDNet | security RSS

You can buy Bitcoin ATM malware for $25,000 in the Dark Web

Malware targeting cryptocurrency-based ATMs commands high prices in the underground.
  • August 8th 2018 at 06:29

Pentagon bans military from using GPS apps and fitness trackers

Those on active duty are being told not to use devices and apps with GPS, but the policy may be difficult to impose.
  • August 8th 2018 at 07:05

New Wi-Fi attack cracks WPA2 passwords with ease

The common Wi-Fi security standard is no longer as secure as you think.
  • August 8th 2018 at 08:40

DeepLocker: When malware turns artificial intelligence into a weapon

In the future, your face could become the trigger for the execution of malware.
  • August 8th 2018 at 10:00

OpenEMR security flaws could have exposed millions of patient records

Over 20 severe bugs were found using only manual methods by a single cybersecurity group.
  • August 8th 2018 at 10:40

Comcast customer portal vulnerabilities exposed sensitive data

Two serious security flaws in Comcast systems may have left home addresses and social security numbers up for grabs.
  • August 9th 2018 at 08:43

BIND DNS software vulnerability which could lead to DoS attacks exposed

The bug impacts multiple versions of the open-source software.
  • August 9th 2018 at 08:54

Smart city systems are riddled with critical security vulnerabilities

Updated: Researchers have uncovered countless zero-day bugs which can be used to kill our critical city systems.
  • August 9th 2018 at 10:00

Challenge accepted: 15-year-old plays Doom on 'unhackable' Bitfi

Bitfi is becoming something of a joke as an "unhackable" device -- but there may be more to come.
  • August 9th 2018 at 10:29

Open, Cortana: Voice assistant used to bypass locked Windows 10 machine security

Exploit of Microsoft's Cortana did not require any external code.
  • August 9th 2018 at 15:17

Crowdfense launches platform to source new zero-day vulnerabilities for sale

Researchers will be given a platform to sell both zero-day security flaws and exploit chains.
  • August 10th 2018 at 06:44

AWS error exposed GoDaddy business secrets

Updated: It is believed information belonging to thousands of GoDaddy systems was leaked due to the failure.
  • August 10th 2018 at 09:33

PayPal, Square vulnerabilities impact mobile point-of-sale machines

Researchers have disclosed the existence of point-of-sale bugs which impact mobile payment services worldwide.
  • August 10th 2018 at 11:18

Hackers can steal data from the enterprise using only a fax number

Fax machines are still widely used by businesses and a communications protocol vulnerability is leaving them exposed to cyberattacks.
  • August 12th 2018 at 22:00

25 Android smartphone models contain severe vulnerabilities off the shelf

Researchers say that the swathe of bugs impacts major vendors.
  • August 13th 2018 at 09:28

Apple macOS vulnerability paves the way for system compromise with a single click

Tampering with two lines of code unveiled a serious bug which could lead to full system compromise.
  • August 13th 2018 at 10:28

The future of IoT? State-sponsored attacks, say security professionals

IT security professionals believe that nation states will begin to exploit smart, connected devices in the next 12 months.
  • August 13th 2018 at 14:15

Man-in-the-Disk attacks take advantage of Android storage systems

Updated: The novel attack technique relies on Android developers which use lazy storage protocols.
  • August 14th 2018 at 07:30

Hackers can infiltrate police body cameras to tamper with evidence

It is possible that crucial recordings could be modified or deleted due to vulnerabilities in body cam software.
  • August 14th 2018 at 09:23

​Beyond Spectre: Foreshadow, a new Intel security problem

Researchers have broken Intel's Software Guard Extensions, System Management Mode, and x86-based virtual machines.
  • August 14th 2018 at 19:37

Instagram hack is locking hundreds of users out of their accounts

Recovery options are being changed to .ru addresses by an unknown threat actor.
  • August 15th 2018 at 07:17

Microsoft Patch Tuesday: 60 vulnerabilities resolved including two active exploits

A total of 19 vulnerabilities are deemed critical, including two zero-day flaws being actively used in the wild.
  • August 15th 2018 at 09:35

Adobe fixes critical code execution flaws in latest patch update

Two vulnerabilities in Acrobat and Reader are considered critical.
  • August 15th 2018 at 12:50

Former Microsoft engineer sent behind bars for role in ransomware extortion scheme

The engineer was neck-deep in laundering proceeds from Reveton ransomware victims.
  • August 15th 2018 at 16:01

Firefox add-on snoops on 200,000 users' browsing activities

Updated: The add-on was quietly removed from a recommendations list on the official Firefox blog.
  • August 16th 2018 at 09:37

Google expands bug bounty program to include fraud protection bypass, free purchases

External attack vectors and techniques which bypass spam and fraud systems are now part of the program.
  • August 16th 2018 at 11:13

Severe vulnerability exposes WordPress websites to attack

Researchers say the PHP security flaw could leave countless WordPress websites open to exploit.
  • August 16th 2018 at 16:38

Open-source vulnerabilities which will not die: Who is to blame?

Major open-source vulnerabilities have wreaked havoc and caused heartache for IT admins worldwide.
  • August 17th 2018 at 07:01

'Hacky hack hack': Teen arrested for breaking into Apple's network

Updated: The Apple fan allegedly managed to download roughly 90GB in corporate documents as well as access customer accounts.
  • August 17th 2018 at 08:49

Mozilla wipes 23 Firefox add-ons off the map for tracking user activity

Updated: The purge was prompted by the exposure of the Web Security add-on's data-slurping habits.
  • August 17th 2018 at 09:43

1990s technology exposes 32,000 smart homes, businesses to exploit

When modern IoT gadgets rely on technology from the 1990s, it is unsurprising that security becomes a problem.
  • August 17th 2018 at 12:58

Necurs botnet launches fresh assault against banks

The spam botnet has been harnessed in order to compromise close to 3,000 financial institutions.
  • August 17th 2018 at 14:08

EU considers 60-minute deadline for social networks to remove terrorist content

The commission says that not enough progress has been made in stamping out extremist content.
  • August 20th 2018 at 06:12

Coinbase files patent for freeze logic cryptocurrency wallet security

The invention aims to add a fresh layer of security to wallets used directly for merchant payments.
  • August 20th 2018 at 07:07

Alleged head of BitConnect cryptocurrency scam arrested in Dubai

BitConnect has been accused of operating an exit scam after duping investors out of millions of rupees.
  • August 20th 2018 at 08:35

UK hacking prosecutions plummet with only 47 charges recorded last year

A lack of resources is believed to be partly to blame for incredibly low prosecution figures.
  • August 20th 2018 at 12:19

Philips reveals code execution vulnerabilities in cardiovascular devices

Only a low level of skill is required to exploit the bugs.
  • August 21st 2018 at 08:33

McAfee: Calling Bitfi unhackable may have been 'unwise' but it was great marketing

Updated: The "unhackable" wallet saga may have been little more than salesmanship designed to provoke controversy.
  • August 21st 2018 at 10:33

Guns are already on UK streets. 3D printing could make things far worse.

Opinion: With 3D gun blueprints now available for download, it's potentially too late to stop the future impact on the streets of London.
  • August 21st 2018 at 12:27

Adobe releases out of schedule remote code execution fix

The patch resolves two critical flaws which can both lead to remote code execution.
  • August 22nd 2018 at 08:50

Hacker holds the data of 20,000 Superdrug customers to ransom

Customers are being asked to change their account passwords immediately.
  • August 22nd 2018 at 09:30

Mexicans served with Dark Tequila in spyware spree

The campaign has been swiping bank credentials and corporate data for years through offline malware.
  • August 22nd 2018 at 10:33

Turla backdoors compromise European government foreign offices

The backdoors are told what to do and what to steal by email.
  • August 22nd 2018 at 15:12

AppleJeus: macOS users targeted in new Lazarus attacks

The campaign includes the distribution of Apple macOS malware for the first time.
  • August 23rd 2018 at 08:00

Facebook's Onavo VPN app removed from Apple App Store over privacy concerns

Reports suggest the app was removed based on a request from Apple.
  • August 23rd 2018 at 08:58

Medical records of high school students leaked in 'appalling' data breach

Medication, healthcare records, and conditions were all posted online for the world to see.
  • August 23rd 2018 at 09:49

500,000 Cheddar's Scratch Kitchen customers involved in possible credit card data theft

Customers of the restaurant chain need to keep an eye on their bank accounts as their information may be up for sale.
  • August 24th 2018 at 08:21

Hackers help themselves to data belonging to 2 million T-Mobile customers

The "international" threat actors managed to capture a set of customer data before being shut down.
  • August 24th 2018 at 09:17

Spyware firm SpyFone leaves customer data, recordings exposed online

Thousands of spyware users and those being monitored have had their information leaked to the public domain.
  • August 24th 2018 at 10:21

Iranian hackers target 70 universities worldwide to steal research

Researchers say the campaign is focused on stealing credentials and access to library systems.
  • August 24th 2018 at 13:00

How hackers managed to steal $13.5 million in Cosmos bank heist

An in-depth look into the incident reveals how the 112-year-old bank may have been swindled out of millions.
  • August 27th 2018 at 12:00

Microsoft Windows zero-day vulnerability disclosed through Twitter

Updated: There is no known workaround for the security flaw.
  • August 28th 2018 at 08:19

Fortnite Epic Games CEO rails against Google vulnerability disclosure

Circumventing the Google Play Store has not gone completely to plan.
  • August 28th 2018 at 08:36

Facebook patches critical server remote code execution vulnerability

The exploit took advantage of instability in the server's system.
  • August 28th 2018 at 09:41

WhatsApp warns free Google Drive backups are not end-to-end encrypted

The storage deal might be free for users, but that does not mean communications records are protected in the same way.
  • August 28th 2018 at 10:23

Meet the malware which hijacks your browser and redirects you to fake pages

The malware is currently being distributed through the RIG exploit kit.
  • August 29th 2018 at 09:25

Defense Distributed now sells 3D gun blueprints online, 'pay what you want'

Founder Cody Wilson insists that a recent court injunction is still being obeyed, despite the launch.
  • August 29th 2018 at 10:16

Air Canada reveals mobile data breach, passport numbers potentially exposed

Passport details belonging to thousands of customers may have been exposed in the incident.
  • August 30th 2018 at 08:32

Android 'API breaking' vulnerability leaks device data, allows user tracking

A vulnerability in the Android operating system can be used to track users without their knowledge.
  • August 30th 2018 at 10:13
❌