FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayZDNet | security RSS

Akamai acquires Janrain to strengthen identity access controls, bot protection

Akamai says the deal will make the firm’s solutions more β€œidentity aware.”
  • January 8th 2019 at 11:26

Gatwick drone disruption deemed β€˜deliberate,’ new powers given to police

Opinion: Β£100 penalty notices might not be enough to deter those who find causing airport chaos amusing.
  • January 8th 2019 at 10:07

Coinbase suspends Ethereum Classic (ETC) trading after double-spend attacks

Attackers carried out 11 double-spend attacks and stole nearly 88,500 ETC (~$460,000).
  • January 7th 2019 at 21:56

New hardware-agnostic side-channel attack works against Windows and Linux

Side-channel attack almost certainly works against macOS, but researchers haven't tested it.
  • January 7th 2019 at 18:52

Real-time location data for over 11,000 Indian buses left exposed online

Researcher finds real-time GPS and bus route information from 27 Indian transportation agencies left exposed online via an ElasticSearch server.
  • January 7th 2019 at 15:12

NSA to release a free reverse engineering tool

GHIDRA is written in Java and works on Windows, Mac, and Linux.
  • January 5th 2019 at 22:12

Facial recognition doesn't work as intended on 42 of 110 tested smartphones

Devices from Asus, BlackBerry, Huawei, Lenovo, LG, Nokia, Samsung, Sony, and Xiaomi failed a basic "photo test."
  • January 5th 2019 at 13:49

City of LA sues Weather Channel app for sharing location data with advertisers

IBM-owned app maker accused of sharing user location data with affiliates of its parent company and other advertisers, but also hiding the practice in a 10,000-word-long privacy policy.
  • January 4th 2019 at 23:07

Most home routers don't take advantage of Linux's improved security features

Router firmware rarely includes ASLR, DEP, or RELRO protections, study finds.
  • January 4th 2019 at 21:58

Marriott says less than 383 million guests impacted by breach, not 500 million

Marriott issues new hack numbers, downgrading original 500 million estimate.
  • January 4th 2019 at 18:01

A deluge of privilege escalation vulnerabilities has been patched in CleanMyMac X

The root CleanMyMac X system was left exposed due to the security flaws.
  • January 4th 2019 at 11:47

Hackers dump data of hundreds of German politicians on Twitter

Data for some German artists and YouTube celebrities also included.
  • January 4th 2019 at 11:01

Adobe squashes critical bugs in Acrobat, Reader

The critical security flaws can lead to privilege escalation and code execution.
  • January 4th 2019 at 09:14

Security researcher cracks Google's Widevine DRM (L3 only)

Widevine hack is clever, but it won't spur any waves of Netflix piracy any time soon.
  • January 3rd 2019 at 21:37

New ReiKey app can detect macOS keyloggers

A free macOS keylogger detector for those who fear they're being spied on.
  • January 3rd 2019 at 16:16

Dublin’s Luas tram system threatened with private data leak

Hackers defaced the Luas website and demanded a ransom in Bitcoin.
  • January 3rd 2019 at 14:31

'Town of Salem' game suffers data breach exposing 7.6 million user details

Game maker has yet to alert users outside a short forum post.
  • January 3rd 2019 at 14:06

Revamped cryptominer strikes Asia through EternalBlue exploit

A new version of the NRSMiner cryptominer is making the rounds by exploiting PCs which are still not patched against the Windows vulnerability.
  • January 3rd 2019 at 12:38

Google Chrome flaw patched three years after initial report

Issue: Chrome for Android was revealing firmware build info that could have been used for exploit targeting.
  • January 3rd 2019 at 07:54

Data of 2.4 million Blur password manager users left exposed online

Company says data breach didn't expose any actual passwords stored inside users' Blur accounts.
  • January 2nd 2019 at 19:51

Hacker hijacks thousands of Chromecasts and smart TVs to play PewDiePie ad

Hacker is targeting smart TVs, Chromecasts, and Google Home devices. Sonos support also coming, hacker said.
  • January 2nd 2019 at 18:27

Ransomware suspected in cyberattack that crippled major US newspapers

Source inside Tribune Publishing says printing outage caused by Ryuk ransomware infection.
  • December 30th 2018 at 12:44

EU to fund bug bounty programs for 14 open source projects starting January 2019

Some of the approved projects include KeePass, 7-zip, VLC Media Player, Drupal, and FileZilla.
  • December 29th 2018 at 18:39

Hackers steal personal info of 1,000 North Korean defectors

Hackers stole names, addresses, and dates of birth of 997 North Korean defectors.
  • December 28th 2018 at 14:33

CenturyLink outage takes down several 911 emergency services across the US

Downtime caused by network issue affecting 15 of CenturyLink's data centers.
  • December 28th 2018 at 13:11

2018's most high-profile cryptocurrency catastrophes and cyberattacks

We explore the worst high-profile cyberattacks, data breaches, vulnerabilities, and cases of fraud to strike the cryptocurrency space over 2018.
  • December 27th 2018 at 22:00

Users report losing Bitcoin in clever hack of Electrum wallets

Hacker has stolen over $750,000 worth of Bitcoin over the past seven days.
  • December 27th 2018 at 14:53

Hacker steals 10 years worth of data from San Diego school district

Officials said the hacker made off with the personal information of over 500,000 student and staff.
  • December 25th 2018 at 12:08

Over 19,000 Orange modems are leaking WiFi credentials

Headaches for Orange customers in France and Spain for the holidays.
  • December 24th 2018 at 00:38

Chrome OS to block USB access while the screen is locked

Google takes steps to protect Chromebooks from some types of physical access attacks.
  • December 23rd 2018 at 13:34

Researcher publishes proof-of-concept code for creating Facebook worm

One group has already been abusing this issue to post spam on users' Facebook walls.
  • December 22nd 2018 at 01:21

India authorizes 10 agencies to intercept, monitor, and decrypt citizens' data

Order sparks outrage in India with citizens, privacy advocates, and political opponents accusing the government of trying to establish a "surveillance state."
  • December 21st 2018 at 23:43

Chinese websites have been under attack for a week via a new PHP framework bug

PoC for ThinkPHP security flaw sparks furious scans for vulnerable sites, most of which are based in China.
  • December 21st 2018 at 20:16

Five other countries formally accuse China of APT10 hacking spree

Australia, Canada, Japan, New Zealand, and the UK also point the finger at the Beijing government. Germany expected as well.
  • December 21st 2018 at 15:44

Caribou Coffee chain announces card breach impacting 239 stores

Almost 40 percent of the company's coffee stores impacted by breach of its POS system.
  • December 20th 2018 at 23:36

Law enforcement shut down DDoS booters ahead of annual Christmas DDoS attacks

Law enforcement launch preemptive strike to shut down some of the DDoS services that may be abused to attack gaming services over the Christmas holiday.
  • December 20th 2018 at 18:56

US charges two Chinese nationals for hacking cloud providers, NASA, the US Navy

The two Chinese nationals were members of the infamous APT10 cyber-espionage group, DOJ said.
  • December 20th 2018 at 16:38

Nokia denies leaking internal credentials in server snafu

Security researcher finds treasure trove of passwords and API keys on an internet-accessible etcd database.
  • December 20th 2018 at 14:00

Researcher publishes PoC for new Windows zero-day

This is the third Windows zero-day the researcher dumps online in the last five months.
  • December 20th 2018 at 13:53

Hacker spoofing bypasses 2FA security in Gmail, targets secure email services

Updated: Google, Yahoo, and ProtonMail accounts are being targeted in a new wave of phishing attacks.
  • December 20th 2018 at 09:50

Microsoft releases security update for new IE zero-day

Microsoft releases out-of-band security update for Internet Explorer zero-day discovered by Google threat analysts.
  • December 19th 2018 at 20:06

Chinese hackers tap into EU diplomatic communications network

The critical COREU network in the bloc has been reportedly compromised by a state-sponsored Chinese hacking group, leading to the theft of internal cables.
  • December 20th 2018 at 06:50

Shamoon data-wiping malware believed to be the work of Iranian hackers

Researchers say the Iranian hacker group APT33 is responsible for recent attacks in the Middle East and Europe.
  • December 20th 2018 at 05:16

New attack intercepts keystrokes via graphics libraries

Attack can guess text input from both hardware and on-screen keyboards alike.
  • December 19th 2018 at 17:22

This business email scam spreads Trojans through Google Cloud storage

Financial firms and services are being actively targeted in the UK and US.
  • December 19th 2018 at 14:00

Hackers have earned $1.7 million so far from trading data stolen from US gov payment portals

User payment data was stolen from local Click2Gov government systems in US cities.
  • December 19th 2018 at 13:23

Facebook defends giving tech giants access to extensive user data

In a story which unfortunately just keeps giving, Facebook has yet again awarded us with a privacy scandal worthy of note.
  • December 19th 2018 at 12:01

Watch researchers remotely brick a server by corrupting its BMC and UEFI firmware

Attack is only a proof-of-concept, but one that can be as damaging as ransomware or disk-wiping malware.
  • December 19th 2018 at 11:30

NASA discloses data breach

Hack took place in October 2018. Agency still doesn't know the number of impacted employees.
  • December 19th 2018 at 01:55

DOD doesn't keep track of duplicate or obsolete software

July 2018 memorandum says DOD has yet to report over 30 percent of its software inventory.
  • December 18th 2018 at 19:38

Researchers slam Hola VPN over absent encryption, user IP leaks

Updated: Trend Micro users will now receive a warning over the use of Hola as "unwanted" and risky software.
  • December 18th 2018 at 13:09

New machine learning algorithm breaks text CAPTCHAs easier than ever

Algorithm tested against the text CAPTCHA systems used on 33 popular websites.
  • December 18th 2018 at 05:49

Google announces crackdown on Play Store ratings and reviews

Company said it removes millions of Play Store reviews and ratings on a weekly basis.
  • December 18th 2018 at 03:10

WSJ website defaced by PewDiePie fan in ongoing YouTube subscribers battle

Hacker posts apology on WSJ site and then urges users to follow the YouTube star.
  • December 18th 2018 at 01:52

Twitter discloses suspected state-sponsored attack

Twitter says data leak occurred after an attack targeting a vulnerability in its support form system.
  • December 18th 2018 at 01:38

Insider awarded $10,000 bounty for reporting enterprise software piracy

It is no longer just the average consumer that might wind up in court for using pirated software.
  • December 17th 2018 at 07:38

PewDiePie printer hacker strikes again: subscribe and sort out your security

The attacker told users to sort out their printer security -- and subscribe to the vlogger "overlord," too.
  • December 17th 2018 at 06:18

US ballistic missile systems have very poor cyber-security

DOD report finds no antivirus, no data encryption, no multifactor authentication.
  • December 17th 2018 at 01:21

Thousands of Jenkins servers will let anonymous users become admins

Two vulnerabilities discovered and patched over the summer expose Jenkins servers to mass exploitation.
  • December 16th 2018 at 15:27

'Bomb threat' scammers are now threatening to throw acid on victims

Bomb threat extortion campaign yielded less than $1 for the spammers.
  • December 15th 2018 at 14:51
❌