FreshRSS

πŸ”’
☐ β˜† βœ‡ Naked Security

Performance and security clash yet again in β€œCollide+Power” attack

By Paul Ducklin β€” August 2nd 2023 at 23:36
It's a real vulnerability, but the data leakage rate can be as low as... let's just say that an IMAX-quality copy of the new "Oppenheimer" movie could take you 4 billion years to exfiltrate.

☐ β˜† βœ‡ Naked Security

Apple silently pulls its latest zero-day update – what now?

By Paul Ducklin β€” July 11th 2023 at 15:21
Previously, we said "do it today", but now we're forced back on: "Do not delay; do it as soon as Apple and your device will let you."

☐ β˜† βœ‡ Naked Security

Apple delivers first-ever Rapid Security Response β€œcyberattack” patch – leaves some users confused

By Paul Ducklin β€” May 1st 2023 at 20:46
Just when we'd got used to three-numbered versions, such as "13.3.1", here comes an update suffix, bringing you "13.3.1 (a)"...

☐ β˜† βœ‡ Naked Security

FBI and FCC warn about β€œJuicejacking” – but just how useful is their advice?

By Paul Ducklin β€” April 17th 2023 at 18:17
USB charging stations - can you trust them? What are the real risks, and how can you keep your data safe on the road?

☐ β˜† βœ‡ Naked Security

Google Pixel phones had a serious data leakage bug – here’s what to do!

By Paul Ducklin β€” March 21st 2023 at 17:58
What if the "safe" images you shared after carefully cropping them... had some or all of the "unsafe" pixels left behind anyway?

☐ β˜† βœ‡ Naked Security

Dangerous Android phone 0-day bugs revealed – patch or work around them now!

By Paul Ducklin β€” March 17th 2023 at 19:56
Despite its usually inflexible 0-day disclosure policy, Google is keeping four mobile modem bugs semi-secret due to likely ease of exploitation.

☐ β˜† βœ‡ Naked Security

Inside a scammers’ lair: Ukraine busts 40 in fake bank call-centre raid

By Naked Security writer β€” January 3rd 2023 at 17:03
When someone calls you up to warn you that your bank account is under attack - it's true, because THAT VERY PERSON is the one attacking you!

☐ β˜† βœ‡ Naked Security

S3 Ep109: How one leaked email password could drain your business [Audio + Transcript]

By Paul Ducklin β€” November 17th 2022 at 17:52
Latest episode - listen now! Cybersecurity news plus loads of great advice...

☐ β˜† βœ‡ Naked Security

Black Friday and retail season – watch out for PayPal β€œmoney request” scams

By Paul Ducklin β€” November 17th 2022 at 12:45
Don't let a keen eye for bargains lead you into risky online behaviour...

☐ β˜† βœ‡ Naked Security

Dangerous SIM-swap lockscreen bypass – update Android now!

By Paul Ducklin β€” November 11th 2022 at 19:59
A bit like leaving the front door keys under the doormat...

☐ β˜† βœ‡ Naked Security

WhatsApp goes after Chinese password scammers via US court

By Paul Ducklin β€” October 7th 2022 at 18:14
If you can't beat 'em, sue 'em!

☐ β˜† βœ‡ Naked Security

LastPass source code breach – incident response report released

By Paul Ducklin β€” September 19th 2022 at 18:59
Wondering how you'd handle a data breach report if the worst happened to you? Here's a useful example.

☐ β˜† βœ‡ Naked Security

7 cybersecurity tips for your summer vacation!

By Paul Ducklin β€” July 15th 2022 at 18:23
Here you go - seven thoughtful cybersecurity tips to help you travel safely...

☐ β˜† βœ‡ Naked Security

SSNDOB Market domains seized, identity theft β€œbrokerage” shut down

By Paul Ducklin β€” June 8th 2022 at 14:53
The online identity "brokerage" SSNDOB Market didn't want people to be in any doubt what it was selling.

☐ β˜† βœ‡ Naked Security

Android monthly updates are out – critical bugs found in critical places!

By Paul Ducklin β€” May 4th 2022 at 15:54
Android May 2022 updates are out - with some critical fixes in some critical places. Learn more...

☐ β˜† βœ‡ Naked Security

S3 Ep77: Bugs, busts and old-school PDP-11 hacking [Podcast]

By Paul Ducklin β€” April 7th 2022 at 12:24
Latest episode - listen now! Cybersecurity news and advice in plain English.

☐ β˜† βœ‡ Naked Security

Google’s monthly Android updates patch numerous β€œget root” holes

By Paul Ducklin β€” April 5th 2022 at 14:44
Get the update now... if it's available for your phone. Here's how to check.

android-1200

☐ β˜† βœ‡ Naked Security

S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects [Podcast]

By Paul Ducklin β€” March 17th 2022 at 13:32
Latest episode - listen now!

☐ β˜† βœ‡ Naked Security

S3 Ep73: Ransomware with a difference, dirty Linux pipes, and much more [Podcast + Transcript]

By Paul Ducklin β€” March 10th 2022 at 19:37
Latest episode - listen now!

☐ β˜† βœ‡ Naked Security

β€œDirty Pipe” Linux kernel bug lets anyone write to any file

By Paul Ducklin β€” March 8th 2022 at 19:37
Even read-only files can be written to, leading to a dangerously general purpose elevation-of-privilege attack.

pipe-1200

☐ β˜† βœ‡ Naked Security

Ransomware with a difference: β€œDerestrict your software, or else!”

By Paul Ducklin β€” March 2nd 2022 at 16:33
"Change your code to improve cryptomining"... or we'll dump 1TB of stolen secrets.

☐ β˜† βœ‡ Naked Security

Coronavirus SMS scam offers home PCR testing devices – don’t fall for it!

By Paul Ducklin β€” January 28th 2022 at 23:58
Free home PCR devices would be technological marvels, and really useful, too. But there aren't any...

☐ β˜† βœ‡ Naked Security

SFW! The Top N CyberΒ­security Stories of 2021 (for small positive integer values of N)

By Paul Ducklin β€” December 24th 2021 at 17:44
Happy Holidays! Our Top N stories, all totally SFW!

☐ β˜† βœ‡ Naked Security

Log4Shell: The Movie… a short, safe visual tour for work and home

By Paul Ducklin β€” December 20th 2021 at 13:20
Be happy that your sysadmins are taking one (three, actually!) for the team right now... here's why!

☐ β˜† βœ‡ Naked Security

US government securities watchdog spoofed by investment scammers – don’t fall for it!

By Paul Ducklin β€” November 24th 2021 at 19:57
Those numbers that show up on your phone to tell you who's calling? Treat them as SUGGESTIONS, never as PROOF.

☐ β˜† βœ‡ Naked Security

Black Friday and Cyber Monday – here’s what you REALLY need to do!

By Paul Ducklin β€” November 22nd 2021 at 19:52
The world fills up with cybersecurity tips every year when Black Friday comes round. But what about the rest of the year?

☐ β˜† βœ‡ Naked Security

Europol announces β€œtargeting” of 12 suspects in ransomware attacks

By Naked Security writer β€” October 29th 2021 at 23:22
More anti-ransomware activity by law enforcement, this time in Switzerland and Ukraine.

☐ β˜† βœ‡ Naked Security

REvil ransomware gang allegedly forced offline by law enforcement counterattacks

By Paul Ducklin β€” October 22nd 2021 at 14:03
One down. Lots more to go. Here's what to do...

❌