Threatpost

Syndikovat obsah Threatpost | The first stop for security news
The First Stop For Security News
Aktualizace: 49 min 33 sek zpět

Say Goodbye to SMBv1 in Windows Fall Creators Update

20 Červen, 2017 - 14:41
The SMBv1 file-sharing protocol abused by the NSA’s EternalBlue exploit to spread WannaCry ransomware is being disabled in the upcoming Windows Fall Creators Update, or Redstone 3.
Kategorie: Hacking & Security

FIN10 Extorting Canadian Mining Companies, Casinos

20 Červen, 2017 - 12:00
A string of data thefts targeting North American mining companies and casinos are extorting as much as $620,000 from victims.
Kategorie: Hacking & Security

Mexican Journalists, Lawyers Focus of Government Spyware

19 Červen, 2017 - 20:51
Dozens of Mexican journalists, lawyers, and even a child, were hit with Pegasus, commercially-produced spyware, as part of a campaign believed to be carried out by the nation’s government.
Kategorie: Hacking & Security

Republican Data Broker Exposes 198M Voter Records

19 Červen, 2017 - 19:59
Almost 200 million voter profiles culled by Republican data broker Deep Root Analytics were left exposed on an Amazon S3 server.
Kategorie: Hacking & Security

Stack Clash Vulnerability in Linux, BSD Systems Enables Root Access

19 Červen, 2017 - 19:05
Patches are available for a newly discovered Linux, BSD and Solaris vulnerability called Stack Clash that bypasses stack guard-page mitigations and enables root access.
Kategorie: Hacking & Security

IoT Malware Activity Already More Than Doubled 2016 Numbers

19 Červen, 2017 - 16:28
The number of new malware samples in the wild this year targeting connected internet-of-things (IoT) devices has already more than doubled last year’s total.
Kategorie: Hacking & Security

Wikileaks Alleges Years of CIA D-Link and Linksys Router Hacking Via ‘Cherry Blossom’ Program

16 Červen, 2017 - 21:36
The latest dump from Wikileaks alleges the CIA installed custom router firmware on unsuspecting targets in order to spy on internet activity.
Kategorie: Hacking & Security

Someone Failed to Contain WannaCry

16 Červen, 2017 - 19:45
As reports of the NSA officially connecting WannaCry to North Korea surface, experts are saying developers failed to contain the ransomware before it was ready for deployment.
Kategorie: Hacking & Security

Threatpost News Wrap, June 16, 2017

16 Červen, 2017 - 18:00
Mike Mimoso and Chris Brook discuss the news of the week, including Microsoft's XP patches, Hidden Cobra, a Nigerian BEC campaign, MacRansom, and more.
Kategorie: Hacking & Security

Erosion of ISP Privacy Rules Sparks New Anti-Snooping Efforts

16 Červen, 2017 - 14:30
After lawmakers struck down ISP privacy protections earlier this year, new efforts are underway to help consumers win back control of their personal information from their service providers.
Kategorie: Hacking & Security

Nigerian BEC Scams Hit 500 Companies in 50 Countries

15 Červen, 2017 - 20:28
A Kaspersky Lab report on Thursday said an especially potent Nigerian Business Email Compromise campaign has stolen sensitive data from over 500 companies in 50 countries.
Kategorie: Hacking & Security

Ransomware Attack Hobbles Prestigious University College London

15 Červen, 2017 - 20:09
University officials said users likely kicked off a ransomware attack that infected a dozen personal and shared drives by visiting a compromised website.
Kategorie: Hacking & Security

Metadata Analysis Draws its Own Conclusions on WannaCry Authors

15 Červen, 2017 - 16:34
Researchers at Telefonica's cybersecurity unit ElevenPaths conducted an analysis of WannaCry metadata.
Kategorie: Hacking & Security

Mozilla Fixes 32 Vulnerabilities in Firefox 54

14 Červen, 2017 - 21:31
Mozilla fixed 32 vulnerabilities, including a critical bug that could have resulted in a crash, with the release Tuesday of Firefox 54, the latest version of its flagship browser.
Kategorie: Hacking & Security

Decryption Utility Unlocks Files Encrypted by Jaff Ransomware

14 Červen, 2017 - 21:26
Researchers have neutralized the latest strain of the Jaff ransomware, releasing a decryption tool for unlocking files.
Kategorie: Hacking & Security

DHS, FBI Warn of North Korea ‘Hidden Cobra’ Strikes Against US Assets

14 Červen, 2017 - 19:17
DHS and the FBI warned that North Korean attackers are targeting U.S. businesses with malware- and botnet-related attacks that are part of concerted effort dubbed "Hidden Cobra."
Kategorie: Hacking & Security

Abuse of Apple Search Ads Feature Leading to Fraud

14 Červen, 2017 - 19:13
Apple has removed one of its top 10 grossing productivity apps after an independent developer’s story about fraudsters’ abuse of the App Store’s Search Ads functionality went viral.
Kategorie: Hacking & Security

Post-WannaCry, 5.5 Million Devices Still Expose SMB Port

14 Červen, 2017 - 15:05
In its annual National Exposure Index report, Rapid7 found 160 million computers, IoT devices and servers with open ports that should not be exposed to the public network.
Kategorie: Hacking & Security

Rare XP Patches Fix Three Remaining Leaked NSA Exploits

14 Červen, 2017 - 14:50
Microsoft released patches on Tuesday for unsupported versions of Windows, a decision prompted by three NSA exploits that remained unaddressed from April’s ShadowBrokers leak.
Kategorie: Hacking & Security

Microsoft Patches Two Critical Vulnerabilities Under Attack

13 Červen, 2017 - 22:23
Microsoft patched 95 vulnerabilities today, including two under attack.
Kategorie: Hacking & Security