web analytics

Cyber-Espionage Malware Is So Advanced It Has Its Own API

5th May 2017  By Catalin Cimpanu                                                   Russian cyberspies have developed a new breed of backdoor trojan that features several novel techniques, including an API that allows attackers to reverse the C&C communications flow when needed.   This new threat came to light… Continue reading Cyber-Espionage Malware Is So Advanced It Has Its Own API

Microsoft is testing a malware-proof Edge browser

5th May 2017  By Andrew London   Soon you’ll never have to fear malware again   Microsoft is in the testing stage of a new feature in its Edge browser for Windows 10 that is malware-proof as it partitions the browser window from the rest of the computer. This will be a welcome addition for… Continue reading Microsoft is testing a malware-proof Edge browser

The dark side of Google Docs

    This past Wednesday, there was a rather large-scale email spam campaign involving a fake Google Docs app that affected around one million users. This attack lured users into allowing a malicious application named “Google Docs” access to their Gmail account and contacts list, causing the spam email to be sent to everyone on… Continue reading The dark side of Google Docs

Brainwave-Reading Headsets Could Help Hackers Guess Your Passwords

Here we go again, the release to the general public of a product before the security has been strengthened.   Scientists are urging programmers to strengthen security in brain-computer interfaces while there’s still time.   By Sophie Weiner May 5, 2017                                  Epoc+ is an $800 headset made by Emotiv that uses your… Continue reading Brainwave-Reading Headsets Could Help Hackers Guess Your Passwords

TLS client authentication ensures secure IoT connection

The TLS client authentication protocol has been a part of the security standard for years, but is just now coming into its own in certifying secure IoT connections.   5th May 2017  by Michael Heller   Client-side TLS certificates may not be new, but experts said these certs could find new life to ensure secure… Continue reading TLS client authentication ensures secure IoT connection

Malware framework using legitimate utilities lobbed at government agencies

Zeljka Zorz – May 5, 2017   Bitdefender researchers have unearthed a previously unknown malware framework that, unlike those used by most APTs, contains many legitimate utilities.   Dubbed Netrepser, the framework is used to find and exfiltrate all kinds of information from compromised Windows systems. The researchers believe that it is wielded by a… Continue reading Malware framework using legitimate utilities lobbed at government agencies

OWASP Top Ten – Boring security that pays off

May 4, 2017 by William Tsing                                               There’s a lot of very unique, creative, and devastating cyber threats out there. The first inclination of a defender is to collect news of the new and terrifying and concentrate on network security defenses accordingly. This is… Continue reading OWASP Top Ten – Boring security that pays off

Cisco Patches Critical Flaw in Small Business Router

By Eduard Kovacs on May 04, 2017   Cisco has released a firmware update for one of its small business routers to address a critical vulnerability that can be exploited for denial-of-service (DoS) attacks and arbitrary code execution.   The vulnerability, discovered by researchers from GeekPwn, a China-based IoT-focused hacking competition, affects CVR100W Wireless-N VPN… Continue reading Cisco Patches Critical Flaw in Small Business Router

Windows 10 version 1507 will no longer receive security updates

After May 9, 2017, Windows 10 devices running version 1507 will no longer receive security and quality updates. Microsoft recommends updating devices to the latest version of Windows 10 by visiting the Software Download site and selecting Update now to manually update your device. For additional info, check out the Windows lifecycle fact sheet. Full Article  … Continue reading Windows 10 version 1507 will no longer receive security updates

Blackmoon Banking Trojan Using New Infection Technique

By Tom Spring May 4, 2017                                                     New clues have surfaced on how the Blackmoon banking Trojan is infecting its victims using a new framework to deliver the malware.   “We noticed recent campaigns (two weeks ago) where Blackmoon had shifted its infection… Continue reading Blackmoon Banking Trojan Using New Infection Technique