Unsecured DNSSEC Easily Weaponized, Researchers Warn
Researchers this week described how a DNSSEC-based flood attack could easily knock a website offline. Continue reading Unsecured DNSSEC Easily Weaponized, Researchers Warn
Collaborate Disseminate
Researchers this week described how a DNSSEC-based flood attack could easily knock a website offline. Continue reading Unsecured DNSSEC Easily Weaponized, Researchers Warn
Attackers are pushing Pokémon GO-themed ransomware and SMS spam messages to entice players to visit malicious websites. Continue reading Pokémon GO Spam, Ransomware, On the Rise
Researchers at Kaspersky Lab identified an ongoing series of targeted attacks primarily designed to steal sensitive corporate account data from industrial and engineering organizations in the Middle East.
Continue reading Operation Ghoul Targeting Middle Eastern Industrial, Engineering Organizations
Attackers behind the banking Trojan Vawtrak fortified it with a domain generation algorithm (DGA) and SSL pinning capabilities.
Continue reading Vawtrak Banking Trojan Adds DGA, SSL Pinning
Twenty hotels belonging to HEI Hotels and Resorts have been implicated in a data breach that may have leaked payment data from tens of thousands point of sale purchases.
Continue reading Westin, Marriott, Sheraton Hotels Hit By Payment Card Malware
Gunter Ollmann, CSO at Vectra networks, talks to Mike Mimoso about ransomware as a prototype for malware going forward, as well as the long-term future of exploit kits and whether IoT is something that can be secured sooner rather than later.
Continue reading Gunter Ollmann on the Future of Ransomware, Exploit Kits, and IoT
Two academics discussed just how woefully inadequate some services are encryption-wise in a talk at Black Hat on Thursday.
Continue reading Lack of Encryption Leads to Large Scale Cookie Exposure
Joshua Drake of Zimperium Labs talks to Mike Mimoso about the last year post-Stagefright, the effectiveness of Google’s monthly patching cycle, and some of the security enhancements forthcoming in Android N. Continue reading Joshua Drake on Android Security Post-Stagefright
Researchers demonstrated how they can capture both Track 2 data and bypass chip and pin protections with a Raspberry Pi and infected pin pads at Black Hat. Continue reading Researchers Bypass Chip-and-Pin Protections at Black Hat
DARPA’s Cyber Grand Challenge is set to culminate Thursday with a competition at DEF CON it’s calling the CGC Final Event. Continue reading Bug Hunting Cyber Bots Set to Square Off at DEF CON