Mozilla still working on Firefox’s site isolation security revamp

Mozilla’s Firefox browser doesn’t have site isolation security yet, but plans to enable it are in the works. Continue reading Mozilla still working on Firefox’s site isolation security revamp

Spectre chip weakness can be used to steal data remotely

Researchers have found a new variant of the Spectre CPU flaw that shows how attackers could steal data remotely without having to run malicious code on a local system. Continue reading Spectre chip weakness can be used to steal data remotely

Russian hackers are ready to disrupt US energy utilities, says DHS

Jonathan Homer says Russian hackers have snared “hundreds of victims” in the utilities and equipment sectors and “got to the point where they could have thrown switches” in a way that could have caused power blackouts. Continue reading Russian hackers are ready to disrupt US energy utilities, says DHS

Google hasn’t suffered an employee phishing compromise in over a year

Phishing attackers have failed to compromise a single employee account at Google since the company mandated authentication using U2F hardware tokens in early 2017. That’s the remarkable claim made to security writer Brian Krebs. Continue reading Google hasn’t suffered an employee phishing compromise in over a year

Venmo users: time to hide your drug deals and excessive pizza consumption

To its fans, Venmo is a hassle-free P2P app that lets anyone living in the US send money to friends, split a restaurant bill, pay for a ride on Uber, or buy a hotel room. To the security conscious, it’s a privacy nightmare. Continue reading Venmo users: time to hide your drug deals and excessive pizza consumption