Wassenaar Renegotiation Will Be in Trump Administration’s Hands

Now that a proposed revision to the Wassenaar Arrangement has been rejected, it will be up to the Trump administration to decide whether to attempt to renegotiate again. Continue reading Wassenaar Renegotiation Will Be in Trump Administration’s Hands

In-Flight Entertainment System Flaws Put Passenger Data at Risk

IOActive researchers disclosed vulnerabilities in Panasonic Avionics In-Flight Entertainment systems that could be abused to manipulate flight data shown to passengers, or steal their personal information. Continue reading In-Flight Entertainment System Flaws Put Passenger Data at Risk

ShadowBrokers Dump Came from Internal Code Repository, Insider

Researchers at Flashpoint said their analysis of the latest ShadowBrokers dump of NSA tools leads them to believe an insider with access to a code repository stole the data. Continue reading ShadowBrokers Dump Came from Internal Code Repository, Insider

Nagios Core Patches Root, RCE Vulnerabilities

Nagios Core has been updated to take care of two critical vulnerabilities that can be pinned together to attack servers hosting the open source IT infrastructure monitoring software. Continue reading Nagios Core Patches Root, RCE Vulnerabilities

Bug Hunters Prefer Communication Over Compensation

Results of a NTIA survey published today show that researchers prefer open communication with vendors over financial compensation when it comes to vulnerability disclosure. Continue reading Bug Hunters Prefer Communication Over Compensation

Yahoo Discloses Data From 1 Billion Accounts Stolen in 2013

Yahoo disclosed today that attackers in 2013 stole data associated with more than 1 billion accounts. CISO Bob Lord said this incident is “distinct” from a 2014 attack in which 500 million accounts were breached. Continue reading Yahoo Discloses Data From 1 Billion Accounts Stolen in 2013