Misuse of Language: ‘Cyber’; When War is Not a War, and a Weapon is Not a Weapon

In this Threatpost op-ed, Dave Dittrich and Katherine Carpenter discuss the imprecision in language surrounding “cyber war” and “cyber weapons,” and explain how this may contribute to bad law and policy. Continue reading Misuse of Language: ‘Cyber’; When War is Not a War, and a Weapon is Not a Weapon

iOS 9.3.4 Patches Critical Code Execution Flaw

Apple patched a critical iOS memory corruption vulnerability privately disclosed by jailbreak specialists Pangu Team. Continue reading iOS 9.3.4 Patches Critical Code Execution Flaw

Miller, Valasek Deliver Final Car Hacking Talk

Charlie Miller and Chris Valasek explained at Black Hat today how they were able to control steering and the parking brake on a Jeep Cherokee at speed. The two said the talk would be their last on car hacking. Continue reading Miller, Valasek Deliver Final Car Hacking Talk

Researchers Go Inside a Business Email Compromise Scam

Dell SecureWorks today published a report at Black Hat USA 2016 on a Nigerian Business Email Compromise scam called “wire-wire”, or “waya-waya.” Continue reading Researchers Go Inside a Business Email Compromise Scam

Oracle EBusiness Suite ‘Massive’ Attack Surface Assessed

Oracle bug hunter David Litchfield scoured Oracle EBusiness Suite looking for vulnerabilities and shared what he found during a Black Hat talk. Continue reading Oracle EBusiness Suite ‘Massive’ Attack Surface Assessed

Export-Grade Crypto Patching Improves

A Black Hat talk this week is expected to take a deep dive into the ramifications of lingering support for export-grade cryptography and how patching levels are proceeding. Continue reading Export-Grade Crypto Patching Improves

Kaspersky Lab Launches Bug Bounty Program

Kaspersky Lab today at Black Hat USA 2016 announced the launch of a public bug bounty, one of the few offered by a software vendor in the computer security industry. Continue reading Kaspersky Lab Launches Bug Bounty Program

Google Patches Dozens of Critical Qualcomm Components Flaws

Google today in the monthly Android Security Bulletin patched more than three-dozen critical vulnerabilities in Qualcomm components. Continue reading Google Patches Dozens of Critical Qualcomm Components Flaws