French Police Remotely Removed RETADUP Malware from 850,000 Infected PCs

The French law enforcement agency, National Gendarmerie, today announced the successful takedown of one of the largest wide-spread RETADUP botnet malware and how it remotely disinfected more than 850,000 computers worldwide with the help of researchers… Continue reading French Police Remotely Removed RETADUP Malware from 850,000 Infected PCs

Apple Releases iOS 12.4.1 Emergency Update to Patch ‘Jailbreak’ Flaw

Apple just patched an unpatched flaw that it patched previously but accidentally unpatched recently — did I confuse you?

Let’s try it again…

Apple today finally released iOS 12.4.1 to fix a critical jailbreak vulnerability, like it or not, that was… Continue reading Apple Releases iOS 12.4.1 Emergency Update to Patch ‘Jailbreak’ Flaw

Google, Mozilla, Apple Block Kazakhstan’s Root CA Certificate to Prevent Spying

In a move to protect its users based in Kazakhstan from government surveillance, Google, Apple and Mozilla finally today came forward and blocked Kazakhstan’s government-issued root CA certificate within their respective web browsing software.

Startin… Continue reading Google, Mozilla, Apple Block Kazakhstan’s Root CA Certificate to Prevent Spying

Hackers Planted Backdoor in Webmin, Popular Utility for Linux/Unix Servers

Following the public disclosure of a critical zero-day vulnerability in Webmin last week, the project’s maintainers today revealed that the flaw was not actually the result of a coding mistake made by the programmers.

Instead, it was secretly planted … Continue reading Hackers Planted Backdoor in Webmin, Popular Utility for Linux/Unix Servers

New Bluetooth Vulnerability Lets Attackers Spy On Encrypted Connections

Over a billion Bluetooth-enabled devices, including smartphones, laptops, smart IoT devices, and industrial devices, have been found vulnerable to a high severity vulnerability that could allow attackers to spy on data transmitted between the two devic… Continue reading New Bluetooth Vulnerability Lets Attackers Spy On Encrypted Connections

8 New HTTP/2 Implementation Flaws Expose Websites to DoS Attacks

Various implementations of HTTP/2, the latest version of the HTTP network protocol, have been found vulnerable to multiple security vulnerabilities affecting the most popular web server software, including Apache, Microsoft’s IIS, and NGINX.

Launched … Continue reading 8 New HTTP/2 Implementation Flaws Expose Websites to DoS Attacks