Monday review – the hot 21 stories of the week

From the ‘Martinelli’ WhatsApp hoax to Facebook wanting to give your name to the weirdo next to you, and everything in between. Catch up with this and everything we wrote in the last seven days – it’s weekly roundup time! Continue reading Monday review – the hot 21 stories of the week

Monday review – the hot 22 stories of the week

Passcodes are protected by the Fifth Amendment, browsers are being made to cough up browsing history, and an exploit in Microsoft Word. Catch up with this and everything we wrote in the last seven days – it’s weekly roundup time! Continue reading Monday review – the hot 22 stories of the week

When Good Software Goes Bad: Malware In Open Source

Open Source software is always trustworthy, right? [Bertus] broke a story about a malicious Python package called “Colourama”. When used, it secretly installs a VBscript that watches the system clipboard for a Bitcoin address, and replaces that address with a hardcoded one. Essentially this plugin attempts to redirects Bitcoin payments to whoever wrote the “colourama” library.

Why would anyone install this thing? There is a legitimate package named “Colorama” that takes ANSI color commands, and translates them to the Windows terminal. It’s a fairly popular library, but more importantly, the name contains a word with multiple spellings. If you ask …read more

Continue reading When Good Software Goes Bad: Malware In Open Source

Monday review – the hot 22 stories of the week

From a popular WordPress plugin harbouring a zero-day to punishments for phone-slowing Apple and Samsung, and all the stories in between. Catch up with everything we’ve written in the last seven days – it’s weekly roundup time. Continue reading Monday review – the hot 22 stories of the week