Samsung Fingerprint Bug: Worse Than We Thought

Samsung phones with in-screen fingerprint readers will unlock using anybody’s finger. All you need do is add a screen protector.
The post Samsung Fingerprint Bug: Worse Than We Thought appeared first on Security Boulevard.
Continue reading Samsung Fingerprint Bug: Worse Than We Thought

Sudo Read This Warning About LPE Bug in Sudo

The Sudo command can give you root access when it shouldn’t. Sky falling?
The post Sudo Read This Warning About LPE Bug in Sudo appeared first on Security Boulevard.
Continue reading Sudo Read This Warning About LPE Bug in Sudo

iTunes for Windows Zero-Day Exploited for Ransomware

Apple iTunes included a really dumb bug, which ransomware gangs have been using to attack victims’ Windows PCs
The post iTunes for Windows Zero-Day Exploited for Ransomware appeared first on Security Boulevard.
Continue reading iTunes for Windows Zero-Day Exploited for Ransomware

Android Zero-Day Panic as Ancient Linux Flaw Forgotten

A bunch of fairly recent Android phones suffer from a nasty zero-day vulnerability. The flaw is currently being exploited, but by whom?
The post Android Zero-Day Panic as Ancient Linux Flaw Forgotten appeared first on Security Boulevard.
Continue reading Android Zero-Day Panic as Ancient Linux Flaw Forgotten

Encryption Ban: U.S., UK, Australia Try to Change How Math Works (Again)

Governments are yet again attacking end-to-end encryption. As if passing new laws somehow stops criminals breaking existing ones.
The post Encryption Ban: U.S., UK, Australia Try to Change How Math Works (Again) appeared first on Security Boulevard.
Continue reading Encryption Ban: U.S., UK, Australia Try to Change How Math Works (Again)

Voting Machines: Still Stupidly Insecure, say Defcon Hackers

At DEF CON 27, researchers staged their third annual hackathon of voting machines. The final report makes uncomfortable reading.
The post Voting Machines: Still Stupidly Insecure, say Defcon Hackers appeared first on Security Boulevard.
Continue reading Voting Machines: Still Stupidly Insecure, say Defcon Hackers

5M Users’ DoorDash Data Dupe’d by Dastardly Deeds

Another day, another data leak: Gig-economy unicorn DoorDash is the latest security-fail org to admit it’s lost your personal info.
The post 5M Users’ DoorDash Data Dupe’d by Dastardly Deeds appeared first on Security Boulevard.
Continue reading 5M Users’ DoorDash Data Dupe’d by Dastardly Deeds

No, RSA Hasn’t Been Cracked. But Crown Sterling Is Very Confused

A recent demo by a new cryptography firm raises eyebrows: Amazingly, they claim to have broken the 256-bit encryption that protects just about everything.
The post No, RSA Hasn’t Been Cracked. But Crown Sterling Is Very Confused appeared first on Secu… Continue reading No, RSA Hasn’t Been Cracked. But Crown Sterling Is Very Confused

Russian SORM/СОРМ ISP Spyware Revealed (by Nokia Grunt)

Russia’s infrastructure for spying on its citizens has been revealed this week. An errant Nokia employee put terabytes of secret data on the internet by mistake.
The post Russian SORM/СОРМ ISP Spyware Revealed (by Nokia Grunt) appeared first on Securi… Continue reading Russian SORM/СОРМ ISP Spyware Revealed (by Nokia Grunt)

Russia ‘Breached’ FBI Comms; Obama Waited 4 Years To Expel Spies

Back in 2016, President Obama expelled 35 Russians, and seized two Russian-owned properties. We were told it was retaliation for election interference—but was that the whole story?
The post Russia ‘Breached’ FBI Comms; Obama Waited 4 Years To Expel Sp… Continue reading Russia ‘Breached’ FBI Comms; Obama Waited 4 Years To Expel Spies