Simjacker: Silly Name, Scary Game

Researchers have found a nasty new flaw in 1B+ mobile-phone SIM cards.
The post Simjacker: Silly Name, Scary Game appeared first on Security Boulevard.
Continue reading Simjacker: Silly Name, Scary Game

Sysadmins Scramble to Secure 5M Exim Email Servers

A simple-to-exploit vulnerability in Exim needs patching on about 5M internet-facing servers. If sysadmins don’t patch—and patch quickly—they can expect their boxes to be quickly owned.
The post Sysadmins Scramble to Secure 5M Exim Email Servers appea… Continue reading Sysadmins Scramble to Secure 5M Exim Email Servers

Lock Him Up: Why Wyden Says Zuckerberg needs ‘Prison Term’

Sen. Ron Wyden (D-Ore.) blurts out his most outspoken criticism yet of Mark Zuckerberg. The Facebook CEO stands accused of lying to and hurting the American people. I’m not 100% sure those are specific crimes. But the good senator from the Beaver Stat… Continue reading Lock Him Up: Why Wyden Says Zuckerberg needs ‘Prison Term’

Retadup Botnet Killed by Cops – 1 Million PCs Saved

Last week, in a little-noticed announcement, French Police disclosed they’d disrupted a large malware command-and-control infrastructure, remotely disinfecting the PCs that connected to the C&C servers.
The post Retadup Botnet Killed by Cops – 1 M… Continue reading Retadup Botnet Killed by Cops – 1 Million PCs Saved

Apple is Bad at Software, says Google

Google’s Project Zero is back, with some worrying criticisms of Apple’s software-engineering chops. The conclusions will surprise you.
The post Apple is Bad at Software, says Google appeared first on Security Boulevard.
Continue reading Apple is Bad at Software, says Google

Apple Scrambles to Nuke Jailbreak, Fails Source Control 101

Apple releases iOS 12.4.1 emergency patch: The issue was its own fault, caused by a source-code regression.
The post Apple Scrambles to Nuke Jailbreak, Fails Source Control 101 appeared first on Security Boulevard.
Continue reading Apple Scrambles to Nuke Jailbreak, Fails Source Control 101

MoviePass Spills Card Info and Passwords From Unsecured Database

Movie subscription service MoviePass is in hot water again: It’s emerged that a customer database was unprotected.
The post MoviePass Spills Card Info and Passwords From Unsecured Database appeared first on Security Boulevard.
Continue reading MoviePass Spills Card Info and Passwords From Unsecured Database

Texas Does Ransomware Bigger: 23 Local Gov’ts Attacked

Another week, another 23 local governments crippled by ransomware, in what appears to be a coordinated attack.
The post Texas Does Ransomware Bigger: 23 Local Gov’ts Attacked appeared first on Security Boulevard.
Continue reading Texas Does Ransomware Bigger: 23 Local Gov’ts Attacked

Busted: Kaspersky AV Tracks Your Every Click

Kaspersky Lab’s endpoint security products track your web activity. And it allowed any other website to track you.
The post Busted: Kaspersky AV Tracks Your Every Click appeared first on Security Boulevard.
Continue reading Busted: Kaspersky AV Tracks Your Every Click

Screwed Drivers: Windows Third-Party Device Code is Huge Mess

Many Windows drivers permit malware to access anything, subverting controls that separate user space from the kernel.
The post Screwed Drivers: Windows Third-Party Device Code is Huge Mess appeared first on Security Boulevard.
Continue reading Screwed Drivers: Windows Third-Party Device Code is Huge Mess