Threatpost News Wrap, June 24, 2016

Mike Mimoso and Chris Brook recap the news of the week, including a Bitcoin phishing campaign, the Kaspersky Lab ransomware report, misconfigured email servers, and a decline in Angler exploit kit traffic. Continue reading Threatpost News Wrap, June 24, 2016

Russian snoops ‘stole Democrats’ dossier on Donald Trump’

Beyond the opposition data about Trump, intruders could read all email and chat traffic. Continue reading Russian snoops ‘stole Democrats’ dossier on Donald Trump’

How programmers can be tricked into running bad code

Are programming language package managers vulnerable to typosquatting attacks? And can these attacks result in software developers running potentially malicious code? The answer to both these questions is yes. This was demonstrated by University of Hamburg student Nikolai Philipp Tschacher who, for his bachelor thesis, performed research that involved creating packages with names very similar to those of 214 popular packages, and uploading them to PyPi, npmjs.com, and rubygems.org, package repositories of the programming languages … More Continue reading How programmers can be tricked into running bad code