Wednesday, 4 January 2017

Pseudo-Darkleech Remains Prominent Distributer of Ransomware

The pseudo-Darkleech campaign, one of the long-standing prominent distributers of ransomware, is expected to remain strong in 2017, after going through a series of important changes last year, Palo Alto Networks researchers warn.

read more



from SecurityWeek RSS Feed http://ift.tt/2i8HX8P
via https://ifttt.com/ IFTTT

Decrypters Released for OpenToYou, DeriaLock, and PHP Ransomware

Decryption tools are now available for three ransomware families that have been discovered during the past few weeks, allowing victims to recover files without paying a dime.

read more



from SecurityWeek RSS Feed http://ift.tt/2hQEspW
via https://ifttt.com/ IFTTT

Tor Browser Patches Start Being Uplifted into Firefox

The Tor (The Onion Router) team and Mozilla are working together to implement Tor browser patches directly into Firefox and tighten their collaboration.

read more



from SecurityWeek RSS Feed http://ift.tt/2i8AQgE
via https://ifttt.com/ IFTTT

Tuesday, 3 January 2017

Box.com Plugs Account Data Leakage Flaw

Confidential documents and data belonging to Box.com users were accessible via search engine queries. Box.com has "fixed" the issue.

from Threatpost | The first stop for security news http://ift.tt/2j65efu
via https://ifttt.com/ IFTTT

Vermont Grid ‘Hack’ Latest Tumble Down Attribution Rabbit Hole

The rush to connect a security incident at a Vermont utility to Russian government hackers is more evidence of the challenges around attribution.

from Threatpost | The first stop for security news http://ift.tt/2j5RAsV
via https://ifttt.com/ IFTTT

Pentagon Subcontractor Inadvertently Leaks 11 Gigs of Sensitive Data

A security researcher claims that data belonging to doctors deployed in the United States Special Operations Command was left unsecured online.

from Threatpost | The first stop for security news http://ift.tt/2j1yiRu
via https://ifttt.com/ IFTTT

Experts Doubt Russia Used Malware to Track Ukrainian Troops

Experts have cast doubt on a recent report claiming that hackers linked to a Russian military intelligence agency used a piece of Android malware to track Ukrainian artillery units.

read more



from SecurityWeek RSS Feed http://ift.tt/2hOVC71
via https://ifttt.com/ IFTTT

Government Subcontractor Leaks Military Healthcare Worker Data

A security researcher claims to have discovered a large volume of data inadvertently leaked online by a subcontractor that provides healthcare services and professionals to the United States government.

read more



from SecurityWeek RSS Feed http://ift.tt/2iDVg4C
via https://ifttt.com/ IFTTT

МВД Германии: страна должна отвечать на кибератаки

Немецкие службы безопасности должны иметь возможность активно отвечать на кибератаки. Такое мнение высказал глава МВД ФРГ Томас де Мезьер в*авторской статье*для газеты Frankfurter Allgemeine Zeitung.

http://ift.tt/2hKyJP8


from VirusInfo - Другие новости http://ift.tt/2i5yHSU
via https://ifttt.com/ IFTTT

Critical Updates — RCE Flaws Found in SwiftMailer, PhpMailer and ZendMail

A security researcher recently reported a critical vulnerability in one of the most popular open source PHP libraries used to send emails that allowed a remote attacker to execute arbitrary code in the context of the web server and compromise a web application. Disclosed by Polish security researcher Dawid Golunski of Legal Hackers, the issue (CVE-2016-10033) in PHPMailer used by more than 9


from The Hacker News http://ift.tt/2iZIWbt
via https://ifttt.com/ IFTTT

Libpng Patches Flaw Introduced in 1995

The updates released for the “libpng” library in late December patch an old vulnerability introduced by developers in 1995.

Libpng is the official Portable Network Graphics (PNG) reference library. The platform-independent library has been around for more than two decades and it has been used by various projects, including many Linux distributions.

read more



from SecurityWeek RSS Feed http://ift.tt/2j3w48e
via https://ifttt.com/ IFTTT