Friday, 30 September 2016

Building Automation Products Vulnerable to Remote Attacks

Building automation products from American Auto-Matrix are affected by a couple of high-severity vulnerabilities that allow remote hackers to compromise the affected system, ICS-CERT warned on Thursday.

read more



from SecurityWeek RSS Feed http://ift.tt/2dJTTzb
via https://ifttt.com/ IFTTT

ФБР заявило о множественных попытках взлома системы регистрации избирателей

По словам директора ФБР, хакеры постоянно пытаются заполучить несанкционированный доступ к личным данным американцев.

from Новости - SecurityLab.ru http://ift.tt/2dcrbse
via https://ifttt.com/ IFTTT

Запрет анонимных мессенджеров может привести к «деградации рунета»

Изменения в законы «Об информации» и «О связи» нарушают конституционные права граждан, считают эксперты.

from Новости - SecurityLab.ru http://ift.tt/2diA9R3
via https://ifttt.com/ IFTTT

ЛК запатентовала технологию для борьбы с онлайн-мошенничеством

ЛК запатентовала технологию для борьбы с онлайн-мошенничеством

«Лаборатория Касперского» получила в США патент на технологию для борьбы с финансовыми киберпреступлениями. Новый метод предназначен для распознавания атак «человек в браузере». Их суть заключается во внедрении в браузер вредоносного кода, который позволяет в режиме реального времени собирать всю информацию, вводимую пользователем на посещаемых сайтах.



from Новости информационной безопасности - Anti-Malware.ru http://ift.tt/2dcp7Al
via https://ifttt.com/ IFTTT

Реестр российского ПО пополнился продуктами С-Терра

Реестр российского ПО пополнился продуктами С-Терра

Продукты российской компании «С-Терра СиЭсПи» включены в единый реестр российских программ для электронных вычислительных машин и баз данных. Такое решение принято Экспертным советом по российскому ПО и утверждено приказом Минкомсвязи России №455 от 22.09.2016 в рамках импортозамещения программного обеспечения.



from Новости информационной безопасности - Anti-Malware.ru http://ift.tt/2dcnMtk
via https://ifttt.com/ IFTTT

ЦБ привлекает рыночные компании к обмену информацией о кибератаках

ЦБ привлекает рыночные компании к обмену информацией о кибератаках

FinCERT договорился об обмене информацией о киберугрозах с 14 компаниями, рассказал представитель ЦБ. Соглашения подписаны с компаниями Solar Security, «Информзащита», говорится в их сообщениях, о партнерстве с Digital Security сообщил гендиректор компании Илья Медведовский.



from Новости информационной безопасности - Anti-Malware.ru http://ift.tt/2dwc1xE
via https://ifttt.com/ IFTTT

FireEye описала подробности ведения бизнеса хакерской группировки Vendetta Brothers

В отчете компании раскрываются подробности построения успешного бизнеса по технологии CaaS.

from Новости - SecurityLab.ru http://ift.tt/2dw9sf9
via https://ifttt.com/ IFTTT

Wintego хвастается инструментом для взлома шифрования WhatsUp

Компания рекламирует новый функционал по шпионажу за пользователями популярного мессенджера WhatsUp.

from Новости - SecurityLab.ru http://ift.tt/2dJtodo
via https://ifttt.com/ IFTTT

Zerodium Offers $1.5 Million Bounty For iOS Zero-Day Exploits

Well, there's some good news for Hackers and Bug hunters, though a terrible news for Apple! Exploit vendor Zerodium has tripled its bug bounty for an Apple's iOS 10 zero-day exploit, offering a maximum payout of $US1.5 Million. Yes, $1,500,000.00 Reward. That's more than seven times what Apple is offering (up to $200,000) for iOS zero-days via its private, invite-only bug bounty program. <


from The Hacker News http://ift.tt/2drz0ED
via https://ifttt.com/ IFTTT

Банки могут получить доступ к базам сотовых операторов

Банку нужно получить данные по статусу клиента от оператора сотовой связи для своевременного предотвращения. Это может быть информация о смене SIM-карты, о наличии блокировки, геоположении устройства.

from Новости - SecurityLab.ru http://ift.tt/2dpsJx9
via https://ifttt.com/ IFTTT

Tofsee Malware Distribution Switched From Exploit Kit to Spam

The RIG exploit kit recently stopped distributing Tofsee and cybercriminals have decided to use the botnet’s own spamming capabilities to deliver the malware, Cisco’s Talos team reported on Thursday.

read more



from SecurityWeek RSS Feed http://ift.tt/2cPVrGl
via https://ifttt.com/ IFTTT

Zerodium готова заплатить $1,5 млн за эксплоит для уязвимостей в iOS

За джейлбрейк для Android 7 компания предлагает $200 тыс., а за эксплоит для Adobe Flash заплатит $100 тыс.

from Новости - SecurityLab.ru http://ift.tt/2cFYdKW
via https://ifttt.com/ IFTTT

Cisco Talos обнаружила возрождение ботнета Tofsee

Злоумышленники приступили к активному расширению ботента путем отправки фишинговых писем.

from Новости - SecurityLab.ru http://ift.tt/2cPRTUu
via https://ifttt.com/ IFTTT

За использование WhatsApp, Viber и Telegram чиновникам будет грозить увольнение

Согласно проекту «дорожной карты», ответственной за разработку соответствующих нормативных актов будет ФСБ.

from Новости - SecurityLab.ru http://ift.tt/2cFTadm
via https://ifttt.com/ IFTTT

Thursday, 29 September 2016

Zerodium Boosts Bounty for iOS Exploits to $1.5 Million

ZERODIUM, a leading zero-day exploit broker, has published its revised bounty figures for the amount it will pay for new zero-days. The highest figure is reserved for iOS - now up to $1.5 million for "fully functional/reliable exploits meeting ZERODIUM's requirements". It was 'only' $500,000 in September 2015.

read more



from SecurityWeek RSS Feed http://ift.tt/2d9BGZX
via https://ifttt.com/ IFTTT

Безопасность в эпоху Agile стала основной темой на BIS Summit 2016

23 сентября завершил работу IX международный Business Information Security Summit. Больше участников, больше демонстраций, форматов и мнений.*Центральная тема конференции «Информационная безопасность в эпоху Agile» получила международное освещение. Открыл конференцию Президент ассоциации BISA Рустэм Хайретдинов.

http://ift.tt/2cE578p


from VirusInfo - Другие новости http://ift.tt/2dhE0xB
via https://ifttt.com/ IFTTT

Backdoored D-Link Router Should be Trashed, Researcher Says

A researcher who found a slew of vulnerabilities in a popular router says it’s so hopelessly broken that consumers who own them should throw them away.

from Threatpost | The first stop for security news http://ift.tt/2dodVyG
via https://ifttt.com/ IFTTT

Борцы с пиратством намерены пресечь «эпидемию» Kodi

Устройства могут поддерживать дополнения для бесплатной трансляции премиум-контента.

from Новости - SecurityLab.ru http://ift.tt/2dcYbhA
via https://ifttt.com/ IFTTT

Zerodium Triples its iOS 10 Bounty to $1.5 Million

Zerodium tripled the bounty it offers for an Apple iOS 10 remote jailbreak, boosting the reward to $1.5 million.

from Threatpost | The first stop for security news http://ift.tt/2dxSWe8
via https://ifttt.com/ IFTTT

Dridex Banking Trojan Adopts Improved Encryption

The infamous Dridex banking Trojan has adopted new tactics and more advanced encryption and obfuscation to better avoid detection and to hinder security analysis, researchers warn.

read more



from SecurityWeek RSS Feed http://ift.tt/2duJt7T
via https://ifttt.com/ IFTTT

Yahoo Challenged on Claims Breach Was State-Sponsored Attack

Experts challenge Yahoo's assertion that state-sponsored hackers were behind a 2014 breach that resulted in 500 million lost records.

from Threatpost | The first stop for security news http://ift.tt/2cEKzHL
via https://ifttt.com/ IFTTT

37-Year-Old 'Syrian Electronic Army' Hacker Pleads Guilty in US court

One of the FBI's Most Wanted Hackers who was arrested in Germany earlier this year has pleaded guilty to federal charges for his role in a scheme that hacked computers and targeted the US government, foreign governments, and multiple US media outlets. Peter Romar, 37, pleaded guilty Wednesday in a federal court in Alexandria to felony charges of conspiring to receive extortion proceeds and to


from The Hacker News http://ift.tt/2dpt7YA
via https://ifttt.com/ IFTTT

"Vendetta Brothers" Are After Your Payment Card Data

If you live in the United States or one of several Nordic countries, your payment card data might be of interest to a duo of cybercriminals that FireEye refers to as the “Vendetta Brothers.”

read more



from SecurityWeek RSS Feed http://ift.tt/2cZ12Yz
via https://ifttt.com/ IFTTT