Feed aggregator

Blog: The MiniDuke Mystery: PDF 0-day Government Spy Assembler 0x29A Micro Backdoor

Secure List feed for B2B - Wed, 02/27/2013 - 10:00
New Adobe PDFs exploiting CVE-2013-0640 drop sophisticated malware known as "MiniDuke".

Researchers Find Stuxnet Older Than Previously Believed

Threatpost for B2B - Tue, 02/26/2013 - 22:53

Researchers on Tuesday said they have proof the Stuxnet worm used to cripple Iran's nuclear program has been in the wild two years longer than first believed. There's also now evidence the military-grade malware's origins date back to 2005, and possibly earlier.

read more

Latest Kelihos Botnet Shut Down Live at RSA Conference 2013

Threatpost for B2B - Tue, 02/26/2013 - 21:42

SAN FRANCISCO – Down goes Kelihos—again.

The third version of the prolific peer-to-peer botnet responsible for volumes of pharmaceutical spam, Bitcoin wallet theft and credential harvesting was shut down before a live audience today at RSA Conference 2013.

read more

Adobe Patches Two Critical Flash Player Vulnerabilities

Threatpost for B2B - Tue, 02/26/2013 - 17:26

Adobe released yet another security update for its Flash Player product, it’s third this month, earlier today. The emergency update patches three vulnerabilities, including two critical (CVE-2013-0643 and CVE-2013-0648) that are targeting Flash Player in Mozilla’s Firefox browser and could let an attacker crash and compromise affected systems.

read more

RSA Conference 2013: Experts Say It's Time to Prepare for a 'Post-Crypto' World

Threatpost for B2B - Tue, 02/26/2013 - 15:43

SAN FRANCISCO--In the current climate of continuous attacks and intrusions by APT crews, government-sponsored groups and others organizations, cryptography is becoming less and less important and defenders need to start thinking about new ways to protect data on systems that they assume are compromised, one of the fathers of public-key cryptography said Tuesday. Adi Shamir, who helped design the original RSA algorithm, said that security experts should be preparing for a "post-cryptography" world.

read more

cPanel Support Server Compromised

Threatpost for B2B - Tue, 02/26/2013 - 15:10

Website hosting provider cPanel is calling on some users to change their passwords after it informed them on Friday that hackers compromised one of its technical support department’s servers. The hosting provider does not know for certain the extent of the hack or what, if any, information was stolen during the compromise.

read more

Facebook Patches OAuth Authentication Vulnerability

Threatpost for B2B - Tue, 02/26/2013 - 14:36

Social media supersite Facebook has fixed a vulnerability that could have allowed a hacker to access a user’s account simply by getting them to click through to a specially crafted website. The flaw essentially mimicked the functionality of an authentic Facebook application without actually installing an application to their profile.

read more

'Six Strikes' System Flags P2P Piracy and Throttles Broadband Connections

Threatpost for B2B - Mon, 02/25/2013 - 23:14

The entertainment industry is teaming with five major Internet service providers to this week launch a new Copyright Alert System that will first warn online pirates and then start to strangle bandwidth of repeat offenders.

Dubbed "Six Strikes," the new system began roll out Monday, putting consumers on notice that content owners would be monitoring for illegal downloading or uploading of copyrighted movies, music and televsion shows and notifying participating ISPs such actvitity is detected.

read more

Researchers Bypass Google Two-Factor Authentication

Threatpost for B2B - Mon, 02/25/2013 - 16:38

For some time, attackers had the ability to bypass Google's two-step authentication system through access to users' app-specific passwords, giving them full access to victims' Google accounts, including Gmail. The vulnerability that enables this attack, discovered by researchers from DuoSecurity, has been patched by Google.

read more

Two More Java Zero Days Found by Polish Research Team

Threatpost for B2B - Mon, 02/25/2013 - 16:26

The seemingly endless list of critical zero day bugs found in Java grew longer today with news that one of the flaws fixed in Oracle’s recent patches for the product is under attack and when that bug is paired with another, separate vulnerability, the sandbox in the latest build of Java can be bypassed.

read more

Anup Ghosh on Cyberespionage, Attribution and APTs

Threatpost for B2B - Mon, 02/25/2013 - 10:57

Dennis Fisher talks with Anup Ghosh of Invincea about the recent wave of companies admitting to being hacked by APT groups, the difference between cyberespionage and cyberwar, what the government can do to encourage more intelligence sharing and whether compromised companies are spending enough time on attribution.

You are missing some Flash content that should appear here! Perhaps your browser cannot display it, or maybe it did not initialize correctly.

read more

Another iPhone Passcode Bypass Vulnerability Discovered

Threatpost for B2B - Mon, 02/25/2013 - 08:00

It’s getting hard to keep track of all the bugs piling up for Apple’s iPhone. Now it seems a glitch in the iOS kernel of Apple’s much maligned iOS 6.1 is responsible for yet another passcode bypass vulnerability, the second to surface this month. Attackers can apparently access users' photos, contacts and more by following a series of steps on an iPhone running iOS 6.1.

read more

HTC Settlement Could Alter Mobile Security and Privacy Landscape

Threatpost for B2B - Mon, 02/25/2013 - 08:00

HTC America’s settlement with the U.S. Federal Trade Commission on Friday has the potential to revamp not only how hardware manufacturers handle the security and privacy of mobile devices, but how carriers do so, as well.

read more

Microsoft Azure Cloud Storage Suffers Major Outage Over Expired SSL Certificate

Threatpost for B2B - Fri, 02/22/2013 - 23:38

Various news outlets reported late Friday that Microsoft's public cloud storage service suffered a global outage due to a lapsed security certificate.

Beginning around 4 p.m. EST, developers and other Azure customers began being blocked from accessing files.

read more

Chrome 25 Fixes Nine High-Risk Vulnerabilities

Threatpost for B2B - Fri, 02/22/2013 - 11:20

Google has fixed nine high-severity vulnerabilities in its Chrome browser, as well as a dozen other flaws with the release of Chrome 25. This release is one of the few for which the company did not pay out much in the way of bug bounties, only giving out $3,500.

In Chrome 25 Google also disabled the MathML implementation in the browser, fixing what the company said is a serious security problem.

read more

Zendesk Compromised, Twitter, Tumblr and Pinterest Users Affected

Threatpost for B2B - Fri, 02/22/2013 - 10:46

In the wake of high-profile compromises of companies such as Facebook, the New York Times, Apple and others, officials at Zendesk, an online customer support provider, said that the company also had been compromised and the attackers had made off with the email addresses of customers of Twitter, Tumblr and Pinterest, all of which use Zendesk's services.

read more

NBC Website Hacked, Leading Visitors to Citadel Banking Malware

Threatpost for B2B - Thu, 02/21/2013 - 17:07

Another day, another media company hacked. This time it’s NBC which has fallen to victim hackers on the heels of compromises of the New York Times and Wall Street Journal websites. Various experts have confirmed that NBC’s website is compromised and leading visitors to the dangerous Citadel banking Trojan. The site is reportedly hosting an iframe that is redirecting visitors to sites hosting the RedKit Exploit Kit which is serving up the Citadel malware.

read more

Spear Phishing Campaigns Use Fake Mandiant APT1 Report as Lure

Threatpost for B2B - Thu, 02/21/2013 - 16:03

People looking to download and read the Mandiant report on Chinese government attacks on U.S. infrastructure should look carefully at the name of the file before opening it. Researchers say that there are at least two different spear-phishing attacks going on right now that are using rigged copies of the China APT1 report as lures.

read more

Markey: GRID Act Passage Long Overdue

Threatpost for B2B - Thu, 02/21/2013 - 12:25

Representative Ed Markey (D-MA) is urging the Chairman of the House Committee on Energy and Commerce, Fred Upton (R-MI), to take immediate action toward passing the Grid Reliability and Infrastructure Defense (GRID) Act, which Markey calls a bipartisan bill aimed at hardening the nation’s electrical grid and critical infrastructure against cyberattacks.

read more

Syndicate content