Sunday, December 31, 2017

WordPress captcha plugin on 300,000 sites had a sneaky backdoor

WordFence says a fix has landed

WordFence are warning that the WordPress Captcha plugin, popular enough to get around 300,000 installations, should be replaced with the latest official WordPress version (4.4.5).…

The Register – Security
Secure Hunter Anti -Malware

The post WordPress captcha plugin on 300,000 sites had a sneaky backdoor appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2zT9SBx
Secure Hunter

Saturday, December 30, 2017

Windows 10 Hello face recognition can be fooled with photos

After you update, set it up again from scratch

If you’ve skipped recent Windows 10 Creators Updates, here’s a reason to change your mind: its facial recognition security feature, Hello, can be spoofed with a photograph.…

The Register – Security
Secure Hunter Anti -Malware

The post Windows 10 Hello face recognition can be fooled with photos appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BWwNhn
Secure Hunter

Friday, December 29, 2017

UK teen dodges jail time for role in DDoSes on Natwest, Amazon and more

Member of vDos booter ‘taken advantage of’ by vDos crew

Brit teen Jack Chappell has avoided being sent to prison after pleading guilty to helping launch DDoS attacks against NatWest, Amazon and Netflix, among others.…

The Register – Security
Secure Hunter Anti -Malware

The post UK teen dodges jail time for role in DDoSes on Natwest, Amazon and more appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2CkntaA
Secure Hunter

Thursday, December 28, 2017

Infosec controls relaxed a little after latest Wassenaar meeting

A welcome dash of perspective

Without much fanfare, negotiators crafting the Wassenaar Agreement earlier this month moved to make things easier for infosec white-hats.…

The Register – Security
Secure Hunter Anti -Malware

The post Infosec controls relaxed a little after latest Wassenaar meeting appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2lbjfZ0
Secure Hunter

Wednesday, December 27, 2017

EMC admin? Plug this hole before the holidays

Because we haven’t set fired SMBv1 into the Sun

Dell EMC has patched an SMBv1 bug in its Data Domain Deduplication and Data Protection software.…

The Register – Security
Secure Hunter Anti -Malware

The post EMC admin? Plug this hole before the holidays appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2pELC6t
Secure Hunter

Tuesday, December 26, 2017

Euro ransomware probe: Five Romanians cuffed

Alleged extortionists wielded CTB-Locker aka Critroni and Cerber file-scrambling nasties

Five people suspected of infecting Windows PCs with ransomware – and extorting money from more than 170 victims in Europe and the US – have been arrested.…

The Register – Security
Secure Hunter Anti -Malware

The post Euro ransomware probe: Five Romanians cuffed appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2kZOpCC
Secure Hunter

Monday, December 25, 2017

US capital’s surveillance cam network allegedly hijacked by Romanian ransomware suspects

Charges filed against pair coincide with arrests abroad

Two of the five unnamed individuals cuffed this month in Romania on suspicion of spreading ransomware face US computer crime charges – for their alleged role in taking over 123 out of 187 networked computers that control Washington DC’s CCTV cameras earlier this year.…

The Register – Security
Secure Hunter Anti -Malware

The post US capital’s surveillance cam network allegedly hijacked by Romanian ransomware suspects appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2kSWZ62
Secure Hunter

Sunday, December 24, 2017

Merry Christmas, UK prosecutors: Here’s a special gift… a slap from the privacy watchdog

Mass paperwork backlog sets off ICO

Final update  The UK Ministry of Justice has been slammed for poor handling of requests for personal records made under data protection laws – and told to fix the 700-plus backlog by October.…

The Register – Security
Secure Hunter Anti -Malware

The post Merry Christmas, UK prosecutors: Here’s a special gift… a slap from the privacy watchdog appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BIopWs
Secure Hunter

Saturday, December 23, 2017

UK Foreign Sec Bojo to tell Kremlin: Stop your cyber shenanigans… or else!

Bet they’re shaking in their boots

Foreign secretary Boris Johnson will warn Russia that the UK will retaliate against cyber attacks in a rare visit to Moscow today.…

The Register – Security
Secure Hunter Anti -Malware

The post UK Foreign Sec Bojo to tell Kremlin: Stop your cyber shenanigans… or else! appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2l1C8N6
Secure Hunter

Friday, December 22, 2017

Braking news: Nissan Canada hacked, up to 1.1m Canucks exposed

Only beeping took 10 beeping days to admit it was been beep-beeping beep pwned

Nissan Canada’s vehicle-financing wing has been hacked, putting personal information on as many as 1.13 million customers in the hands of miscreants.…

The Register – Security
Secure Hunter Anti -Malware

The post Braking news: Nissan Canada hacked, up to 1.1m Canucks exposed appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2CX69oG
Secure Hunter

Thursday, December 21, 2017

How much will Britain’s next F-35s cost? Not telling, says MoD

Plus: Naval overstretch means the flag isn’t flying overseas for Christmas

The British government has refused to say how much new F-35 fighter jets will cost the nation – as it emerges that no fighting ships of the Royal Navy will be in foreign waters during the festive period.…

The Register – Security
Secure Hunter Anti -Malware

The post How much will Britain’s next F-35s cost? Not telling, says MoD appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2Bs28MC
Secure Hunter

Wednesday, December 20, 2017

Ghostery, uBlock lead the anti-track pack

Privacy Badger grazes on cookies, but DoNotTrack? Nobody cares

Looking for browser privacy? A group of researchers in France and Japan say RequestPolicyContinued and NoScript have the toughest policies, while Ghostery and uBlock Origin offer good blocking performance and a better user experience.…

The Register – Security
Secure Hunter Anti -Malware

The post Ghostery, uBlock lead the anti-track pack appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BlyuZp
Secure Hunter

Tuesday, December 19, 2017

Android trojan has miner so aggressive it can bork your battery

Loapi found in smut apps, fake virus scanners

Kaspersky researchers have turned up a strain of malware lurking in adult content and fake virus scanners, and it can run a victim’s Android mobe so hard they might suffer physical damage.…

The Register – Security
Secure Hunter Anti -Malware

The post Android trojan has miner so aggressive it can bork your battery appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BdIljV
Secure Hunter

Monday, December 18, 2017

Windows 10 bundles a briefly-vulnerable password manager

Keeper exposed punters to drive-by click-jack pwnage

Google Project Zero’s Tavis Ormandy has turned up a howling blunder in a password manager bundled with Windows 10.…

The Register – Security
Secure Hunter Anti -Malware

The post Windows 10 bundles a briefly-vulnerable password manager appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2CwHoQ0
Secure Hunter

Sunday, December 17, 2017

We need to talk about mathematical backdoors in encryption algorithms

Yo, NSA maths chaps, can you hear me? – Black Hat man

Security researchers regularly set out to find implementation problems in cryptographic algorithms, but not enough effort is going towards the search for mathematical backdoors, two cryptography professors have argued.…

The Register – Security
Secure Hunter Anti -Malware

The post We need to talk about mathematical backdoors in encryption algorithms appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BktEZd
Secure Hunter

Saturday, December 16, 2017

Merry Xmas, fellow code nerds: Avast open-sources decompiler

RetDec will turn binaries into something more legible

Malware hunting biz and nautical jargon Avast has released its machine-code decompiler RetDec as open source, in the hope of arming like-minded haters of bad bytes and other technically inclined sorts with better analytical tools.…

The Register – Security
Secure Hunter Anti -Malware

The post Merry Xmas, fellow code nerds: Avast open-sources decompiler appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2kBlIuL
Secure Hunter

Friday, December 15, 2017

UK.gov delays biometrics strategy again – but cops will STILL USE the tech

Tech’s too ‘fast moving’ for framework, but not for slurping your face

The Home Office has admitted the UK’s biometrics strategy won’t be published until next year, as MPs slam an “unacceptable” delay of more than five years.…

The Register – Security
Secure Hunter Anti -Malware

The post UK.gov delays biometrics strategy again – but cops will STILL USE the tech appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2j4gcQI
Secure Hunter

Thursday, December 14, 2017

OK, OK, MIRA-I DID IT: Botnet-building compsci kid comes clean

Jha rule-breaker and pals confess IoT gadget hack crimes, now facing the slammer

A former New Jersey college student has copped to helping create and run the massive Mirai DDoS botnet.…

The Register – Security
Secure Hunter Anti -Malware

The post OK, OK, MIRA-I DID IT: Botnet-building compsci kid comes clean appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2yrylgI
Secure Hunter

Wednesday, December 13, 2017

One per cent of all websites probably p0wned each year, say boffins

Automated account-creator used bad passwords to detect when sites go bad

Researchers working on a technology to detect unannounced data breaches have found, to their dismay, that one per cent of the sites they monitored were hacked over the previous 18 months.…

The Register – Security
Secure Hunter Anti -Malware

The post One per cent of all websites probably p0wned each year, say boffins appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2j12gqK
Secure Hunter

Tuesday, December 12, 2017

Google’s Project Zero reveals Apple jailbreak exploit

Holy Moley! iOS and MacOS were wholly holey

Ian Beer of Google’s Project Zero has followed up on a “coming soon” Twitter teaser with a jailbreakable iOS and Mac OS vulnerability.…

The Register – Security
Secure Hunter Anti -Malware

The post Google’s Project Zero reveals Apple jailbreak exploit appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2AuvPvU
Secure Hunter

Monday, December 11, 2017

Language bugs infest downstream software, fuzzer finds

And you worked so hard to make it secure

Developers working in secure development guidelines can still be bitten by upstream bugs in the languages they use.…

The Register – Security
Secure Hunter Anti -Malware

The post Language bugs infest downstream software, fuzzer finds appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BxmL9F
Secure Hunter

Sunday, December 10, 2017

UK.gov law resources now untrustworthy, according to browsers

justice.gov.uk website SSL certificate expires

The SSL certificate on the criminal justice and court listing site justice.gov.uk expired yesterday, causing browsers to now warn users that their information is at risk.…

The Register – Security
Secure Hunter Anti -Malware

The post UK.gov law resources now untrustworthy, according to browsers appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2nM9Pa6
Secure Hunter

Saturday, December 9, 2017

Android flaw lets attack code slip into signed apps

Janus bug leaves APKs vulnerable to poisoning

Researchers say a recently-patched vulnerability in Android could leave users vulnerable to attack from signed apps.…

The Register – Security
Secure Hunter Anti -Malware

The post Android flaw lets attack code slip into signed apps appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2jerYvJ
Secure Hunter

Friday, December 8, 2017

Sloppy coding + huge PSD2 changes = Lots of late nights for banking devs next year

*Cough* Cobol, .NET *cough*

Poorly written code is leaving banks at greater risk of attack and poorly prepared for big changes in the financial sector due to come into effect early next year.…

The Register – Security
Secure Hunter Anti -Malware

The post Sloppy coding + huge PSD2 changes = Lots of late nights for banking devs next year appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2B19FRj
Secure Hunter

Thursday, December 7, 2017

NiceHash diced up by hackers, thousands of Bitcoin pilfered

Mining outfit says its entire wallet gone, estimated $ 62m

Cryptocurrency mining market NiceHash says it has fallen victim to a hacking attack that may have resulted in the loss of its entire Bitcoin wallet.…

The Register – Security
Secure Hunter Anti -Malware

The post NiceHash diced up by hackers, thousands of Bitcoin pilfered appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2zWNyrL
Secure Hunter

Wednesday, December 6, 2017

Mailsploit: It’s 2017, and you can spoof the ‘from’ in email to fool filters

Message client vendors have had 25 years to get RFC 1342 right

Penetration tester Sabri Haddouche has reintroduced the world to email source spoofing, bypassing spam filters and protections like Domain-based Message Authentication, Reporting and Conformance (DMARC), thereby posing a risk to anyone running a vulnerable and unpatched mail client.…

The Register – Security
Secure Hunter Anti -Malware

The post Mailsploit: It’s 2017, and you can spoof the ‘from’ in email to fool filters appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2B4cl10
Secure Hunter

Tuesday, December 5, 2017

Turns out Leakbase can keep a secret: It has shut down with zero info

Stolen-creds-for-cash site disappears, unmourned

Stolen-creds-for-sale site Leakbase has gone dark and started redirecting to Troy Hunt’s HaveIBeenPwned.…

The Register – Security
Secure Hunter Anti -Malware

The post Turns out Leakbase can keep a secret: It has shut down with zero info appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2ASQglu
Secure Hunter

Monday, December 4, 2017

Google to crack down on apps that snoop

Android developers given 60 days to inform users, after that apps will do it for themselves

Google has warned Android developers to give users better warnings about their apps’ data collection behaviours, or it will flag their failings.…

The Register – Security
Secure Hunter Anti -Malware

The post Google to crack down on apps that snoop appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BEZkrU
Secure Hunter

Sunday, December 3, 2017

Apple iOS 11 security ‘downgrade’ decried as ‘horror show’

Ability to reset iTunes Backup passwords unravels layered protection, claims researcher

After rapidly patching a flaw that allowed anyone with access to a High Sierra Mac to obtain administrative control, Apple still has more work to do to make its software secure, namely iOS 11, it was claimed this week.…

The Register – Security
Secure Hunter Anti -Malware

The post Apple iOS 11 security ‘downgrade’ decried as ‘horror show’ appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2npLfvm
Secure Hunter

Saturday, December 2, 2017

Guilty: NSA bloke who took home exploits at the heart of Kaspersky antivirus slurp row

Maryland man cops to making illegal copies of top-secret code

An NSA hacker has admitted taking home copies of classified software exploits – understood to be the cyber-weapons slurped from an agency worker’s home Windows PC by Kaspersky Labs’ antivirus.…

The Register – Security
Secure Hunter Anti -Malware

The post Guilty: NSA bloke who took home exploits at the heart of Kaspersky antivirus slurp row appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2BAKFy1
Secure Hunter

Friday, December 1, 2017

Stop us if you’ve heard this one: Russian hacker thrown in US slammer for $59m bank fraud

More punishment on the menu for Roman Seleznev

A Russian hacker already facing a lengthy prison stay in the US has been sent down for another 14 years for heading up an “organized cybercrime ring” that racked up $ 59m in damages across America.…

The Register – Security
Secure Hunter Anti -Malware

The post Stop us if you’ve heard this one: Russian hacker thrown in US slammer for $59m bank fraud appeared first on Secure Hunter Anti-Malware.



http://ift.tt/2j75rxr
Secure Hunter