Saturday, August 31, 2019

JACK OF ALL TIRADES: Twitter boss loses account to cunning foul-mouthed pranksters

Plus a Cisco bug, dentists bitten by malware, and France takes down a worm

Roundup  This week ended with a bang, thanks to some Twitter hackers.…

The Register – Security
Secure Hunter Anti -Malware

The post JACK OF ALL TIRADES: Twitter boss loses account to cunning foul-mouthed pranksters appeared first on Secure Hunter Anti-Malware.



https://ift.tt/30OAWAd
Secure Hunter

Friday, August 30, 2019

Despite billions in spending, your ‘military grade’ network will still be leaking data

You can’t patch stupid

Despite years of corporate awareness training, warning articles in The Reg and regular bollockings by frustrated IT admins, human error is still behind most personal data leaks, a newly released study says.…

The Register – Security
Secure Hunter Anti -Malware

The post Despite billions in spending, your ‘military grade’ network will still be leaking data appeared first on Secure Hunter Anti-Malware.



https://ift.tt/30LcIXG
Secure Hunter

Thursday, August 29, 2019

Today’s Resident Evil: Ransomware crooks think local, not global, prey on schools, towns, libraries, courts, cities…

Small governments make up two-thirds of infection victims observed by infosec bods

Ransomware criminals have taken a particular shine to US city and state governments, infecting them with file-scrambling extorionware in hope of quick payouts.…

The Register – Security
Secure Hunter Anti -Malware

The post Today’s Resident Evil: Ransomware crooks think local, not global, prey on schools, towns, libraries, courts, cities… appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZkXXhw
Secure Hunter

Wednesday, August 28, 2019

Dixons hits back at McAfee’s £30m antivirus sueball: Your AV didn’t work on Windows 10S

And that’s why we flirted with your nemesis Symantec, Brit retailer claims

Brit retailer Dixons has lashed back at McAfee’s £30m High Court broadside, saying it was entitled to promote rival antivirus (AV) tech from Symantec if McAfee’s software wouldn’t work on Windows 10S devices.…

The Register – Security
Secure Hunter Anti -Malware

The post Dixons hits back at McAfee’s £30m antivirus sueball: Your AV didn’t work on Windows 10S appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2znzGIm
Secure Hunter

Tuesday, August 27, 2019

Yes, TfL asked people to write down their Oyster passwords – but don’t worry, they didn’t inhale

About your data breach the other day, lads…

Transport for London is looking at ways to improve its processes after a Register reader queried why he was being asked to write down his password on a paper form for railway staff to read.…

The Register – Security
Secure Hunter Anti -Malware

The post Yes, TfL asked people to write down their Oyster passwords – but don’t worry, they didn’t inhale appeared first on Secure Hunter Anti-Malware.



https://ift.tt/30CHbak
Secure Hunter

Monday, August 26, 2019

Hacktivist skids nip at Mounties’ ankles, Emotet ransomware rides again, and more

Including AV patches, VPN attacks, data leaks, and security cam holes

Roundup  Summer is winding down, although there are plenty of computer security news bits and bytes to go around.…

The Register – Security
Secure Hunter Anti -Malware

The post Hacktivist skids nip at Mounties’ ankles, Emotet ransomware rides again, and more appeared first on Secure Hunter Anti-Malware.



https://ift.tt/30znKip
Secure Hunter

Sunday, August 25, 2019

Cybercrook hands cops £923k in Bitcoin made from selling phished deets on the dark web

27-year-old also shipped weed, flogged ‘how-to’ fraud guides

A hacker from Kent, England, has handed over almost a million quid in Bitcoin following a lengthy police investigation.…

The Register – Security
Secure Hunter Anti -Malware

The post Cybercrook hands cops £923k in Bitcoin made from selling phished deets on the dark web appeared first on Secure Hunter Anti-Malware.



https://ift.tt/31Ujj2a
Secure Hunter

Saturday, August 24, 2019

Security gone in 600 seconds: Make-me-admin hole found in Lenovo Windows laptop crapware. Delete it now

Solution Centre WONTFIX amid EOL date shenanigans

Not only has a vulnerability been found in Lenovo Solution Centre (LSC), but the laptop maker fiddled with end-of-life dates to make it seem less important – and is now telling the world it EOL’d the vulnerable monitoring software before its final version was released.…

The Register – Security
Secure Hunter Anti -Malware

The post Security gone in 600 seconds: Make-me-admin hole found in Lenovo Windows laptop crapware. Delete it now appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2NtYTZZ
Secure Hunter

Friday, August 23, 2019

GitHub upgrades two-factor authentication with WebAuthn support

Standard enables more security key options with passwordless a future possibility

GitHub has announced support for the Web Authentication (WebAuthn) security standard.…

The Register – Security
Secure Hunter Anti -Malware

The post GitHub upgrades two-factor authentication with WebAuthn support appeared first on Secure Hunter Anti-Malware.



https://ift.tt/31ZeK6M
Secure Hunter

Thursday, August 22, 2019

Disgruntled bug-hunter drops Steam zero-day to get back at Valve for refusing him a bounty

EoP bug now free for the world to see after bounty was rejected

A security bod angry at Valve’s handling of bug reports has released a zero-day vulnerability affecting the games giant’s flagship Steam app.…

The Register – Security
Secure Hunter Anti -Malware

The post Disgruntled bug-hunter drops Steam zero-day to get back at Valve for refusing him a bounty appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2Hkm4BM
Secure Hunter

Wednesday, August 21, 2019

Stuff like sophisticated government spyware is scary and all – but don’t forget, a single .wmv file can pwn you via VLC

Keep your media player, like other apps, up to date: 13 security flaws fixed

VideoLAN has issued an update to address a baker’s dozen of CVE-listed security vulnerabilities in its widely used VLC player software.…

The Register – Security
Secure Hunter Anti -Malware

The post Stuff like sophisticated government spyware is scary and all – but don’t forget, a single .wmv file can pwn you via VLC appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2NlMXJG
Secure Hunter

Tuesday, August 20, 2019

Breaker, breaker. Apple’s iOS 12.4 update breaks jailbreak break, un-breaks the break. 10-4

File under: ‘Breaking’ news

iPhone hackers have discovered Apple’s most recent iOS update, 12.4, released in July, accidentally reopened a code-execution vulnerability that was previously patched – a vulnerability that can be abused to jail-break iThings.…

The Register – Security
Secure Hunter Anti -Malware

The post Breaker, breaker. Apple’s iOS 12.4 update breaks jailbreak break, un-breaks the break. 10-4 appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2MyGU51
Secure Hunter

Monday, August 19, 2019

KNOB turns up the heat on Bluetooth encryption, hotels leak guest info, city hands $1m to crook, and much, much more

Spec design flaw stiffs security of gizmos

Roundup  Let’s run through all the bits and bytes of security news beyond what we’ve already covered. Also, don’t forget our articles from this year’s Black Hat, DEF CON, and BSides Las Vegas conferences in the American desert.…

The Register – Security
Secure Hunter Anti -Malware

The post KNOB turns up the heat on Bluetooth encryption, hotels leak guest info, city hands $1m to crook, and much, much more appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZaTE7v
Secure Hunter

Sunday, August 18, 2019

NSA asks Congress to permanently reauthorize spying program that was so shambolic, the snoops had shut it down

You never know, we might figure out how not to screw up in future

Analysis  In the clearest possible sign that the US intelligence services live within their own political bubble, the director of national intelligence has asked Congress to reauthorize a spying program that the NSA itself decided to shut down after it repeatedly – and illegally – gathered the call records of millions of innocent Americans.…

The Register – Security
Secure Hunter Anti -Malware

The post NSA asks Congress to permanently reauthorize spying program that was so shambolic, the snoops had shut it down appeared first on Secure Hunter Anti-Malware.



https://ift.tt/31PYhl1
Secure Hunter

Saturday, August 17, 2019

Chrome add-on warns netizens when they use a leaked password. Sometimes, they even bother to change it

Alerted to exposed credentials, users do something about it roughly a quarter of the time

Between February and March this year, after Google released a Chrome extension called Password Checkup to check whether people’s username and password combinations had been stolen and leaked from website databases, computer scientists at the biz and Stanford University gathered anonymous telemetry from 670,000 people who installed the add-on.…

The Register – Security
Secure Hunter Anti -Malware

The post Chrome add-on warns netizens when they use a leaked password. Sometimes, they even bother to change it appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZcqIvW
Secure Hunter

Friday, August 16, 2019

Police costs for Gatwick drone fiasco double to nearly £900k – and still no one’s been charged

Omnishambles just keeps on rolling and you’re paying for it

Sussex Police’s probe of the infamous London Gatwick airport drone fiasco of Christmas 2018 has doubled in cost to nearly £900,000 – and the bungling force still hasn’t arrested the person or persons responsible.…

The Register – Security
Secure Hunter Anti -Malware

The post Police costs for Gatwick drone fiasco double to nearly £900k – and still no one’s been charged appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2TERUyj
Secure Hunter

Thursday, August 15, 2019

How dodgy browser plugins, web scripts can silently rewrite that URL you were about to hit – and throw you into an internet wormhole

Clickjacking code found on sites with 43 million daily visits total

Analysis  Clickjacking, which came to the attention of security types more than a decade ago, continues to thrive, despite defenses deployed since then by browser makers.…

The Register – Security
Secure Hunter Anti -Malware

The post How dodgy browser plugins, web scripts can silently rewrite that URL you were about to hit – and throw you into an internet wormhole appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2OXKQhE
Secure Hunter

Wednesday, August 14, 2019

HTTP/2, Brute! Then fall, server. Admin! Ops! The server is dead

Beware the denials of service: Netflix warns of eight networking bugs

On Tuesday, Netflix, working in conjunction with Google and CERT/CC, published a security advisory covering a series of vulnerabilities that enable denial of service attacks against servers running HTTP/2 services.…

The Register – Security
Secure Hunter Anti -Malware

The post HTTP/2, Brute! Then fall, server. Admin! Ops! The server is dead appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2MjfQX8
Secure Hunter

Tuesday, August 13, 2019

Header aches in Firefox, Tor, Brave and Chrome as HTTP opens new security holes

Alternative Services spec bungled by browser makers

The HTTP Alternative Services header can be abused to conduct network reconnaissance and attacks, to bypass malware protection services, and to foil tracking defenses and privacy assumptions, according to a paper scheduled to be presented at the WOOT ’19 security conference on Tuesday.…

The Register – Security
Secure Hunter Anti -Malware

The post Header aches in Firefox, Tor, Brave and Chrome as HTTP opens new security holes appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2H42t94
Secure Hunter

Monday, August 12, 2019

I could throttle you right about now: US Navy to ditch touchscreens after kit blamed for collision

Thousands of tons of metal and iPads don’t mix, it would seem

The US Navy is ditching touchscreens and going back to physical throttles after an investigation into the USS John S McCain collision partly blamed poor design of control systems for the incident.…

The Register – Security
Secure Hunter Anti -Malware

The post I could throttle you right about now: US Navy to ditch touchscreens after kit blamed for collision appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YJXCET
Secure Hunter

Sunday, August 11, 2019

SELECT code_execution FROM * USING SQLite: Eggheads lift the lid on DB security hi-jinks

You’ve heard of ROP? Now get a load of QOP

DEF CON  At the DEF CON hacking conference in Las Vegas on Saturday, infosec gurus from Check Point are scheduled to describe a technique for exploiting SQLite, a database used in applications across every major desktop and mobile operating system, to gain arbitrary code execution.…

The Register – Security
Secure Hunter Anti -Malware

The post SELECT code_execution FROM * USING SQLite: Eggheads lift the lid on DB security hi-jinks appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YGzvHf
Secure Hunter

Saturday, August 10, 2019

Anatomy of an attack: How Coinbase was targeted with emails booby-trapped with Firefox zero-days

Elaborate browser break-out betrayed by unusual behavior

Coinbase chief information security officer Philip Martin this week published an incident report covering the recent attack on the cryptocurrency exchange, revealing a phishing campaign of surprising sophistication.…

The Register – Security
Secure Hunter Anti -Malware

The post Anatomy of an attack: How Coinbase was targeted with emails booby-trapped with Firefox zero-days appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YEJi08
Secure Hunter

Friday, August 9, 2019

Talk about unintended consequences: GDPR is an identity thief’s dream ticket to Europeans’ data

Revenge plan morphs into data leak discovery

Black Hat  When Europe introduced the General Data Protection Regulation (GDPR) it was supposed to be a major step forward in data safety, but sloppy implementation and a little social engineering can make it heaven for identity thieves.…

The Register – Security
Secure Hunter Anti -Malware

The post Talk about unintended consequences: GDPR is an identity thief’s dream ticket to Europeans’ data appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YTAUJv
Secure Hunter

Thursday, August 8, 2019

WTF is Boeing on? Not just customer databases lying around on the web. 787 jetliner code, too, security bugs and all

Fears of cyber-hijackings? That’s plane crazy, says Dreamliner maker

Black Hat  A Black Hat presentation on how to potentially hijack a 787 – by exploiting bugs found in internal code left lying around on a public-facing server – was last night slammed as “irresponsible and misleading” by Boeing.…

The Register – Security
Secure Hunter Anti -Malware

The post WTF is Boeing on? Not just customer databases lying around on the web. 787 jetliner code, too, security bugs and all appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YwmHD7
Secure Hunter

Wednesday, August 7, 2019

Your mid-week infosec news bonanza: Cisco bugs, VMware-Nvidia guest escapes, KDE hijacking, and more

Including: Microsoft spins up Azure security lab, offers more bug bounty cash

Roundup  Before letting the IT staff clock out early this week, make sure they read up on the following security notices out this week.…

The Register – Security
Secure Hunter Anti -Malware

The post Your mid-week infosec news bonanza: Cisco bugs, VMware-Nvidia guest escapes, KDE hijacking, and more appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2MMphxI
Secure Hunter

Tuesday, August 6, 2019

Need to automatically and securely verify a download is legit? You bet rget this new tool

Wget’s? I’ve had a few…. but then again, it’s better to cryptographically check the contents of that executable

Brandon Philips, a member of the technical staff at Red Hat, has created a software tool called rget for Linux, macOS, and Windows, to make it easier to determine whether downloaded files can be trusted.…

The Register – Security
Secure Hunter Anti -Malware

The post Need to automatically and securely verify a download is legit? You bet rget this new tool appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2MGaWTu
Secure Hunter

Monday, August 5, 2019

It’s Black Hat and DEF CON in Vegas this week. And yup, you know what that means. Hotel room searches for guns

Because it’s America, it’s 2019, and after more mass shootings, let alone Mandalay Bay, no one’s taking chances

Black Hat  If you’re heading off the Black Hat and DEF CON security conferences in Las Vegas, USA, this week, be prepared to have your hotel room searched if – for any reason – you shoo maid service away and stop staff from cleaning your room.…

The Register – Security
Secure Hunter Anti -Malware

The post It’s Black Hat and DEF CON in Vegas this week. And yup, you know what that means. Hotel room searches for guns appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZwWLn7
Secure Hunter

Sunday, August 4, 2019

Phisherman’s blues: Bogus Dell support rep extradited from Kenya, admits he conned US colleges out of $900,000

Scumbag faces up to 20 years in the clink for email fraud

An email phisher found hiding in Kenya is facing up to two decades behind bars in America for scamming thousands of dollars from US universities.…

The Register – Security
Secure Hunter Anti -Malware

The post Phisherman’s blues: Bogus Dell support rep extradited from Kenya, admits he conned US colleges out of $900,000 appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2KnsjFJ
Secure Hunter

Saturday, August 3, 2019

It’s a bird! It’s a plane! No, it’s two-dozen government surveillance balloons over America

Back at base, bugs in the software. Flash the message, ‘Something’s out there’… Floating in the summer sky, 99 Fed balloons go by

Uncle Sam is testing a system that uses high-altitude balloons to conduct surveillance over American soil.…

The Register – Security
Secure Hunter Anti -Malware

The post It’s a bird! It’s a plane! No, it’s two-dozen government surveillance balloons over America appeared first on Secure Hunter Anti-Malware.



https://ift.tt/33c5DRI
Secure Hunter

Friday, August 2, 2019

Our hero returns home £500 richer thanks to senior dev’s appalling security hygiene

Because no one will ever think to look for logins here

On Call  Welcome back to On Call, a special corner of The Register where readers can share tales of their cries for help and the deaf ears on which they fall.…

The Register – Security
Secure Hunter Anti -Malware

The post Our hero returns home £500 richer thanks to senior dev’s appalling security hygiene appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2GEROBq
Secure Hunter

Thursday, August 1, 2019

Fed-up graphic design outfit dangles cash to anyone who can free infosec of hoodie pics

Make stock images great again!

Uninspired by the stock imagery used by the media to depict cybersecurity, a graphic design group is offering cash prizes to anyone who comes up with something more original than dodgy hoodie-wearing laptop users with waterfalls of cascading 1s and 0s behind them.…

The Register – Security
Secure Hunter Anti -Malware

The post Fed-up graphic design outfit dangles cash to anyone who can free infosec of hoodie pics appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2YlerFS
Secure Hunter