Monday, September 30, 2019

Microsoft changes encryption, another D-Link bug, phishing dangers, and more

Plus, Baltimore’s disastrous ransomware infection and worse IT practices

Roundup  Let’s look at some of the latest security news you may have missed this week.…

The Register – Security
Secure Hunter Anti -Malware

The post Microsoft changes encryption, another D-Link bug, phishing dangers, and more appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2n2oJcA
Secure Hunter

Sunday, September 29, 2019

What’s that smell? Perfume merchant senses the scent of a digital burglary

Fragrance Direct discovers ‘malicious code’ that led to leakage of customer data

Online merchant fragrancedirect.co.uk has confirmed a miscreant broke into its systems and made off with a raft of customers’ personal data, including payment card details.…

The Register – Security
Secure Hunter Anti -Malware

The post What’s that smell? Perfume merchant senses the scent of a digital burglary appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2mDEMxt
Secure Hunter

Saturday, September 28, 2019

Got a pre-A12 iPhone? Love jailbreaks? Happy Friday! ‘Unpatchable tethered Boot ROM exploit’ released

Coder claims iThings older than two years can be unlocked from Apple’s clutches

A programmer claims to have found a way to execute arbitrary code on recent-ish iPhones and iPads, paving the way for full-blown tethered jailbreaks.…

The Register – Security
Secure Hunter Anti -Malware

The post Got a pre-A12 iPhone? Love jailbreaks? Happy Friday! ‘Unpatchable tethered Boot ROM exploit’ released appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2o5ZA0P
Secure Hunter

Friday, September 27, 2019

Pupil mental health monitor promises app rewrite after hardcoded login creds discovered

You Steer-ed into some potential trouble there

Exclusive  A British firm whose mobile apps monitor the mental state of 35,000 British schoolchildren is having to rewrite them after researchers found hardcoded login credentials within.…

The Register – Security
Secure Hunter Anti -Malware

The post Pupil mental health monitor promises app rewrite after hardcoded login creds discovered appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2nFOtvc
Secure Hunter

Thursday, September 26, 2019

TalkTalk still struggles to shut down legacy email addresses on request

Another ex-customer struggles to get hacked account killed off

Months after The Register first wrote about TalkTalk failing to close a former customer’s email address, the firm is still using the General Data Protection Regulation as an excuse for dragging its heels.…

The Register – Security
Secure Hunter Anti -Malware

The post TalkTalk still struggles to shut down legacy email addresses on request appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2lMMjto
Secure Hunter

Wednesday, September 25, 2019

Hot patches for ColdFusion: Adobe drops trio of fixes for three serious flaws

While you’re at it, fix Java too

Adobe has released an update to clean up a trio of vulnerabilities in ColdFusion, its long-running web application platform.…

The Register – Security
Secure Hunter Anti -Malware

The post Hot patches for ColdFusion: Adobe drops trio of fixes for three serious flaws appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2lszPaa
Secure Hunter

Tuesday, September 24, 2019

Nine words to ruin your Monday: Emergency Internet Explorer patch amid in-the-wild attacks

Update browser ASAP after Google gurus spot miscreants abusing bug to hijack PCs

Microsoft today issued a rare emergency security update for Internet Explorer to address a critical flaw in the browser that’s being exploited right now in the wild.…

The Register – Security
Secure Hunter Anti -Malware

The post Nine words to ruin your Monday: Emergency Internet Explorer patch amid in-the-wild attacks appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2l8ys0d
Secure Hunter

Monday, September 23, 2019

Pizza prankster’s prisoner plea plot perturbs police, Norks invading and Uber woes

Plus, a Windows NTSF flaw, Fortnite hacking, and much, much more

Security roundup  Here are a handful of security happenings in the past week that are worth noting – aside from what The Reg has already covered.…

The Register – Security
Secure Hunter Anti -Malware

The post Pizza prankster’s prisoner plea plot perturbs police, Norks invading and Uber woes appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2monFPt
Secure Hunter

Sunday, September 22, 2019

Bulgarian phishing gang member who lived with his parents jailed for part in £40m fraud ring

37-year-old was extradited to Blighty to stand trial

A Bulgarian phishing criminal who created fake versions of legitimate companies’ websites as part of a £40m fraud has been jailed.…

The Register – Security
Secure Hunter Anti -Malware

The post Bulgarian phishing gang member who lived with his parents jailed for part in £40m fraud ring appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2Ii4GON
Secure Hunter

Saturday, September 21, 2019

Disgraced ex-Kaspersky guy made me do it, says bloke in Russian court on hacking charges

Oh no I didn’t, says disgraced ex-Kaspersky guy

An accused Russian hacker has claimed Kaspersky’s former head of investigations blackmailed him into stealing approximately £150,000 from local banks.…

The Register – Security
Secure Hunter Anti -Malware

The post Disgraced ex-Kaspersky guy made me do it, says bloke in Russian court on hacking charges appeared first on Secure Hunter Anti-Malware.



https://ift.tt/30gDfiz
Secure Hunter

Friday, September 20, 2019

Thursday, September 19, 2019

WannaCry is still the smallpox of infosec. But the latest strain (sort of) immunises its victims

Whatever you do, don’t pay the ransom

Analysis  WannaCry – the file-scrambling ransomware that infamously locked up Britain’s NHS and a bunch of other organisations worldwide in May 2017 – is still a live-ish threat to this day, infosec researchers reckon.…

The Register – Security
Secure Hunter Anti -Malware

The post WannaCry is still the smallpox of infosec. But the latest strain (sort of) immunises its victims appeared first on Secure Hunter Anti-Malware.



https://ift.tt/31Dnj7q
Secure Hunter

Wednesday, September 18, 2019

How to break out of a hypervisor: Abuse Qemu-KVM on-Linux pre-5.3 – or VMware with an AMD driver

Pair of bug reports show how VM escapes put servers at risk

A pair of newly disclosed security flaws could allow malicious virtual machine guests to break out of their hypervisor’s walled gardens and execute malicious code on the host box.…

The Register – Security
Secure Hunter Anti -Malware

The post How to break out of a hypervisor: Abuse Qemu-KVM on-Linux pre-5.3 – or VMware with an AMD driver appeared first on Secure Hunter Anti-Malware.



https://ift.tt/32Qiyru
Secure Hunter

Tuesday, September 17, 2019

How much pass could LastPass pass if LastPass passed last pass? Login-leaking security hole fixed

Update now to stop webpages snooping on recently used credentials

LastPass has fixed a security bug that potentially allowed malicious websites to obtain the username and passphrase inserted by the password manager on the previously visited site.…

The Register – Security
Secure Hunter Anti -Malware

The post How much pass could LastPass pass if LastPass passed last pass? Login-leaking security hole fixed appeared first on Secure Hunter Anti-Malware.



https://ift.tt/302dBhd
Secure Hunter

Monday, September 16, 2019

You all know why you should encrypt your cloud data – now learn where and how…

AWS spills the beans

Promo  You know it makes sense to go to the cloud, and you know it makes sense to encrypt your data. But just what should you be encrypting – and where? And what’s the most efficient way of carrying it out, and managing your encryption strategy in the future?…

The Register – Security
Secure Hunter Anti -Malware

The post You all know why you should encrypt your cloud data – now learn where and how… appeared first on Secure Hunter Anti-Malware.



https://ift.tt/307I1yC
Secure Hunter

Sunday, September 15, 2019

Consumer ransomware insurance? You could be painting a target on us all for avaricious crims

D’ya hear that, cybercrooks? $ 50k up for grabs.

Fire, theft, flood – and now cyber attack. Customers of a Californian biz offering payouts of up to $ 50,000 in case your cat videos get Wannacry’d but experts worry it could make the problem worse.…

The Register – Security
Secure Hunter Anti -Malware

The post Consumer ransomware insurance? You could be painting a target on us all for avaricious crims appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2UVZ55Z
Secure Hunter

Saturday, September 14, 2019

Whoa, bot wars: As cybercrooks add more AI to their arsenal, the goodies will have to too

The future is automated, says Trend Micro bod

Infosec techies should prepare to both fend off AI attacks and welcome the technology into their armoury of tools, reckons Trend Micro’s director of cybercrime research.…

The Register – Security
Secure Hunter Anti -Malware

The post Whoa, bot wars: As cybercrooks add more AI to their arsenal, the goodies will have to too appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2Ahh2lP
Secure Hunter

Friday, September 13, 2019

From PowerShell to auditing: Expand your cybersecurity know-how at SANS London 2019

Gain the skills you need to fend off miscreants this October in the UK capital

Promo  The internet is full of powerful, fast-changing hacking tools and malicious actors who know how to use them. That makes the regular training events held by IT security specialist SANS Institute an essential destination for technology professionals keen to sharpen their defensive skills and protect their organisation against today’s ever-more ingenious attackers.…

The Register – Security
Secure Hunter Anti -Malware

The post From PowerShell to auditing: Expand your cybersecurity know-how at SANS London 2019 appeared first on Secure Hunter Anti-Malware.



https://ift.tt/34JMkQr
Secure Hunter

Thursday, September 12, 2019

Mystery database left open turns out to be massive Groupon fraud ticket fraud ring

Yes, turns out people still use this voucher biz – who knew?

We have a new twist on the “researchers find unprotected public-facing cloud-hosted database” story, as one recently uncovered archive turned out to be at the heart of a years-long fraud operation.…

The Register – Security
Secure Hunter Anti -Malware

The post Mystery database left open turns out to be massive Groupon fraud ticket fraud ring appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2Q4Jwdb
Secure Hunter

Wednesday, September 11, 2019

D-Link, Comba network gear leave passwords open for potentially whole world to see

Manufacturers seem not to care – some routers still awaiting patches

DSL modems and Wi-Fi routers from D-Link and Comba have been found to be leaving owners’ passwords out in the open.…

The Register – Security
Secure Hunter Anti -Malware

The post D-Link, Comba network gear leave passwords open for potentially whole world to see appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZMmziL
Secure Hunter

Tuesday, September 10, 2019

Mozilla Firefox to begin slow rollout of DNS-over-HTTPS by default at the end of the month

To protect query privacy, browser maker will run everything through Cloudflare

On Friday, Mozilla said it plans to implement the DNS-over-HTTPS (DoH) protocol by default in its Firefox browser, with a slow rollout starting in late September.…

The Register – Security
Secure Hunter Anti -Malware

The post Mozilla Firefox to begin slow rollout of DNS-over-HTTPS by default at the end of the month appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2HZc3um
Secure Hunter

Monday, September 9, 2019

Apple and Google trade barbs over bugs, digital lothario arrested and Bluekeep gets busy

Also, XKCD forums hacked and Monster monstered

Roundup  Here’s a look back at some of the latest security bits and bobbles besides the stuff we already covered over the past week.…

The Register – Security
Secure Hunter Anti -Malware

The post Apple and Google trade barbs over bugs, digital lothario arrested and Bluekeep gets busy appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZLrVM3
Secure Hunter

Sunday, September 8, 2019

Too bad, so sad, exploit devs: Google patches possibly several million dollars’ worth of security flaws in Android

Except one – a ‘your phone is now my phone’ bug reported months ago and still not fixed

Google this week emitted the September edition of its monthly Android security updates – and has left at least one known vulnerability unpatched. Also, in case you missed it, the web giant started rolling out Android 10 a few days ago.…

The Register – Security
Secure Hunter Anti -Malware

The post Too bad, so sad, exploit devs: Google patches possibly several million dollars’ worth of security flaws in Android appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2UFaPJP
Secure Hunter

Saturday, September 7, 2019

Massachusetts city tells ransomware scumbags to RYUK off, our IT staff will handle this easily

Oh, so you can just do that? That’s possible? Restoring from clean, good backups after an infection? Who knew?

The City of New Bedford, in Massachusetts, has found a way to deal with ransomware without paying: shoring up defenses, restoring from backups, and rebuilding systems.…

The Register – Security
Secure Hunter Anti -Malware

The post Massachusetts city tells ransomware scumbags to RYUK off, our IT staff will handle this easily appeared first on Secure Hunter Anti-Malware.



https://ift.tt/3193Rzm
Secure Hunter

Friday, September 6, 2019

Exim marks the spot… of remote code execution: Patch due out today for ‘give me root’ flaw in mail server

Install incoming update to avoid having your boxes hijacked

The widely used Exim email server software is due to be patched today to close a critical security flaw that can be exploited to potentially gain root-level access to the machine.…

The Register – Security
Secure Hunter Anti -Malware

The post Exim marks the spot… of remote code execution: Patch due out today for ‘give me root’ flaw in mail server appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2ZOqXd3
Secure Hunter

Wednesday, September 4, 2019

Bus pass or bus ass? Hackers peeved about public transport claim to have reverse engineered ticket app for free rides

‘RSA private keys’ baked into Manchester firm’s software

A hacker collective has said that it found the private keys for a Manchester bus company’s QR code ticketing app embedded in the app itself – and has now released its own ride-buses-for-free code.…

The Register – Security
Secure Hunter Anti -Malware

The post Bus pass or bus ass? Hackers peeved about public transport claim to have reverse engineered ticket app for free rides appeared first on Secure Hunter Anti-Malware.



https://ift.tt/32rg02I
Secure Hunter

Tuesday, September 3, 2019

Enjoy the holiday weekend America? Well-rested? Good. Supermicro server boards can be remotely hijacked

Virtual USB hub allows attackers to get into BMCs

Tens of thousands of servers around the world are believed to be hosting a vulnerability that would allow an attacker to remotely commandeer them.…

The Register – Security
Secure Hunter Anti -Malware

The post Enjoy the holiday weekend America? Well-rested? Good. Supermicro server boards can be remotely hijacked appeared first on Secure Hunter Anti-Malware.



https://ift.tt/34o6mjk
Secure Hunter

Monday, September 2, 2019

Google security crew sheds light on long-running super-stealthy iOS spyware operation

Project Zero dissects years-long surveillance campaign

Updated  Google’s Project Zero says more than a dozen iOS flaws that Apple patched back in February had been under attack for years.…

The Register – Security
Secure Hunter Anti -Malware

The post Google security crew sheds light on long-running super-stealthy iOS spyware operation appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2PBpsiA
Secure Hunter

Sunday, September 1, 2019

Coin-mining malware jumps from Arm IoT gear to Intel servers

Cryptocurrency crooks look to siphon cycles from enterprise kit

Exclusive  A coin-mining malware infection previously only seen on Arm-powered IoT devices has made the jump to Intel systems.…

The Register – Security
Secure Hunter Anti -Malware

The post Coin-mining malware jumps from Arm IoT gear to Intel servers appeared first on Secure Hunter Anti-Malware.



https://ift.tt/2HAAdLC
Secure Hunter