They can’t read much of your data, but even a few stray network packets could tell them something they’re not supposed to know. This article has been indexed from Naked Security – Sophos Read the original article: Researchers claim they…
Category: Naked Security – Sophos
World Backup Day is here again – 5 tips to keep your precious data safe
The only backup you will ever regret is the one you didn’t make… This article has been indexed from Naked Security – Sophos Read the original article: World Backup Day is here again – 5 tips to keep your precious…
Supply chain blunder puts 3CX telephone app users at risk
Booby-trapped app, apparently signed and shipped by 3CX itself after its source code repository was broken into. This article has been indexed from Naked Security – Sophos Read the original article: Supply chain blunder puts 3CX telephone app users at…
S3 Ep128: So you want to be a cybercriminal? [Audio + Text]
Latest episode – listen now! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep128: So you want to be a cybercriminal? [Audio + Text]
S3 Ep128: So you want to be a cybercriminal? [Audio + Text]
Latest episode – listen now! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep128: So you want to be a cybercriminal? [Audio + Text]
Cops use fake DDoS services to take aim at wannabe cybercriminals
Thinking of trying a bit of DDoSsing to get a feel for life at the fringes of the Dark Side? Don’t do it! This article has been indexed from Naked Security – Sophos Read the original article: Cops use fake…
Apple patches everything, including a zero-day fix for iOS 15 users
Got an older iPhone that can’t run iOS 16? You’ve got a zero-day to deal with! That super-cool Studio Display monitor needs patching, too. This article has been indexed from Naked Security – Sophos Read the original article: Apple patches…
Microsoft assigns CVE to Snipping Tool bug, pushes patch to Store
Microsoft says “successful exploitation requires uncommon user interaction”, but it’s the innocent and accidental leakage of private data you should be concerned about. This article has been indexed from Naked Security – Sophos Read the original article: Microsoft assigns CVE…
In Memoriam – Gordon Moore, who put the more in “Moore’s Law”
His prediction was called a “Law”, though it was an exhortation to engineering excellence as much it was an estimate. This article has been indexed from Naked Security – Sophos Read the original article: In Memoriam – Gordon Moore, who…
WooCommerce Payments plugin for WordPress has an admin-level hole – patch now!
Admin-level holes in websites are always a bad thing… and for “bad”, read “worse” if it’s an e-commerce site. This article has been indexed from Naked Security – Sophos Read the original article: WooCommerce Payments plugin for WordPress has an…
S3 Ep127: When you chop someone out of a photo, but there they are anyway…
Listen now – latest episode. Full transcript inside. This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep127: When you chop someone out of a photo, but there they are anyway…
Windows 11 also vulnerable to “aCropalypse” image data leakage
Turns out that the Windows 11 Snipping Tool has the same “aCropalypse” data leakage bug as Pixel phones. Here’s how to work around the problem… This article has been indexed from Naked Security – Sophos Read the original article: Windows…
Google Pixel phones had a serious data leakage bug – here’s what to do!
What if the “safe” images you shared after carefully cropping them… had some or all of the “unsafe” pixels left behind anyway? This article has been indexed from Naked Security – Sophos Read the original article: Google Pixel phones had…
Bitcoin ATM customers hacked by video upload that was actually an app
As the misquote goes, “Once is misfortune…” This is the second time, and you know what Lady Bracknell had to say about that… This article has been indexed from Naked Security – Sophos Read the original article: Bitcoin ATM customers…
Dangerous Android phone 0-day bugs revealed – patch or work around them now!
Despite its usually inflexible 0-day disclosure policy, Google is keeping four mobile modem bugs semi-secret due to likely ease of exploitation. This article has been indexed from Naked Security – Sophos Read the original article: Dangerous Android phone 0-day bugs…
S3 Ep 126: The price of fast fashion (and feature creep) [Audio + Text]
Worried about rogue apps? Unsure about the new Outlook zero-day? Clear advice in plain English… just like old times, with Duck and Chet! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep 126:…
Microsoft fixes two 0-days on Patch Tuesday – update now!
An email you haven’t even looked at yet could be used to trick your mail server into helping crooks to logon as you. This article has been indexed from Naked Security – Sophos Read the original article: Microsoft fixes two…
Firefox 111 patches 11 holes, but not 1 zero-day among them…
In the game of cricket, 111 is an unauspicious number, but for Firefox, there doesn’t seem to be much to worry about this month. This article has been indexed from Naked Security – Sophos Read the original article: Firefox 111…
Linux gets double-quick double-update to fix kernel Oops!
Linux doesn’t BSoD. It has oopses and panics instead. (We show you how to make a kernel module to explore further.) This article has been indexed from Naked Security – Sophos Read the original article: Linux gets double-quick double-update to…
SHEIN shopping app goes rogue, grabs price and URL data from your clipboard
It’s not exactly data theft, but it’s worrying close to “unintentional treachery” – apparently because it’s great for marketing purposes This article has been indexed from Naked Security – Sophos Read the original article: SHEIN shopping app goes rogue, grabs…
S3 Ep125: When security hardware has security holes [Audio + Text]
Lastest episode – listen now! (Full transcript inside.) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep125: When security hardware has security holes [Audio + Text]
Serious Security: TPM 2.0 vulns – is your super-secure data at risk?
Security bugs in the very code you’ve been told you must have to improve the security of your computer… This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: TPM 2.0 vulns – is…
DoppelPaymer ransomware supsects arrested in Germany and Ukraine
Devices seized, suspects interrogated and arrested, allegedly connected to devastating cyberattack on University Hospital in Düsseldorf. This article has been indexed from Naked Security – Sophos Read the original article: DoppelPaymer ransomware supsects arrested in Germany and Ukraine
Feds warn about right Royal ransomware rampage that runs the gamut of TTPs
Wondering which cybercrime tools, techniques and procedures to focus on? How about any and all of them? This article has been indexed from Naked Security – Sophos Read the original article: Feds warn about right Royal ransomware rampage that runs…
S3 Ep124: When so-called security apps go rogue [Audio + Text]
Rogue software packages. Rogue “sysadmins”. Rogue keyloggers. Rogue authenticators. Rogue ROGUES! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep124: When so-called security apps go rogue [Audio + Text]
LastPass: Keylogger on home PC led to cracked corporate password vault
Seems the crooks implanted a keylogger via a vulnerable media app (LastPass politely didn’t say which one!) on a developer’s home computer. This article has been indexed from Naked Security – Sophos Read the original article: LastPass: Keylogger on home…
LastPass: The crooks used a keylogger to crack a corporate password vault
Seems the crooks implanted a keylogger via a vulnerable media app (LastPass politely didn’t say which one!) on a developer’s home computer. This article has been indexed from Naked Security – Sophos Read the original article: LastPass: The crooks used…
LastPass: The crooks used a keylogger to crack a corporatre password vault
Seems the crooks implanted a keylogger via a vulnerable media app (LastPass politely didn’t say which one!) on a developer’s home computer. This article has been indexed from Naked Security – Sophos Read the original article: LastPass: The crooks used…
Dutch police arrest three cyberextortion suspects who allegedly earned millions
Ever paid hush money to crooks who broke into your network? Wondered how much you can trust them? This article has been indexed from Naked Security – Sophos Read the original article: Dutch police arrest three cyberextortion suspects who allegedly…
Beware rogue 2FA apps in App Store and Google Play – don’t get hacked!
Even in Apple’s and Google’s “walled gardens”, there are plenty of 2FA apps that are either dangerously incompetent, or unrepentantly malicious. (Or perhaps both.) This article has been indexed from Naked Security – Sophos Read the original article: Beware rogue…
S3 Ep123: Crypto company compromise kerfuffle [Audio + Text]
Latest episode – listen now! Top-notch advice for cybersecurity, both at work and at home. This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep123: Crypto company compromise kerfuffle [Audio + Text]
NPM JavaScript packages abused to create scambait links in bulk
Free spins? Bonus game points? Cheap social media followers? What harm could it possibly do if you just take a tiny little look?! This article has been indexed from Naked Security – Sophos Read the original article: NPM JavaScript packages…
Coinbase breached by social engineers, employee data stolen
Another day, another “sophisticated” attack. This time, the company has handily included some useful advice along with its mea culpa… This article has been indexed from Naked Security – Sophos Read the original article: Coinbase breached by social engineers, employee…
Twitter tells users: Pay up if you want to keep using insecure 2FA
Ironically, Twitter Blue users will be allowed to keep using the very 2FA process that’s not considered secure enough for everyone else. This article has been indexed from Naked Security – Sophos Read the original article: Twitter tells users: Pay…
GoDaddy admits: Crooks hit us with malware, poisoned customer websites
New report admits that attackers were detected in the network about three months ago, and may have been attacking for about three years. This article has been indexed from Naked Security – Sophos Read the original article: GoDaddy admits: Crooks…
S3 Ep122: Stop calling every breach “sophisticated”! [Audio + Text]
Latest episode – listen now! (Full transcript inside.) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep122: Stop calling every breach “sophisticated”! [Audio + Text]
Microsoft Patch Tuesday: 36 RCE bugs, 3 zero-days, 75 CVEs
Lots of lovely patches for your Valentine’s Day delight. Get ’em as soon as you can… This article has been indexed from Naked Security – Sophos Read the original article: Microsoft Patch Tuesday: 36 RCE bugs, 3 zero-days, 75 CVEs
Apple fixes zero-day spyware implant bug – patch now!
Everyone update now! Except for those who don’t need to! Or who need to but will only get updates later on, though Apple isn’t saying yet! This article has been indexed from Naked Security – Sophos Read the original article:…
Serious Security: GnuTLS follows OpenSSL, fixes timing attack bug
Conditional code considered cryptographically counterproductive. This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: GnuTLS follows OpenSSL, fixes timing attack bug
Reddit admits it was hacked and data stolen, says “Don’t panic”
Reddit is suggesting three tips as a follow-up to this breach. We agree with two of them but not with the third… This article has been indexed from Naked Security – Sophos Read the original article: Reddit admits it was…
OpenSSL fixes High Severity data-stealing bug – patch now!
7 memory mismanagements and a timing attack. We explain all the jargon bug terminology in plain English… This article has been indexed from Naked Security – Sophos Read the original article: OpenSSL fixes High Severity data-stealing bug – patch now!
S3 Ep121: Can you get hacked and then prosecuted for it? [Audio + Text]
Latest epsiode. Listen now! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep121: Can you get hacked and then prosecuted for it? [Audio + Text]
OpenSSL fixes High Severity data-stealing bug – patch now!
7 memory mismanagements and a timing attack. We explain all the jargon bug terminology in plain English… This article has been indexed from Naked Security – Sophos Read the original article: OpenSSL fixes High Severity data-stealing bug – patch now!
VMWare user? Worried about “ESXi ransomware”? Check your patches now!
To borrow from HHGttG, please DON’T PANIC. But if you are two years out of date with patches, please do ACT NOW! This article has been indexed from Naked Security – Sophos Read the original article: VMWare user? Worried about…
Tracers in the Dark: The Global Hunt for the Crime Lords of Crypto
Hear renowned cybersecurity author Andy Greenberg’s thoughtful commentary about the “war on crypto” as we talk to him about his new book… This article has been indexed from Naked Security – Sophos Read the original article: Tracers in the Dark:…
Finnish psychotherapy extortion suspect arrested in France
Company transcribed ultra-personal conversations, didn’t secure them. Criminal stole them, then extorted thousands of vulnerable patients. This article has been indexed from Naked Security – Sophos Read the original article: Finnish psychotherapy extortion suspect arrested in France
S3 Ep120: When dud crypto simply won’t let go [Audio + Text]
Latest episode – listen now! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep120: When dud crypto simply won’t let go [Audio + Text]
OpenSSH fixes double-free memory bug that’s pokable over the network
It’s a bug fix for a bug fix. A memory leak was turned into a double-free that has now been turned into correct code… This article has been indexed from Naked Security – Sophos Read the original article: OpenSSH fixes…
Password-stealing “vulnerability” reported in KeePass – bug or feature?
Is it a vulnerability if someone with control over your account can mess with files that your account is allowed to access anyway? This article has been indexed from Naked Security – Sophos Read the original article: Password-stealing “vulnerability” reported…
GitHub code-signing certificates stolen (but will be revoked this week)
There was a breach, so the bad news isn’t great, but the good news isn’t too bad… This article has been indexed from Naked Security – Sophos Read the original article: GitHub code-signing certificates stolen (but will be revoked this…
S3 Ep120: When dud crypto simply won’t let go [Audio + Text]
Latest episode – listen now! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep120: When dud crypto simply won’t let go [Audio + Text]
Password-stealing “vulnerability” reported in KeePass – bug or feature?
Is it a vulnerability if someone with control over your account can mess with files that your account is allowed to access anyway? This article has been indexed from Naked Security – Sophos Read the original article: Password-stealing “vulnerability” reported…
GitHub code-signing certificates stolen (but will be revoked this week)
There was a breach, so the bad news isn’t great, but the good news isn’t too bad… This article has been indexed from Naked Security – Sophos Read the original article: GitHub code-signing certificates stolen (but will be revoked this…
Serious Security: The Samba logon bug caused by outdated crypto
Enjoy our Serious Security deep dive into this real-world example of why cryptographic agility is important! This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: The Samba logon bug caused by outdated crypto
GoTo admits: Customer cloud backups stolen together with decryption key
We were going to write, “Once more unto the breach, dear friends, once more”… but it seems to go without saying these days. This article has been indexed from Naked Security – Sophos Read the original article: GoTo admits: Customer…
Hive ransomware servers shut down at last, says FBI
Unfortunately, you’ve probably already heard the cliche that “cybercrime abhors a vacuum”… This article has been indexed from Naked Security – Sophos Read the original article: Hive ransomware servers shut down at last, says FBI
Dutch suspect locked up for alleged personal data megathefts
Undercover Austrian “controlled data buy” leads to Amsterdam arrest and ongoing investigation. Suspect is said to steal and sell all sorts of data, including medical records. This article has been indexed from Naked Security – Sophos Read the original article:…
Apple patches are out – old iPhones get an old zero-day fix at last!
Don’t delay, especially if you’re still running an iOS 12 device… please do it today! This article has been indexed from Naked Security – Sophos Read the original article: Apple patches are out – old iPhones get an old zero-day…
S3 Ep119: Breaches, patches, leaks and tweaks! [Audio + Text]
Lastest episode – listen now! (Or read the transcript.) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep119: Breaches, patches, leaks and tweaks! [Audio + Text]
GoTo admits: Customer cloud backups stolen together with decryption key
We were going to write, “Once more unto the breach, dear friends, once more”… but it seems to go without saying these days. This article has been indexed from Naked Security – Sophos Read the original article: GoTo admits: Customer…
Apple patches are out – old iPhones get an old zero-day fix at last!
Don’t delay, especially if you’re still running an iOS 12 device… please do it today! This article has been indexed from Naked Security – Sophos Read the original article: Apple patches are out – old iPhones get an old zero-day…
Serious Security: How dEliBeRaTe tYpOs might imProVe DNS security
It’s a really cool and super-simple trick. The question is, “Will it help?” This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: How dEliBeRaTe tYpOs might imProVe DNS security
T-Mobile admits to 37,000,000 customer records stolen by “bad actor”
Once more, it’s time for Shakespeare’s words: Once more unto the breach… This article has been indexed from Naked Security – Sophos Read the original article: T-Mobile admits to 37,000,000 customer records stolen by “bad actor”
S3 Ep118: Guess your password? No need if it’s stolen already! [Audio + Text]
As always: entertaining, informative and educational… and not bogged down with jargon! Listen (or read) now… This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep118: Guess your password? No need if it’s stolen…
Serious Security: Unravelling the LifeLock “hacked passwords” story
Four straight-talking tips to improve your online security, whether you’re a LifeLock customer or not. This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: Unravelling the LifeLock “hacked passwords” story
Multi-million investment scammers busted in four-country Europol raid
216 questioned, 15 arrested, 4 fake call centres searched, millions seized… This article has been indexed from Naked Security – Sophos Read the original article: Multi-million investment scammers busted in four-country Europol raid
S3 Ep117: The crypto crisis that wasn’t (and farewell forever to Win 7) [Audio + Text]
Tell us in the comments… What’s the REAL reason there was no Windows 9? (No theory too far-fetched!) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep117: The crypto crisis that wasn’t (and…
Microsoft Patch Tuesday: One 0-day; Win 7 and 8.1 get last-ever patches
Get ’em while they’re hot. And get ’em for the very last time, if you still have Windows 7 or 8.1… This article has been indexed from Naked Security – Sophos Read the original article: Microsoft Patch Tuesday: One 0-day;…
Popular JWT cloud security library patches “remote” code execution hole
It’s remotely triggerable, but attackers would already have pretty deep network access if they could “prime” your server for compromise. This article has been indexed from Naked Security – Sophos Read the original article: Popular JWT cloud security library patches…
CircleCI – code-building service suffers total credential compromise
They’re saying “rotate secrets”… in plain English, they mean “change your credentials”. The company has a tool to help you find them all. This article has been indexed from Naked Security – Sophos Read the original article: CircleCI – code-building…
RSA crypto cracked? Or perhaps not!
Stand down from blue alert, it seems… but why not plan your cryptographic agility anyway? This article has been indexed from Naked Security – Sophos Read the original article: RSA crypto cracked? Or perhaps not!
Serious Security: How to improve cryptography, resist supply chain attacks, and handle data breaches
Lessons for us all: improve cryptography, fight cybercrime, own your supply chain… and don’t steal my data and then pretend you’re sorry. This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: How to…
S3 Ep116: Last straw for LastPass? Is crypto doomed? [Audio + Text]
Lots of big issues this week: breaches, encryption, supply chains and patching problems. Listen now! (Full transcript inside.) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep116: Last straw for LastPass? Is crypto…
Serious Security: Vital cybersecurity lessons from the holiday season
Lessons for us all: improve cryptography, fight cybercrime, own your supply chain… and don’t steal my data and then pretend you’re sorry. This article has been indexed from Naked Security – Sophos Read the original article: Serious Security: Vital cybersecurity…
Inside a scammers’ lair: Ukraine busts 40 in fake bank call-centre raid
When someone calls you up to warn you that your bank account is under attack – it’s true, because THAT VERY PERSON is the one attacking you! This article has been indexed from Naked Security – Sophos Read the original…
PyTorch: Machine Learning toolkit pwned from Christmas to New Year
The bad news: the crooks have your SSH private keys. The good news: only users of the “nightly” build were affected. This article has been indexed from Naked Security – Sophos Read the original article: PyTorch: Machine Learning toolkit pwned…
Naked Security 33 1/3 – Cybersecurity predictions for 2023 and beyond
The problem with anniversaries is that there’s an almost infinite number of them every day… This article has been indexed from Naked Security – Sophos Read the original article: Naked Security 33 1/3 – Cybersecurity predictions for 2023 and beyond
The horror! The horror! NOTEPAD gets tabbed editing (very briefly)
Is there a special meaning of “don’t” that means “go right ahead”? This article has been indexed from Naked Security – Sophos Read the original article: The horror! The horror! NOTEPAD gets tabbed editing (very briefly)
US passes the Quantum Computing Cybersecurity Preparedness Act – and why not?
Cryptographic agility: the ability and the willingness to change quickly when needed. This article has been indexed from Naked Security – Sophos Read the original article: US passes the Quantum Computing Cybersecurity Preparedness Act – and why not?
S3 Ep115: True crime stories – A day in the life of a cybercrime fighter [Audio + Text]
Listen now – you’ll be alarmed, amused and educated, all in equal measure. (Full transcript in article.) This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep115: True crime stories – A day in…
Twitter data of “+400 million unique users” up for sale – what to do?
If the crooks have connected up your phone number and your Twitter handle… what could go wrong? This article has been indexed from Naked Security – Sophos Read the original article: Twitter data of “+400 million unique users” up for…
Critical “10-out-of-10” Linux kernel SMB hole – should you worry?
It’s serious, it’s critical, and you could call it severe… but in HHGttG terminology, it’s probably “mostly harmless”. This article has been indexed from Naked Security – Sophos Read the original article: Critical “10-out-of-10” Linux kernel SMB hole – should…
LastPass finally admits: Those crooks who got in? They did steal your password vaults, after all…
The crooks now know who you are, where you live, which computers are yours, where you go online… and they got those password vaults, too. This article has been indexed from Naked Security – Sophos Read the original article: LastPass…
LastPass finally admits: They did steal your password vaults after all
The crooks now know who you are, where you live, which computers are yours, where you go online… and they got those password vaults, too. This article has been indexed from Naked Security – Sophos Read the original article: LastPass…
S3 Ep114: Preventing cyberthreats – stop them before they stop you! [Audio + Text]
Join world-renowned expert Fraser Howard, Director of Research at SophosLabs, for this fascinating episode on how to fight cybercrime. This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep114: Preventing cyberthreats – stop them…
“Suspicious login” scammers up their game – take care at Christmas
A picture is worth 1024 words – we clicked through so you don’t have to. This article has been indexed from Naked Security – Sophos Read the original article: “Suspicious login” scammers up their game – take care at Christmas
Microsoft dishes the dirt on Apple’s “Achilles heel” shortly after fixing similar Windows bug
It happens to the best of us: Microsoft highlights a security bypass bug on Macs that is curiously similar to a recent Windows 0-day. This article has been indexed from Naked Security – Sophos Read the original article: Microsoft dishes…
OneCoin scammer Sebastian Greenwood pleads guilty, “Cryptoqueen” still missing
The Cryptoqueen herself is still missing, but her co-conspirator, who is said to have pocketed over $20m a month, has been convicted. This article has been indexed from Naked Security – Sophos Read the original article: OneCoin scammer Sebastian Greenwood…
Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
Tales of derring-do in the cyberunderground! (And some zero-days.) This article has been indexed from Naked Security – Sophos Read the original article: Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
Apple patches everything, finally reveals mystery of iOS 16.1.2
There’s an update for everything this time, not just for iOS. This article has been indexed from Naked Security – Sophos Read the original article: Apple patches everything, finally reveals mystery of iOS 16.1.2
S3 Ep113: Pwning the Windows kernel – the crooks who hoodwinked Microsoft [Audio + Text]
Return o’ the rookit, super-sneaky wireless spyware, credit card skimming, and patches galore. Listen and learn! This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep113: Pwning the Windows kernel – the crooks who…
Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
Tales of derring-do in the cyberunderground! (And some zero-days.) This article has been indexed from Naked Security – Sophos Read the original article: Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware
Apple patches everything, finally reveals mystery of iOS 16.1.2
There’s an update for everything this time, not just for iOS. This article has been indexed from Naked Security – Sophos Read the original article: Apple patches everything, finally reveals mystery of iOS 16.1.2
COVID-bit: the wireless spyware trick with an unfortunate name
It’s not the switching that’s the problem, it’s the switching of the switching! This article has been indexed from Naked Security – Sophos Read the original article: COVID-bit: the wireless spyware trick with an unfortunate name
Pwn2Own Toronto: 54 hacks, 63 new bugs, $1 million in bounties
That’s a mean average of $15,710 per bug… and 63 fewer bugs out there for crooks and rogues to find. This article has been indexed from Naked Security – Sophos Read the original article: Pwn2Own Toronto: 54 hacks, 63 new…
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
Breaches, exploits, busts, buffer overflows and bug hunting – entertaining and educational in equal measure. This article has been indexed from Naked Security – Sophos Read the original article: S3 Ep112: Data breaches can haunt you more than once! [Audio…
Credit card skimming – the long and winding road of supply chain failure
Don’t keep calling home to a JavaScript server that closed its doors eight years ago! This article has been indexed from Naked Security – Sophos Read the original article: Credit card skimming – the long and winding road of supply…
SIM swapper sent to prison for 2FA cryptocurrency heist of over $20m
Guilty party got 18 months, also has to pay back $20m he probably hasn’t got, which could land him in more hot water. This article has been indexed from Naked Security – Sophos Read the original article: SIM swapper sent…
Number Nine! Chrome fixes another 2022 zero-day, Edge patched too
Ninth more unto the breach, dear friends, ninth more. This article has been indexed from Naked Security – Sophos Read the original article: Number Nine! Chrome fixes another 2022 zero-day, Edge patched too
Ping of death! FreeBSD fixes crashtastic bug in network tool
It’s a venerable program, and this version had a venerable bug in it. This article has been indexed from Naked Security – Sophos Read the original article: Ping of death! FreeBSD fixes crashtastic bug in network tool