[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (146 articles)

|

// AI-powered summary generated at 20:00

> UK’s Environmental Agencies Lose Hundreds of Devices
DEFRA and Environment Agency respond to FOI requests
> Symantec Axes Hundreds of US Jobs
Symantec lays off hundreds of employees amid buyout rumors
> Crypto 2019 Takeaways
This year’s IACR Crypto conference was an excellent blend of far-out theory and down-to-earth pragmatism. A major theme throughout the conference was the huge importance of getting basic cryptographic primitives right. Systems ranging from TLS servers and bitcoin wallets to state-of-the-art secure m...
> Cybersecurity Firm Employees Charged with Burglary of Courthouse Client
Coalfire employees charged with burglary of courthouse that had hired firm to carry out security checks
> MSOE Opens Cyber-Learning Center Built with $34m Alumnus Donation
Milwaukee School of Engineering opens new cybersecurity facility funded by $34m donation from former student
> Multiples vulnérabilités dans les produits Siemens (10 septembre 2019)
De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et un contournement de la politique de sécurité.
> #44CON: GPS Trackers Hacked to Make Premium Rate Calls
How consistent API flaws allowed IoT devices to be hacked
> #44CON: Establishing a Mental Health Toolbox
The steps to take to ensure your mental health stability
> DeepState Now Supports Ensemble Fuzzing
We are proud to announce the integration of ensemble fuzzing into DeepState, our unit-testing framework powered by fuzzing and symbolic execution. Ensemble fuzzing allows testers to execute multiple fuzzers with varying heuristics in a single campaign, while maintaining an architecture for synchroni...
> Marketer Exposes 198 Million Car Buyer Records
Dealer Leads leaves 413GB of data publicly accessible
> Iranian Threat Group Targets 380 Global Universities
Cobalt Dickens continues its long-running quest for data
> Rewriting Functions in Compiled Binaries
As a summer intern at Trail of Bits, I’ve been working on building Fennec, a tool to automatically replace function calls in compiled binaries that’s built on top of McSema, a binary lifter developed by Trail of Bits. The Problem Let’s say you have a compiled binary, but you […]
> Mirai and SMB Attacks Dominate 1H 2019
F-Secure warns that users still aren’t patching or choosing strong passwords
> Ireland Hit by Pedophile Sextortion Email Scam
Aggressive sextortion emails are being sent to Irish inboxes, threatening to expose people as pedophiles
> Coinbase under attack and cookie theft
Recently Coinbase published a well written blog post on how they were under attack. The adversaries exploite Firefox 0-days. Details can be found here. One intersting aspect is the following: “We have also observed the attackers specifically target cloud services, e.g. gmail and others, via browser...
> A Third of Security Pros Have Skipped Cyber-Safety Checks to Launch Products Faster
Study finds 34% of security pros bypass security to get products to market quicker
> UNICEF Leaks Personal Data of 8000 Online Learners
UNICEF apologizes after leaking personal info of 8000 online learners
> Binary symbolic execution with KLEE-Native
KLEE-Native, a fork of KLEE that operates on binary program snapshots by lifting machine code to LLVM bitcode.
> Google Searches Reveal the 15-Year Decline of AV
Redscan data shows rising interest in SIEM, threat hunting, zero trust and more
> Over Half of UK Firms Still Not GDPR Compliant
Regulation slips worryingly down priority list for many firms