[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (4 articles)

|

// AI-powered summary generated at 12:00

> Apple Removes Top Security Tool for Secretly Stealing Data
Mac App Store app was exfiltrating data to China
> US Elections Must Go Back to Paper — Report
Major two-year study claims e-systems are too vulnerable
> Rattle – an Ethereum EVM binary analysis framework
Most smart contracts have no verified source code, but people still trust them to protect their cryptocurrency. What’s more, several large custodial smart contracts have had security incidents. The security of contracts that exist on the blockchain should be independently ascertainable. Ethereum VM...
> Silicon Valley CEO Pleads Guilty to $1.5m Fraud
Bouxtie founder faces jail
> ICS Computer Attacks Steadily Rising
Africa, Asia and Latin America most targeted for ICS computer attacks, finds Kaspersky Lab
> Contract upgrade anti-patterns
A popular trend in smart contract design is to promote the development of upgradable contracts. At Trail of Bits, we have reviewed many upgradable contracts and believe that this trend is going in the wrong direction. Existing techniques to upgrade contracts have flaws, increase the complexity of th...
> German Researchers Spoof Certificate Authorities
Researchers break certificate authorities' domain validation
> Iranian APT Believed to Be Targeting Citizens
Targeted mobile-based attack against Iranian citizens discovered by Check Point
> Introducing windows-acl: working with ACLs in Rust
Access Control Lists (ACLs) are an integral part of the Microsoft Windows security model. In addition to controlling access to secured resources, they are also used in sandboxing, event auditing, and specifying mandatory integrity levels. They are also exceedingly painful to programmatically manipul...
> UK Teen Hacker Arrested After DDoS-ing Own Email Provider
ProtonMail investigated Apophis Squad to find poor opsec
> US Indicts North Korean Over Sony, Bank and WannaCry Attacks
Lazarus Group member Park allegedly worked for government front company
> Get an open-source security multiplier
An increasing number of organizations and companies (including the federal government) rely on open-source projects in their security operations architecture, secure development tools, and beyond. Open-source solutions offer numerous advantages to development-savvy teams ready to take ownership of t...
> BA Breach Hits 380,000 Card Payments
Hackers compromised website and mobile ap
> Blockers Alone Won't Cure Malvertising Woes
Ad blockers don't go far enough to protect against malvertising, finds The Media Trust
> 174,000 Alerts per Week Besiege Security Teams
State of the SOAR Report finds SOCs only respond to 12,000 alerts per week
> HP Launches First Bug Bounty Program for Printers
The company will offer rewards of up to $10,000
> ICO Delivers ÂŁ60K Fine to Nuisance Email Firm
Marketing company did not seek recipient consent
> Silence Please: Researchers Uncover Two-Man Bank Heist Group
One member suspected of being current or former security bod
> Nielsen Shareholder Sues Over GDPR Statements
Alleges that company misled over its preparedness
> HackerOne Paid $500k in Bug Bounties at DEF CON
Hackers received a historically high payout at H1-702 2018.