Chip giant to focus on newer models, as research highlights growing update challenges
China pegged for supporting North Korea hacking efforts
Plenty of static analyzers can perform vulnerability discovery on source code, but what if you only have the binary? How can we model a vulnerability and then check a binary to see if it is vulnerable? The short answer: use Binary Ninja’s MLIL and SSA form. Together, they make it easy to build and s...
Social network on charm offensive with new privacy features
They believe that in the next year they will struggle to deal with cyber-threats or be unable to defend against them.
Two years ago, when we began taking on blockchain security engagements, there were no tools engineered for the work. No static analyzers, fuzzers, or reverse engineering tools for Ethereum. So, we invested significant time and expertise to create what we needed, adapt what we already had, and refine...
Half of UK businesses don't update default passwords on IoT devices when they are added to corporate networks.
The Department of Homeland Security doesn’t know who’s behind the eavesdropping equipment.
This is the second half of our blog post on the Meltdown an Spectre vulnerabilities, describing Spectre Variant 1 (V1) and Spectre Variant 2 (V2). If you have not done so already, please review the first blog post for an accessible review of computer architecture fundamentals. This blog post will st...
FireEye report reveals worrying trend
Intelligence and processes must improve, warns vendor
Two weeks ago, we were engaged by CTS Labs as independent consultants at our standard consulting rates to review and confirm the technical accuracy of their preliminary findings. We participated neither in their research nor in their subsequent disclosure process. Our recommendation to CTS was to di...
Third-party provider is targeted as firms scramble for workarounds
Many Americans are taking steps to change their behavior in order to be more protected.
60% of executives said they lack appropriate controls to protect their environments.
The app steals information, photos, phone numbers and so on from a mobile phone.
Grindr will stop sharing users’ HIV statuses after it was revealed they were shared with third-party analytics companies
Chrome clampdown effective immediately
Bakery chain needs to get better at incident response, claim experts
It wants social media handles, phone numbers and more…from all travelers