[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Michael Phelps Targeted by Hackers After Winning 19th Gold Medal
New World Hackers has claimed responsibility for taking down the U.S. swimmer’s website.
> Symantec Spots State-Sponsored ‘Strider’ Attacks
Group has only hit seven organizations in five years
> A fuzzer and a symbolic executor walk into a cloud
Finding bugs in programs is hard. Automating the process is even harder. We tackled the harder problem and produced two production-quality bug-finding systems: GRR, a high-throughput fuzzer, and PySymEmu (PSE), a binary symbolic executor with support for concrete inputs. From afar, fuzzing is a dumb...
> #DefCon: Thermostat Control Hacked to Host Ransomware
Thermostat security has been proved to be particularly vulnerable, with ransomware able to infect and run on it.
> #DefCon US Government Only Holds Dozens of Zero-Days
The US Government only holds “dozens” of vulnerabilities at any one time.
> Your tool works better than mine? Prove it.
No doubt, DARPA’s Cyber Grand Challenge (CGC) will go down in history for advancing the state of the art in a variety of fields: symbolic execution, binary translation, and dynamic instrumentation, to name a few. But there is one contribution that we believe has been overlooked so far, and that may...
> Researchers Hack Tesla S's Autopilot System
The white hats showed the potential to make surrounding objects “disappear” from the autopilot’s view.
> Mayhem the Hacker-Bot Wins $2M DARPA Challenge
Mayhem was created by a Pittsburgh-based team known as ForAllSecure—one of seven teams that competed for nearly $4 million.
> Why I didn’t catch any Pokemon today
tl;dr While the internet went crazy today, we went fact finding. Here are our notes on Pokemon Go’s permissions to your Google account. Here’s what Jay and I set out to do at around 6pm today: Find what permissions Pokemon Go is actually requesting Investigate what the permissions actually do Replic...
> #BHUSA: Apple To Pay Bug Bounties
In the wake of its legal battle with the FBI over security vulnerabilities and access, Apple is launching its first-ever bug bounty program with potential payouts as large as USD$200,000.
> #BHUSA Researchers Present Deep Sea Phishing Exercise
Using data science, cybersecurity researchers have released a new approach that makes automated phishing exploits almost as fruitful as typically more time-consuming spear-phishing methods.
> HTTP/2 Bugs Could Deny Service for Millions
Imperva urges firms to implement safeguards
> Italian Android RAT Targets China and Japan
New info-stealing malware could be part of wider APT campaign
> #BUHSA Attacks on Activists are Prevalent, but Unsophisticated
State-sponsored attacks and tool used have been observed to not be sophisticated, but activists remain in danger.
> #BHUSA: 15 Years of Under-investment in Cybersecurity Makes Us Think the Sky is Falling
We can’t stop spending on cybersecurity in favour of cyber-insurance, say Deloitte researchers at Black Hat, Las Vegas
> #BHUSA Build Backdoors and Government Will Use Them
Law enforcement has become more aggressive because of encryption, as law enforcement become more eager to access details in investigations.
> #BHUSA: How to Use Linguistic Forensics to Detect Phone Scammers
There is a non-technological solution to defending against phone scammers, said Dr Judith Tabron at Black Hat USA 2016, and it’s at the human level…
> Just in Time for the Olympics, Panda Zeus Chomps Into Brazil
One hungry bear, this Zeus variant is targeting banks, Bitcoin users and local services, just as the country prepares to host the Olympic Games.
> #BHUSA: Microsoft AMSI Stops Script-based Attacks
Stopping script-based attacks can often be an issue of using the protections that are available, and an anti-malware scan interface can help, says pen test expert at Black Hat
> (ISC)2 Approves Live, Online CISSP Certification Test Prep
The program includes 300+ hours of structured learning, including more than 70 hours of live and on-demand expert instruction.