NOAA accused of cover-up as cause of incursion remains unknown.
New revelations claim contractor for the Natanz facility was ‘patient zero.’
Le précédent article consacré à shellshock introduisait le sujet et en donnait l’essentiel à savoir..
Ce second article examine les impacts sur les SI industriels en posant la question de la présence de la faille shellshock pour chaque type d’équipement. [...] Lire la suite
He pretended to be Orange security staff member to get log-ins for customer database.
Massive October spike coincides with pro-democracy protests
Au vu des analyses que l’on peut lire dans la presse, cette faille dépasserait en ampleur la précédente star des medias (Heartbleed dans OpenSSL), et menacerait internet de congestion en cas de ver qui comme Slammer [...] Lire la suite
CrowdStrike warns Chinese attackers and hacktivists may be readying campaigns
Mandiant boss says Kremlin and criminal elements have stepped up activity
For every security engineer you train, there are 20 or more developers writing code with potential vulnerabilities. There’s no human way to keep up. We need to be more effective with less resources. It’s time to make security a fully integrated part of modern software development and operations. It’...
The attackers are not only using the aging CVE-2012-0158 vulnerability, but the newer CVE-2014-1761 as well, exploiting these to download or drop a Zbot variant.
Home Depot also said that 53 million email addresses were stolen along with the previously disclosed 56 million payment card details.
The foundation has announced the first round of recipients of the 2014/2015 U.S.A. Cyber Warrior Scholarship.
Signals Directorate releases best practice advice on how to stay safe online
The latest transparency report shows the highest number of requests ever recorded for info on the social network's users.
The app, used for Galaxy devices remotely, has been patched.
Information-stealing trojan has its sights set on Blighty
Panda Security stats show trojans still top the list
New report highlights issues of employee awareness
Attackers are piquing social network users’ curiosity with malicious scams
DDoS and APT campaigns are likely both state-sponsored.