Employees at the Pelican Bay State Prison in California have reached a settlement with the state over allegations that their personnel information was exposed to prison inmates.
Software testing firm Coverity has uncovered 16 code defects, similar to a defect recently found in the MySQL database server, in nine different open source code bases, including Nmap, OpenBabble, and Ncbi-tools.
Il était annoncé, donc attendu, et il est arrivé avec l’été : un guide de l’ANSSI intitulé « Maîtriser la SSI pour les systèmes industriels », accompagné d’un « Cas pratique ».
Sa seule existence est déjà utile pour « officialiser » le sujet, [...] Lire la suite
This is the view of Moxie Marlinspike, who along with David Hulton first presented his method for cracking Microsoft’s CHAPv2 at Defcon, and has now described the process on CloudCracker.
A campaign aide to former Republican presidential candidate Michele Bachmann is suing Bachmann and her senior campaign staff for allegedly stealing her private email list to promote the candidate among Christian home-school advocates in Iowa.
In an announcement that boggles the infosec-savvy mind, global financial firm Wells Fargo has only just appointed its first chief information security officer (CISO).
“Big data analytics can improve information security and increase cyber resilience” claims a new report from the Information Security Forum (ISF).
ENISA notes that nearly 18.5 million user passwords have been stolen in just seven major hacks this year already, and has published guidelines on how both users and service providers can better secure them in the future.
A new variant of the Morto worm has added a file infection capability to the malware’s arsenal of weapons, warned a Microsoft researcher.
South Korea’s National Police Agency (NPA) has arrested two hackers for stealing and selling personal information on 8.7 million KT mobile subscribers.
At Black Hat in Las Vegas, July 27 2012, Grayson Milbourne - director of threat research at Webroot - told Infosecurity that sometimes it is best if a breach goes undisclosed until the company concerned has answers and a recovery plan.
Apple’s new Mountain Lion operating system is now available – but with it comes a surprising new twist to the terms and conditions for the new dictation capability. Apple gets and keeps the dictated files.
A security researcher has developed proof of concept for a PC backdoor that is both undetectable and very difficult to remove – and capable of infecting more than 100 different motherboards.
In a deal unanimously agreed by the AuthenTec board, but not yet by its shareholders, Apple Inc is to buy the mobile security firm at a price valuing shares at $8.00 – a 58% premium on the earlier closing price.
Vasilis Pappas has won Microsoft's $200,000 BlueHat defensive computer technology research prize for his kBouncer, an efficient and fully transparent return-oriented programming (ROP) mitigation technique.
The US Federal Aviation Administration’s (FAA) new air traffic control system could be vulnerable to cyber attack, warned researcher Andrei Costin at the Black Hat conference this week in Las Vegas.
On the day of the official launch of the 2012 London Olympic Games, GFI Software warns Android gamers about fake 2012 apps being offered from Russian websites.
YouView, an internet-connected variant of Freeview – chaired by Lord Sugar and supported by all the major UK TV channels, and ISPs such as BT and TalkTalk – has finally launched in the UK, but to more criticism than praise.
After having its command-and-control server shut down, the Madhi (Messiah) malware is back with improved features, warns Kaspersky Lab.
The US National Institute of Standards and Technology (NIST) has issued a scoring system for computer security managers to assess the severity of security risks caused by software misuse.