Google stops indexing WhatsApp chats; other search engines still at it

Credit to Author: Lisa Vaas| Date: Tue, 25 Feb 2020 17:51:22 +0000

Private chat invites aren’t meant to be unfindable, Facebook says, though a snippet of code eventually shielded them from Google indexing.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/De9SWjTWYs0″ height=”1″ width=”1″ alt=””/>

Read more

New Sophos Central management and reporting for XG Firewall

Credit to Author: Chris McCormack| Date: Tue, 25 Feb 2020 15:20:00 +0000

Sophos Central now includes group firewall management and flexible, cloud-based firewall reporting – for free.<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/RElydU5nWoY” height=”1″ width=”1″ alt=””/>

Read more

How I learned to stop worrying and love ‘grey hat’ tools

Credit to Author: Tad Heppner| Date: Tue, 25 Feb 2020 13:45:19 +0000

A comprehensive security solution needs a sense of subtlety: not all machine code lends itself to be classified easily as malicious. As with most things in life, there&#8217;s a grey area in malware detection that includes hacking tools, poorly designed or easily exploitable applications, or borderline adware that provides little benefit to the unfortunate user [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/TR1pieWZO1k” height=”1″ width=”1″ alt=””/>

Read more

Harden your public cloud environment against APT-style attacks

Credit to Author: Editor| Date: Tue, 25 Feb 2020 13:36:43 +0000

A new APT-style attack combines a bypassing technique with a multi-platform payload to target both Windows and Linux cloud workloads. Stop the attack with technical advice from Sophos.<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/q61MwUx5OsI” height=”1″ width=”1″ alt=””/>

Read more

‘Cloud Snooper’ Attack Bypasses Firewall Security Measures

Credit to Author: Sergei Shevchenko| Date: Tue, 25 Feb 2020 13:30:43 +0000

In the course of investigating a malware infection of cloud infrastructure servers hosted in the Amazon Web Services (AWS) cloud, SophosLabs discovered a sophisticated attack that employed a unique combination of techniques to evade detection and that permits the malware to communicate freely with its command and control (C2) servers through a firewall that should, [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/IHnT34CbOqM” height=”1″ width=”1″ alt=””/>

Read more

Smart speakers mistakenly eavesdrop up to 19 times a day

Credit to Author: Danny Bradbury| Date: Tue, 25 Feb 2020 11:47:17 +0000

That smart home speaker isn’t listening to everything you say, according to new research – but it is listening a lot more than it should.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/J0yh5jhzK8w” height=”1″ width=”1″ alt=””/>

Read more

Google denies illegally slurping data off free student Chromebooks

Credit to Author: Lisa Vaas| Date: Tue, 25 Feb 2020 11:22:04 +0000

Nonsense! says Google in response to a lawsuit filed by New Mexico’s AG, which accuses Google of violating COPPA’s child privacy laws.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/cvVZ0VW5JqY” height=”1″ width=”1″ alt=””/>

Read more

SSL/TLS certificate validity chopped down to one year by Apple’s Safari

Credit to Author: John E Dunn| Date: Mon, 24 Feb 2020 11:42:33 +0000

From 1 September 2020, Safari will no longer trust SSL/TLS certificates with more than a year on the clock.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/cpkLvAwmg9A” height=”1″ width=”1″ alt=””/>

Read more

KidsGuard stalkerware leaks data on secretly surveilled victims

Credit to Author: Lisa Vaas| Date: Mon, 24 Feb 2020 13:28:57 +0000

The company left a server open and unprotected, regurgitating private data slurped from thousands of surveilled people, including children.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/F2UPHduG6YE” height=”1″ width=”1″ alt=””/>

Read more