Networking attack gives hijackers VPN access

Credit to Author: Danny Bradbury| Date: Mon, 09 Dec 2019 12:31:50 +0000

Researchers have discovered a flaw in macOS, Linux, and several other operating systems that could let attackers hijack VPN connections.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/L7I8CdL_Udk” height=”1″ width=”1″ alt=””/>

Read more

HackerOne pays $20,000 bounty after breach of own systems

Credit to Author: John E Dunn| Date: Mon, 09 Dec 2019 12:08:39 +0000

In an embarrassing twist, bug bounty platform HackerOne has paid a $20,000 reward to a researcher who reported a security flaw inadvertently caused by one of its staff during… a bug submission.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/iDklXemCQZs” height=”1″ width=”1″ alt=””/>

Read more

Facebook suing ILikeAd for hijacking users’ ad accounts

Credit to Author: Lisa Vaas| Date: Mon, 09 Dec 2019 11:46:38 +0000

Facebook says the company used celeb bait links to infect victims with malware and hijacked their ad accounts to sell diet pills.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/PXMa1EXeC34″ height=”1″ width=”1″ alt=””/>

Read more

$5m bounty set on the alleged head of Evil Corp banking Trojan group

Credit to Author: Lisa Vaas| Date: Mon, 09 Dec 2019 10:53:32 +0000

Know where Maksim “Aqua” Yakubets is? Can you pry him out of Russia and his Lamborghinis? The biggest ever cybercrook reward awaits!<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/nU-wUMypTSA” height=”1″ width=”1″ alt=””/>

Read more

SophosLabs Intelix: Threat intelligence APIs for everyone

Credit to Author: Greg Iddon| Date: Fri, 06 Dec 2019 13:19:14 +0000

Our new, cloud-based threat intelligence and threat analysis platform has launched on AWS Marketplace.<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/2L-zRHNwWfA” height=”1″ width=”1″ alt=””/>

Read more

¿El cifrado hace que el firewall sea irrelevante?

Credit to Author: Naked Security| Date: Thu, 05 Dec 2019 08:55:59 +0000

Transport Layer Security (TLS) es el estándar de cifrado que se usa hoy en Internet: los términos SSL y TLS a menudo se usan indistintamente, pero Secure Sockets Layer (SSL) es un estándar antiguo que ha sido eclipsado por TLS. Entonces, aunque el término más común sigue siendo SSL, solo debe saber que la mayoría [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/KY7xC3O2gSs” height=”1″ width=”1″ alt=””/>

Read more

El tío Sam abre los brazos a hackers amigables

Credit to Author: Naked Security| Date: Wed, 04 Dec 2019 09:08:59 +0000

Todos los cazadores de vulnerabilidades están a punto de recibir un bonito regalo de Navidad: el gobierno federal de EEUU finalmente quiere su información. Los sitios web y los departamentos de ciberseguridad poco útiles pronto serán cosa del pasado, gracias a un nuevo reglamento de la Agencia de Ciberseguridad e Infraestructura (CISA). La Agencia, que [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/01gkh6MjNwc” height=”1″ width=”1″ alt=””/>

Read more

Mac users targetted by Lazarus ‘fileless’ Trojan

Credit to Author: John E Dunn| Date: Fri, 06 Dec 2019 13:18:09 +0000

The Lazarus hacking group are trying to sneak a ‘fileless’ Trojan on to Apple computers, disguised as a fake cryptocurrency trading program.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/GN789RKuVrQ” height=”1″ width=”1″ alt=””/>

Read more

US parents file class action against TikTok over children’s privacy

Credit to Author: Lisa Vaas| Date: Fri, 06 Dec 2019 12:10:31 +0000

Collecting children’s data without their guardians’ consent is illegal under COPPA and already earned TikTok a huge fine.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/BxgELatt-Vk” height=”1″ width=”1″ alt=””/>

Read more