Infosecurity News

Bugzilla Hackers Accessed Mozilla Flaws Since 2014
Attackers may have been slurping sensitive bug data for even longer

Kaspersky and FireEye Rush to Fix Flaws
Researchers’ public disclosure puts security giants on alert

Hackers Eschew Malware to Keep Attacks Hidden
Dell SecureWorks claims stolen credentials and VPNs are becoming increasingly popular

Adult Player Android Porn App Delivers Ransomware
The app targets users by silently taking photos of them as they use the app.

TVSPY Returns in Force
This particular threat is very dangerous as the attacker will have total control over the affected machine.

PayPal XSS Flaw Opens Door to Attacks
The vulnerability can be used to deliver content or harmful files that enable a wide range of attacks.

26 Mobile Phone Models Contain Pre-Installed Spyware
Phones from Huawei, Lenovo and Xiaomi have pre-installed spyware—even as Android is on track to hit 2 million new malware apps this year.

Baby Monitors Have Grown-up Security Flaws
Critical vulnerabilities in three popular baby monitors, and a slew of other problems in others, allow hackers to spy on the household.

Singtel Closes $770 Million Trustwave Acquisition
Singtel will provide threat intelligence from its Asia Pacific network for TrustWave’s managed security services.

OPM Blows $133m on Post-Breach ID Monitoring
Affected employees still haven’t been informed

US-CERT: Belkin Wi-Fi Router Has a Slew of Flaws
Attacks could run the gamut from arbitrary file injection to man-in-the-middle attacks to cross-site request forgery (CSRF).

Comcast Appoints a CISO
The move indicates that broadband providers may be finally taking cybersecurity for their end users more seriously.

London Makes Top 10 for Safe Web 'Hoods
In contrast, some TLDs, like .zip, are used for the sole purpose of playing host to a large number of scams and spam.

Foreign Spooks Use Hacked US Data to Root Out Spies – Report
OPM, Anthem, Ashley Madison et al provide treasure trove of intelligence

Four Out of Five US Healthcare Firms Have Been Hit by Cyber-Attacks
KPMG study claims industry weaknesses are a national security risk

KeyRaider Steals iPhone Credentials for App Purchases
KeyRaider appears to be behind the largest known Apple account theft caused by malware to date.

Pawn Storm Serves Malware Via Fake EFF Site
Hackers have set up a fake domain for the Electronic Frontier Foundation as part of a targeted malware campaign.

Teenagers Collared for Using Lizard Squad DDoS Tool
Six males, aged between 15 and 18, arrested by NCA

Security Fears Drive Netflix Partner to Infrastructure Upgrade
As the media and entertainment industry becomes an increasing target for attacks, the knock-on effect of the increased cost of appropriate defense can be immense as shown by digital media supply-chain specialist Visual Data Media Services (VDMS)

SANS Institute Identifies Cyber-Defenders of the Future
32 candidates chosen for Cyber Academy boot camp



