Infosecurity News

Webcam Voyeur Hacks Laptop to Spy on Toronto Couple
Creepy images sent to victim's Facebook account

Salesforce Patches Dangerous XSS Flaw
Phishing and malware distribution on the cards

Android Hit Again—This Time with a Sandbox Bypass
HTML that the attacker controls can read from the files loaded into the iFrame and extract their data.

Facebook Awards $100K Internet Defense Prize
The Internet Defense Prize was created by the social network to showcase superior defensive security research.

Smart Watches Fail the Data Security Test
Trend Micro finds several security flaws in range of popular devices

Majority of Americans Want to See Snowden Trial
Support wanes with only a third calling for pardon

Dropbox Aims to Thwart Phishers with 2FA Security Keys
Support for USB log-in keys should encourage secure authentication

Press Release Leak Spawns Insider Trading Bonanza
Assets with little face value—and therefore protected with minimal security—have been converted into significant monetary gain.

Windows 10’s Edge Gets First Critical Patch as Admins Get 14 Bulletins
New browser already targeted in a busy month for IT staff

Carphone Warehouse Hackers May Have DDoS-ed Firm
DDoS increasingly used to distract IT teams ahead of data theft

Over Half of Android Devices Hit by Remote Control Bug
Hackers could exploit deserialization vulnerability to steal sensitive data

US CERT: Zero-Day-based Phishing Campaign Rampages
The campaigns target US government agencies and private sector organizations across multiple sectors.

Darkhotel APT Group Resurfaces with Hacking Team Zero-Day
Darkhotel is the latest APT group to make use of the zero-days and exploit tools leaked in the Hacking Team breach.

YouTube: A Key Enabler for Voyeurism?
YouTube hosts thousands of videos, which offer: tutorials on how to use RATs; the faces and IP addresses of victims; and links to download RATs they can use to slave devices.

Networking Biz Ubiquiti Transfers $46.7 Million to Fraudsters
SEC filing claims ‘employee impersonation’ was to blame

#BlackHat:Critical ZigBee Flaw Compromises Smart Homes
Hackers could take control of all connected devices on the network, including door locks, motion sensors, HVAC and smart light bulbs/switches.

#BlackHat:Tesla S Gets the Hacking Treatment
Researchers could remotely turn the car on and off remotely, hit the brakes if the car is moving under 5 MPH, and shift it into neutral.

ICO hits Money Lender with £180K Privacy Fine
The Money Shop lost two servers full of customer data

Malicious Insider Threat Flagged Thanks to Windows Update Flaw
Context researchers claim config error is to blame

#BlackHat: Flash Zero-Day Weaponized in Record Time
Exploit kits integrated Hacking Team zero-days into their digital weapons in half the usual time.



