Infosecurity News

Trend Micro Honeypots ‘Signed Up’ to Ashley Madison
Passive email addresses linked to profiles on the adultery site

Zimperium Releases a Working Exploit for Stagefright
Zimperium said that it is publishing the code so that administrators and testers can validate the effectiveness of the Android community’s response.

Context-Aware Security Can Take a Bite Out of Cyber-Risk
While only 28% of respondents have fully embraced a context-aware approach to security, 97% see the benefits in it.

Bitcoin Extortion Group DD4BC Bumps Up the DDoS Volume
Since April 2015, Akamai identified 114 DD4BC attacks, including more aggressive measures that target brand reputation through social media.

Anti-Forensic Malware Widens Cyber-Skills Gap
Attackers increasingly use methods that leave few traces behind—so we are in an arms race where the key difference is training.

Bugzilla Hackers Accessed Mozilla Flaws Since 2014
Attackers may have been slurping sensitive bug data for even longer

Kaspersky and FireEye Rush to Fix Flaws
Researchers’ public disclosure puts security giants on alert

Hackers Eschew Malware to Keep Attacks Hidden
Dell SecureWorks claims stolen credentials and VPNs are becoming increasingly popular

Adult Player Android Porn App Delivers Ransomware
The app targets users by silently taking photos of them as they use the app.

TVSPY Returns in Force
This particular threat is very dangerous as the attacker will have total control over the affected machine.

PayPal XSS Flaw Opens Door to Attacks
The vulnerability can be used to deliver content or harmful files that enable a wide range of attacks.

26 Mobile Phone Models Contain Pre-Installed Spyware
Phones from Huawei, Lenovo and Xiaomi have pre-installed spyware—even as Android is on track to hit 2 million new malware apps this year.

Baby Monitors Have Grown-up Security Flaws
Critical vulnerabilities in three popular baby monitors, and a slew of other problems in others, allow hackers to spy on the household.

Singtel Closes $770 Million Trustwave Acquisition
Singtel will provide threat intelligence from its Asia Pacific network for TrustWave’s managed security services.

OPM Blows $133m on Post-Breach ID Monitoring
Affected employees still haven’t been informed

US-CERT: Belkin Wi-Fi Router Has a Slew of Flaws
Attacks could run the gamut from arbitrary file injection to man-in-the-middle attacks to cross-site request forgery (CSRF).

Comcast Appoints a CISO
The move indicates that broadband providers may be finally taking cybersecurity for their end users more seriously.

London Makes Top 10 for Safe Web 'Hoods
In contrast, some TLDs, like .zip, are used for the sole purpose of playing host to a large number of scams and spam.

Foreign Spooks Use Hacked US Data to Root Out Spies – Report
OPM, Anthem, Ashley Madison et al provide treasure trove of intelligence

Four Out of Five US Healthcare Firms Have Been Hit by Cyber-Attacks
KPMG study claims industry weaknesses are a national security risk



