Infosecurity News

OPM Comes Clean: Dual Breaches Exposed 22.1 Million Individuals
Huge counter-intelligence coup for nation state attacker, thought to be China

Don’t Panic: Latest OpenSSL Flaw Not a Heartbleed-Sized Bug
High-severity discovery needs patching, but will not affect many

Intrusion Protection Spending Stays Steady, Monitoring Lags
37% of enterprise security managers expect to increase their IDS/IPS budget in the next 90 days.

Security Researchers Hack Politicians Over Public Wi-Fi
F-Secure and co. prove how easy it is to access private accounts

Leaked Hacking Team Flaw Used in Attacks Before Sunday Doxing
Adobe vulnerability exploited against Korean and Japanese targets from late June

Edinburgh Council Web Attack Breaches Over 13,000 Email Addresses
Users warned to expect follow-up phishing attacks

Over Half of UK Small Firms Open to Cyber-Attack – Report
CSID claims businesses are concerned, but failing to act

Mysterious Hacking Group Wild Neutron Returns to Wreak Havoc
It's using an unknown Flash Player exploit to infect companies and private users around the world and steal sensitive business information.

Explosive Gunpoder Malware Evades All Android AV Products
Palo Alto Networks claims security tools classify it as adware

Adobe to Patch Hacking Team Flash Player Bug
Flaw has been exploited in the wild after being disclosed in Sunday’s data dump

NSA Search Engine Taps Into Global Comms to Intercept, Well, Everything
The XKeyscore search engine hoovers up vast amounts of private communications information, including 700,000 voice, fax and video files every day.

OpenSSL to Patch Critical Mystery Bug on Thursday
Unfortunately, like Heartbleed, the mystery bug is likely to be a big deal. OpenSSL is a basic component of a wide swath of the web.

Trend Micro Teams Up with NCA to Bust Cyber-criminals
Security giant will form virtual team with the agency after MoU is signed

Hacking Team Hacked in 400GB Breach
Controversial intrusion software company on the receiving end

AirLive IP Surveillance Cameras Allow Remote Access
The user needs to specify in the configuration of the camera that HTTPS is used for communications—this is not enabled by default.

Fake BatteryBot Pro App Serves Malware, Can't Be Deleted
The fake app provides the same functionality of the original version of BatteryBot Pro, but performs malicious activity in the background.

ICO Issued Over £1m in Fines in 2014/15
UK information commissioner launches annual report

Connected Devices Spark Digital Amnesia-And Insecurity
Most Americans use mobile phones as an extension of their brains—but aren't securing them.

Fed Reserve: Chip and Signature Not Enough
Chip and signature is a half-measure, falling short of the chip and PIN technology deployed throughout the rest of the world.

Pakistan Implements Biometrics for Remote Teachers
Pakistan has embraced biometrics as its preferred authentication method to identify “ghost employees” and to combat absenteeism.



