News
Myanmar’s new military government bans Facebook
The new self-appointed military government of Myanmar has temporarily banned Facebook.…
More patches for SolarWinds Orion after researchers find flaw allowing low-priv users to execute code, among others
As if that supply chain attack wasn't bad enough, SolarWinds has had to patch its Orion software again after eagle-eyed researchers discovered fresh vulnerabilities – including one that can be exploited to achieve remote code execution.…
Tiny Kobalos malware seen backdooring SSH tools, menacing supercomputers, an ISP, and more – ESET
ESET researchers say they have found a lightweight strain of malware that targets multiple OSes and has hit supercomputers, an ISP, and other organisations.…
Location tracking report: X-Mode SDK still in wide use in Android apps despite Google ban
A report on Android apps that do location tracking identified 450 apps that use tracker SDKs, many of which use an SDK called X-Mode, which Apple and Google have banned, but are still in Google's Play Store.…
Rubbish software security patches responsible for a quarter of zero-days last year
Enigma To limit the impact of zero-day vulnerabilities, Google security researcher Maddie Stone would like those developing software fixes to stop delivering shoddy patches.…
Spanish banished: Google Chrome to snub Camerfirma for lax cert management
When Google Chrome 90 arrives in April, visitors to websites that depend on TLS server authentication certificates from AC Camerfirma SA, a digital certificate authority based in Madrid, Spain, will find that those sites no longer present the secure lock icon.…
In wake of Apple privacy controls, Facebook mulls just begging its iOS app users to let it track them over the web
Facebook has created a new screen in its iOS app that will urge people to allow it to continue stalking their online activities for targeted advertising.…
US court system ditches electronic filing, goes paper-only for sensitive documents following SolarWinds hack
The US court system has banned the electronic submission of legal documents in sensitive cases out of concern that Russian hackers have compromised the filing system.…
Chrome 89 beta: Google presses on with 'advanced hardware interactions' that Mozilla, Apple see as harmful
Google has released a beta of Chrome 89, adding further hardware interaction APIs even though Mozilla and Apple consider many of these features harmful, as well as introducing a desktop-sharing API for Windows and Chrome OS.…
Ransomware attack takes out UK Research and Innovation's Brussels networking office
UK Research and Innovation, the British government's science and research organisation, has temporarily turned off a couple of its web-facing services after an apparent ransomware attack.…
£30m in contracts awarded in Post Office's £357m ATM overhaul
The UK Post Office has awarded two contracts worth a total of £30m for a banking network and ATMs system in a procurement expected to be worth £357m once all contracts are awarded.…
Countless emails wrongly blocked as spam after Cisco's SpamCop failed to renew domain name at the weekend
In brief Cisco's anti-spam service SpamCop failed to renew spamcop.net over weekend, causing it to lapse, which resulted in countless messages being falsely labeled and rejected as spam around the world.…
Google QUIC-ly left privacy behind in its quest for a speedier internet, boffins find
Google's QUIC (Quick UDP Internet Connections) protocol, announced in 2013 as a way to make the web faster, waited seven years before being implemented in the ad giant's Chrome browser. But it still arrived before privacy could get there.…
Severe bug in Libgcrypt – used by GPG and others – is a whole heap of trouble, prompts patch scramble
Google Project Zero researcher Tavis Ormandy on Thursday reported a severe flaw in Libgcrypt 1.9.0, an update to the widely used cryptographic library that was released ten days ago.…
European Commission redacts AstraZeneca vaccine contract – but forgets to wipe the bookmarks tab
The European Commission's war of words against pharma company AstraZeneca over COVID-19 virus vaccines has descended into farce after Brussels accidentally published an unredacted version of a disputed supply contract.…
If you want to leg it through China’s Great Firewall, don't forget to pull on your newly darned Shadowsocks
China’s recent upgrades to its content-blocking Great Firewall can be circumvented, according to the censorship fighters of the Great Firewall Report.…
Knock, knock. Who's there? NAT. Nat who? A NAT URL-borne killer
Video Ben Seri and Gregory Vishnepolsky, threat researchers at Armis, have found a way to expand upon the NAT Slipstream attack disclosed last year by Samy Kamkar, CSO of Openpath Security.…
Stack Overflow 2019 hack was guided by advice from none other than... Stack Overflow
Developer site Stack Overflow has published details of a breach dating back to May 2019, finding evidence that an intruder in its systems made extensive use of Stack Overflow itself to determine how to make the next move.…
Command 'n' control botnet of notorious Emotet Windows ransomware shut down in multinational police raid
EU police agency Europol has boasted of taking down the main botnet powering the Emotet trojan-cum-malware dropper, as part of a multinational police operation that included raids on the alleged operators’ homes in the Ukraine.…
Today's 'sophisticated cyber attack' victim is the Woodland Trust: Pre-Xmas breach under investigation
The Woodland Trust, a peaceful British charity that looks after trees, was struck by a “cyber attack” before Christmas.…
Pages
