Fridge Attack – Hackers Use it to Mine Bitcoin!
http://ift.tt/2sdS05L
Submitted February 07, 2018 at 06:47PM by Iot_Security
via reddit http://ift.tt/2Esj5qM
http://ift.tt/2sdS05L
Submitted February 07, 2018 at 06:47PM by Iot_Security
via reddit http://ift.tt/2Esj5qM
reddit
Fridge Attack – Hackers Use it to Mine Bitcoin! • r/security
1 points and 0 comments so far on reddit
Every single NHS trust assessed for cyber security has failed the test
http://ift.tt/2EafB8X
Submitted February 07, 2018 at 07:41PM by wlscr
via reddit http://ift.tt/2EMuRKB
http://ift.tt/2EafB8X
Submitted February 07, 2018 at 07:41PM by wlscr
via reddit http://ift.tt/2EMuRKB
NS Tech
Every single NHS trust assessed for cyber security has failed the test - NS Tech
Each of the 200 NHS trusts assessed for cyber security resilience has failed the test, MPs were told yesterday. Speaking to the Public Accounts Committee, NHS Digital’s Rob Shaw said that while some trusts are close to satisfying the requirements, others…
Security In 5: Epsiode 169 - Heads up, Meltdown And Spectre Malware Detected In The Wild
http://ift.tt/2C36SDD
Submitted February 07, 2018 at 07:32PM by BinaryBlog
via reddit http://ift.tt/2E99OVc
http://ift.tt/2C36SDD
Submitted February 07, 2018 at 07:32PM by BinaryBlog
via reddit http://ift.tt/2E99OVc
Libsyn
Security In Five Podcast: Epsiode 169 - Heads up, Meltdown And Spectre Malware Detected In The Wild
Meltdown and Spectre are two nasty vulnerabilities that were announced a few weeks ago. What makes these so bad is they are on the processors, the brains, of the computers. Recently security researches are now seeing malware in the wild exploiting these.…
2017: Worst Year Ever for Data Loss and Breaches
http://ift.tt/2BKjzaT
Submitted February 07, 2018 at 07:20PM by CasperVPN
via reddit http://ift.tt/2C2DNs2
http://ift.tt/2BKjzaT
Submitted February 07, 2018 at 07:20PM by CasperVPN
via reddit http://ift.tt/2C2DNs2
Infosecurity Magazine
2017: Worst Year Ever for Data Loss and Breaches
The number of records compromised also surpassed all other years, with over 7.8 billion records exposed, a 24.2% increase over 2016’s previous high of 6.3 billion.
Subverting your server through its BMC: the HPE iLO4 case (@REcon BRX)
http://ift.tt/2E7MIOL
Submitted February 07, 2018 at 09:11PM by alain_proviste
via reddit http://ift.tt/2FUNXNQ
http://ift.tt/2E7MIOL
Submitted February 07, 2018 at 09:11PM by alain_proviste
via reddit http://ift.tt/2FUNXNQ
X.509 Certificates serious flaw with Covert Channel
http://ift.tt/2ErMce2
Submitted February 07, 2018 at 09:30PM by akapranos
via reddit http://ift.tt/2sibzdr
http://ift.tt/2ErMce2
Submitted February 07, 2018 at 09:30PM by akapranos
via reddit http://ift.tt/2sibzdr
Beware this Reddit clone phishing site
http://ift.tt/2ELS9QC
Submitted February 07, 2018 at 09:24PM by swardshot
via reddit http://ift.tt/2ErMgdM
http://ift.tt/2ELS9QC
Submitted February 07, 2018 at 09:24PM by swardshot
via reddit http://ift.tt/2ErMgdM
Naked Security
Reddit users, beware its evil twin
Unbeknownst to Reddit users, the site recently acquired an unwanted, evil twin
Senator Ed Markey shares his perspectives on the importance of cybersecurity to address the threats of the digital revolution and also discusses his bill, the Cyber Shield Act, which creates a voluntary cybersecurity certification program for IoT devices.
https://www.youtube.com/watch?v=X4ucQsOkidY
Submitted February 07, 2018 at 08:59PM by newsalert_88
via reddit http://ift.tt/2Bdy99U
https://www.youtube.com/watch?v=X4ucQsOkidY
Submitted February 07, 2018 at 08:59PM by newsalert_88
via reddit http://ift.tt/2Bdy99U
YouTube
Senator Ed Markey Welcomes Attendees to the 2018 ICIT Winter Summit & Discusses the Cyber Shield Act
Senator Ed Markey (Massachusetts) welcomes attendees of the 2018 ICIT Winter Summit and shares his perspectives on the importance of cybersecurity to address...
make a process unkillable?!
http://ift.tt/2C3alSG
Submitted February 07, 2018 at 10:53PM by khasaia
via reddit http://ift.tt/2sdwQVv
http://ift.tt/2C3alSG
Submitted February 07, 2018 at 10:53PM by khasaia
via reddit http://ift.tt/2sdwQVv
secrary[dot]com
make a process unkillable?!
This blog is about malware analysis and reverse engineering. But Does it matter?
Shopify account takeover via race condition
http://ift.tt/2FUS4cE
Submitted February 07, 2018 at 10:41PM by albinowax
via reddit http://ift.tt/2BgrlIz
http://ift.tt/2FUS4cE
Submitted February 07, 2018 at 10:41PM by albinowax
via reddit http://ift.tt/2BgrlIz
HackerOne
Shopify disclosed on HackerOne: Ability to bypass partner email...
@cache-money reported it was possible to bypass the email verification process in our Partners Dashboard. Doing so would have allowed a Partner to request access to a store under an email address...
Sickle - shellcode development tool
http://ift.tt/2E8cW3Q
Submitted February 07, 2018 at 10:29PM by howucan
via reddit http://ift.tt/2C5z2hG
http://ift.tt/2E8cW3Q
Submitted February 07, 2018 at 10:29PM by howucan
via reddit http://ift.tt/2C5z2hG
reddit
Sickle - shellcode development tool • r/netsec
3 points and 0 comments so far on reddit
How to prevent one partition from accessing another on a single PC?
Hi guys. So here's the scenario. I have a laptop which has Windows 10 and 8 installed (dual boot). I did it just a couple of days ago. My main purpose for doing such is that I plan to use Windows 10 for personal stuff while Windows 8 for work-related matters. However after logging in to the Windows 8 OS, I found out that the local drive for Windows 10 is visible and can be accessed without any restrictions. This is not what I wanted to achieve since the applications that I will install on the Windows 8 partition might be intrusive to the files that I have on Windows 10. Is there any way to prevent such thing from happening (aside from of course buying another computer and physically separating my personal and work stuff or using virtualization services)? By the way if this will help, I als tried changing the drive permission. Under Windows 8, I selected the local drive of Windows 10 (which is still visible) and changed permissions. At first, I did try to remove the check marks on the "Allow" column for the users of Windows 8 (not yet the Administrator). It didn't work. I tried to put check marks on the "Deny" column and it's still a no go. Afterwards I did attempt the same step on the Administrator option. It turned out to be worse because I was locked from access temporarily, until I changed its ownership.Thank you for taking the time to read my post and I hope you guys could help me out..
Submitted February 07, 2018 at 11:03PM by mitchie08
via reddit http://ift.tt/2E7KMG5
Hi guys. So here's the scenario. I have a laptop which has Windows 10 and 8 installed (dual boot). I did it just a couple of days ago. My main purpose for doing such is that I plan to use Windows 10 for personal stuff while Windows 8 for work-related matters. However after logging in to the Windows 8 OS, I found out that the local drive for Windows 10 is visible and can be accessed without any restrictions. This is not what I wanted to achieve since the applications that I will install on the Windows 8 partition might be intrusive to the files that I have on Windows 10. Is there any way to prevent such thing from happening (aside from of course buying another computer and physically separating my personal and work stuff or using virtualization services)? By the way if this will help, I als tried changing the drive permission. Under Windows 8, I selected the local drive of Windows 10 (which is still visible) and changed permissions. At first, I did try to remove the check marks on the "Allow" column for the users of Windows 8 (not yet the Administrator). It didn't work. I tried to put check marks on the "Deny" column and it's still a no go. Afterwards I did attempt the same step on the Administrator option. It turned out to be worse because I was locked from access temporarily, until I changed its ownership.Thank you for taking the time to read my post and I hope you guys could help me out..
Submitted February 07, 2018 at 11:03PM by mitchie08
via reddit http://ift.tt/2E7KMG5
reddit
How to prevent one partition from accessing another... • r/security
Hi guys. So here's the scenario. I have a laptop which has Windows 10 and 8 installed (dual boot). I did it just a couple of days ago. My main...
Apple says a processing error led it to send developers wrong app install and ad spend details
http://ift.tt/2C1BaqJ
Submitted February 07, 2018 at 10:55PM by wlscr
via reddit http://ift.tt/2C3exBU
http://ift.tt/2C1BaqJ
Submitted February 07, 2018 at 10:55PM by wlscr
via reddit http://ift.tt/2C3exBU
TechCrunch
Apple says a processing error led it to send developers wrong app install and ad spend details
Yesterday, we noted and reported on how Apple was sending developers emails with install and ad spend details for other developers’ apps. Today, Apple has sent out a note to developers to say…
How a Tiny Startup Became the Most Important Hacking Shop You’ve Never Heard Of: Inside the secretive industry that helps government hackers get around encryption.
http://ift.tt/2Bfwd0p
Submitted February 07, 2018 at 10:51PM by SuccessfulOperation
via reddit http://ift.tt/2E7KS0p
http://ift.tt/2Bfwd0p
Submitted February 07, 2018 at 10:51PM by SuccessfulOperation
via reddit http://ift.tt/2E7KS0p
Motherboard
How a Tiny Startup Became the Most Important Hacking Shop You’ve Never Heard Of
Inside the secretive industry that helps government hackers get around encryption.
Analysis of encrypted traffic between DanderSpritz and a PeddleCheap implant
http://ift.tt/2Bd0HQK
Submitted February 06, 2018 at 07:49PM by CyberBullets
via reddit http://ift.tt/2nTTjSi
http://ift.tt/2Bd0HQK
Submitted February 06, 2018 at 07:49PM by CyberBullets
via reddit http://ift.tt/2nTTjSi
Forcepoint
New Whitepaper - DanderSpritz/PeddleCheap Traffic Analysis (Part 1 of 2) | Forcepoint
Background In April 2017, a hacker group named The Shadow Brokers released some very advanced cyber weapons. The leaked tools allegedly originate from the hacking arsenal of a powerful intelligence agency.
PinMe: Tracking a Smartphone User around the World (without using GPS)
http://ift.tt/2nRVJ3Q
Submitted February 08, 2018 at 12:01AM by cos
via reddit http://ift.tt/2nJpdl9
http://ift.tt/2nRVJ3Q
Submitted February 08, 2018 at 12:01AM by cos
via reddit http://ift.tt/2nJpdl9
CSV Formula Injection vulnerability in AWS CloudTrail
http://ift.tt/2C20tJf
Submitted February 08, 2018 at 01:03AM by Thistil
via reddit http://ift.tt/2nRAMpt
http://ift.tt/2C20tJf
Submitted February 08, 2018 at 01:03AM by Thistil
via reddit http://ift.tt/2nRAMpt
reddit
CSV Formula Injection vulnerability in AWS CloudTrail • r/netsec
8 points and 1 comments so far on reddit
A flaw in Hotspot Shield can expose VPN users, locations
http://ift.tt/2E6wUvR
Submitted February 08, 2018 at 05:18AM by moooooky
via reddit http://ift.tt/2nLfD0T
http://ift.tt/2E6wUvR
Submitted February 08, 2018 at 05:18AM by moooooky
via reddit http://ift.tt/2nLfD0T
ZDNet
A flaw in Hotspot Shield can expose VPN users, locations
The virtual private network says it provides a way to browse the web "anonymously and privately," but a security researcher has released code that could identify users' names and locations.
Russians penetrated US voter systems, DHS cybersecurity chief tells NBC
http://ift.tt/2FVL2oj
Submitted February 08, 2018 at 06:24AM by PatrickPlan8
via reddit http://ift.tt/2EPo2If
http://ift.tt/2FVL2oj
Submitted February 08, 2018 at 06:24AM by PatrickPlan8
via reddit http://ift.tt/2EPo2If
CNBC
Russians penetrated US voter systems: NBC, citing DHS cybersecurity chief
I wrote a little write-up for a session fixation vulnerability previously found in Tomcat (CVE-2015-5346) for anyone that would like to read it. It helped me better understand the specific vulnerability and session fixation in general.
http://ift.tt/2nOHIon
Submitted February 08, 2018 at 06:43AM by sina_t97
via reddit http://ift.tt/2BikMp5
http://ift.tt/2nOHIon
Submitted February 08, 2018 at 06:43AM by sina_t97
via reddit http://ift.tt/2BikMp5
Dropbox
Sina_Taghizadeh_CVE-2015-5346_Vuln_Report.pdf
Shared with Dropbox
Additional defenses against Identity Theft, besides just 'freezing' your credit report.
http://ift.tt/2GVzyCe
Submitted February 08, 2018 at 09:45AM by Chris-Knight
via reddit http://ift.tt/2FSJQ4X
http://ift.tt/2GVzyCe
Submitted February 08, 2018 at 09:45AM by Chris-Knight
via reddit http://ift.tt/2FSJQ4X
The Wacky World of Chris Knight
Identity Theft Prophylaxis
or… You are going to get screwed, so let’s minimize the repercussions There are lots of guides on the Internet on how to safeguard your personal information as a means of preventing Identity Theft.…