Rabobank, IBM aim to use cryptographic pseudonyms for GDPR
https://ift.tt/2HbNQPU
Submitted April 06, 2018 at 03:59PM by ga-vu
via reddit https://ift.tt/2HdJcki
https://ift.tt/2HbNQPU
Submitted April 06, 2018 at 03:59PM by ga-vu
via reddit https://ift.tt/2HdJcki
ZDNet
Rabobank, IBM aim to use cryptographic pseudonyms for GDPR | ZDNet
With IBM Research, Rabobank has come up with an interesting twist to GDPR compliance.
Students using university and college networks to mine cryptocurrency
https://ift.tt/2JqQxOk
Submitted April 06, 2018 at 04:44PM by hightechbridge
via reddit https://ift.tt/2GZ1sQF
https://ift.tt/2JqQxOk
Submitted April 06, 2018 at 04:44PM by hightechbridge
via reddit https://ift.tt/2GZ1sQF
Htbridge
CryptoJacking Threat to Universities Grows
New report finds that education sector being hit hardest by cryptojacking malware, meanwhile one million sites face Drupal flaw...
Delta Airlines infected with malware; customer data stolen
https://ift.tt/2Jq3cB8
Submitted April 06, 2018 at 06:50PM by moonjeff
via reddit https://ift.tt/2GGnvYY
https://ift.tt/2Jq3cB8
Submitted April 06, 2018 at 06:50PM by moonjeff
via reddit https://ift.tt/2GGnvYY
THE DARK SIDE OF THE MOON
BREACH ALERT: Delta Air Lines Customer Credit Card Data Compromised
Delta sent a notice to all of their customers that their customer service system had been compromised between 9/26/2017 and 10/12/2017. The company states that a specific malware (virus) was activ…
Security In 5: Episode 211 - Tools, Tips and Tricks - HTTPS Everywhere
https://ift.tt/2Jph7av
Submitted April 06, 2018 at 06:39PM by BinaryBlog
via reddit https://ift.tt/2EqeK3h
https://ift.tt/2Jph7av
Submitted April 06, 2018 at 06:39PM by BinaryBlog
via reddit https://ift.tt/2EqeK3h
Libsyn
Security In Five Podcast: Episode 211 - Tools, Tips and Tricks - HTTPS Everywhere
If you browse the Internet you should always use HTTPS when visiting websites, especially those that support it. It can be a manual effort and every website doesn't apply HTTPS equally all the time. That's where the browser plugin HTTPS Everywhere comes in. …
CMS Detection and Exploit Kit based on Whatcms.org API
https://ift.tt/2q9M2iX
Submitted April 06, 2018 at 06:23PM by BISH4
via reddit https://ift.tt/2HitGUs
https://ift.tt/2q9M2iX
Submitted April 06, 2018 at 06:23PM by BISH4
via reddit https://ift.tt/2HitGUs
GitHub
HA71/WhatCMS
WhatCMS - CMS Detection and Exploit Kit based on Whatcms.org API
DCShadow - Minimal permissions, Active Directory Deception, Shadowception and more
https://ift.tt/2qaTLwp
Submitted April 06, 2018 at 07:26PM by SamratAsh0k
via reddit https://ift.tt/2H4RRbn
https://ift.tt/2qaTLwp
Submitted April 06, 2018 at 07:26PM by SamratAsh0k
via reddit https://ift.tt/2H4RRbn
Labofapenetrationtester
DCShadow - Minimal permissions, Active Directory Deception, Shadowception and more
Home of Nikhil SamratAshok Mittal. Posts about Red Teaming, Offensive PowerShell, Active Directory and Pen Testing.
Azure passwords are still at risk; Infection Monkey can help
https://ift.tt/2EpybJM
Submitted April 06, 2018 at 07:11PM by ofriziv
via reddit https://ift.tt/2GIDGF9
https://ift.tt/2EpybJM
Submitted April 06, 2018 at 07:11PM by ofriziv
via reddit https://ift.tt/2GIDGF9
GuardiCore - Data Center and Cloud Security
Azure passwords are still at risk; Infection Monkey can help | GuardiCore
The Infection Monkey can notify about any machine that stores recoverable plaintext credentials on its Azure VM disk and expose bad credentials hygiene.
Domain Recon : A tool to get the details about all the subdomains and screenshots of them.
https://ift.tt/2Hd8U8r
Submitted April 06, 2018 at 07:04PM by Oxf0xtr0t
via reddit https://ift.tt/2qb52Nc
https://ift.tt/2Hd8U8r
Submitted April 06, 2018 at 07:04PM by Oxf0xtr0t
via reddit https://ift.tt/2qb52Nc
GitHub
x73x61x6ex6ax61x79/DomainRecon
Contribute to DomainRecon development by creating an account on GitHub.
How safe is voice-recognition authentication used in telephone customer service?
I may be late on this topic, but I've noticed the trend of call-center customer service departments now offering the new security measure where your voice will be used to authenticate you. Some questions:Should one accept to be authenticated with this technology?How easily can this technology be defeated?If someone gains access to a high-quality recording of your voice, can they use it to defeat the system? Scammers could call people and record the phone-conversation to gain access to such a recording. Couldn't they then use software to identify the voice signature and then use some other clever way to "translate" their own voice into the voice signature?
Submitted April 06, 2018 at 08:28PM by dlebauche
via reddit https://ift.tt/2JmrKuu
I may be late on this topic, but I've noticed the trend of call-center customer service departments now offering the new security measure where your voice will be used to authenticate you. Some questions:Should one accept to be authenticated with this technology?How easily can this technology be defeated?If someone gains access to a high-quality recording of your voice, can they use it to defeat the system? Scammers could call people and record the phone-conversation to gain access to such a recording. Couldn't they then use software to identify the voice signature and then use some other clever way to "translate" their own voice into the voice signature?
Submitted April 06, 2018 at 08:28PM by dlebauche
via reddit https://ift.tt/2JmrKuu
reddit
How safe is voice-recognition authentication used in... • r/security
I may be late on this topic, but I've noticed the trend of call-center customer service departments now offering the new security measure where...
Seriously, I love this new tool - Do you know what types of files your mail servers are blocking?
https://ift.tt/2JokYEC
Submitted April 06, 2018 at 09:15PM by MadSecuritySquirrel
via reddit https://ift.tt/2Eqh3Du
https://ift.tt/2JokYEC
Submitted April 06, 2018 at 09:15PM by MadSecuritySquirrel
via reddit https://ift.tt/2Eqh3Du
The Mad Squ1rrel
Do you know what types of files your mail servers are blocking? Here's a free tool to help | | The Mad Squ1rrel
I'll start by saying that I don't think I have ever written a blog post about one of our free tools here at KnowBe4. It's not that I don't like the other tools or think that they lack usefulness (quite the opposite actually), it's just that this new one really…
Because when you get hit with ransomware, you really do want to read poetry o_O
https://ift.tt/2EsUzC8
Submitted April 06, 2018 at 09:12PM by MadSecuritySquirrel
via reddit https://ift.tt/2Jp5Wyk
https://ift.tt/2EsUzC8
Submitted April 06, 2018 at 09:12PM by MadSecuritySquirrel
via reddit https://ift.tt/2Jp5Wyk
TechRepublic
WhiteRose ransomware attack sends bizarre poetry in ransom note to victims
The attack is similar to the Black Ruby, Zenis, and HiddenTear / InfiniteTear ransomware variants and seems to utilize unsecured Remote Desktop services.
Shout out to Malwarebytes for this: LockCrypt Ransomware Cracked Due to Bad Crypto
https://ift.tt/2GAKZCN
Submitted April 06, 2018 at 09:11PM by MadSecuritySquirrel
via reddit https://ift.tt/2Eqh4Y4
https://ift.tt/2GAKZCN
Submitted April 06, 2018 at 09:11PM by MadSecuritySquirrel
via reddit https://ift.tt/2Eqh4Y4
BleepingComputer
LockCrypt Ransomware Cracked Due to Bad Crypto
The team at Malwarebytes has identified a weakness in the encryption scheme utilized by the LockCrypt ransomware that they can exploit to recover a victim's data.
Compromising ShareFile on-premise via 7 chained vulnerabilities
https://ift.tt/2GUY49J
Submitted April 06, 2018 at 09:44PM by dirkjanm
via reddit https://ift.tt/2EpUsqS
https://ift.tt/2GUY49J
Submitted April 06, 2018 at 09:44PM by dirkjanm
via reddit https://ift.tt/2EpUsqS
Fox-IT International blog
Compromising ShareFile on-premise via 7 chained vulnerabilities
A while ago we investigated a setup of Citrix ShareFile with an on-premise StorageZone controller. ShareFile is a file sync and sharing solution aimed at enterprises. While there are versions of Sh…
Data Breaches News Flash - Hudson's Bay Company, Under Armor MyFitnessPal, and Panera Bread
https://www.youtube.com/watch?v=OY1IUdpeOuc
Submitted April 06, 2018 at 10:48PM by GlassHouseSystems
via reddit https://ift.tt/2EtB3FC
https://www.youtube.com/watch?v=OY1IUdpeOuc
Submitted April 06, 2018 at 10:48PM by GlassHouseSystems
via reddit https://ift.tt/2EtB3FC
YouTube
Data Breaches - Hudson's Bay Company, Under Armor MyFitnessPal, and Panera Bread
Data Breaches - Hudson's Bay Company, Under Armor MyFitnessPal, and Panera Bread, all this and more on this week's GlassHouse Gazette! To learn more about ho...
Black-box vs White-box Testing: It's about what you can see.
https://ift.tt/2HffSKp
Submitted April 06, 2018 at 10:44PM by robert_brooks
via reddit https://ift.tt/2uRirjd
https://ift.tt/2HffSKp
Submitted April 06, 2018 at 10:44PM by robert_brooks
via reddit https://ift.tt/2uRirjd
Technology Conversations
Black-box vs White-box Testing
Testing shows the presence, not the absence of bugs. Edsger W. Dijkstra Two common types of testing are black-box and white-box testing. Both can drive or be driven by development. Black-box testin…
macOS High Sierra Kernel Heap Overflow
https://ift.tt/2Eqj9Dt
Submitted April 06, 2018 at 11:57PM by pocorgtfoftw
via reddit https://ift.tt/2H26ls9
https://ift.tt/2Eqj9Dt
Submitted April 06, 2018 at 11:57PM by pocorgtfoftw
via reddit https://ift.tt/2H26ls9
Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation.
https://ift.tt/2IyKYfq
Submitted April 07, 2018 at 12:43AM by malweisse
via reddit https://ift.tt/2q9b8hY
https://ift.tt/2IyKYfq
Submitted April 07, 2018 at 12:43AM by malweisse
via reddit https://ift.tt/2q9b8hY
GitHub
andreafioraldi/pwntrace
pwntrace - Use ltrace with pwnlib.tubes.process instances, useful for heap exploitation. Pwntools rocks!
Russia Readies Telegram Ban After App Refused to Hand Over Encryption Keys to FSB
https://ift.tt/2IAdPjd
Submitted April 07, 2018 at 01:23AM by alessiodelv
via reddit https://ift.tt/2Jr1uzt
https://ift.tt/2IAdPjd
Submitted April 07, 2018 at 01:23AM by alessiodelv
via reddit https://ift.tt/2Jr1uzt
BleepingComputer
Russia Readies Telegram Ban After App Refused to Hand Over Encryption Keys to FSB
Roskomnadzor, Russia's telecommunications watchdog, has filed today a lawsuit against instant messaging app Telegram, asking a Moscow court to rule in favor of restricting access to the service inside Russia's borders.
Microsoft Adds Anti-Ransomware Features in Office 365
https://ift.tt/2qbn1mz
Submitted April 07, 2018 at 01:22AM by alessiodelv
via reddit https://ift.tt/2EqGh4P
https://ift.tt/2qbn1mz
Submitted April 07, 2018 at 01:22AM by alessiodelv
via reddit https://ift.tt/2EqGh4P
BleepingComputer
Microsoft Adds Anti-Ransomware Features in Office 365
Three months after news first leaked, Microsoft officially announced today the launch of new anti-ransomware features for Office 365, the company's commercial subnoscription-based office tools suite.
Reaper Group's Updated Mobile Arsenal
https://ift.tt/2IvpaRQ
Submitted April 07, 2018 at 01:49AM by intelot
via reddit https://ift.tt/2JsaBj0
https://ift.tt/2IvpaRQ
Submitted April 07, 2018 at 01:49AM by intelot
via reddit https://ift.tt/2JsaBj0
Palo Alto Networks Blog
Reaper Group’s Updated Mobile Arsenal
Unit 42 examines the Reaper Group’s updated mobile arsenal, including a Bitcoin Ticker Widget and a PyeongChang Winter Games application.
Secret Service Warns of Chip Card Scheme
https://ift.tt/2q77vJd
Submitted April 07, 2018 at 02:57AM by volci
via reddit https://ift.tt/2GJ2JrT
https://ift.tt/2q77vJd
Submitted April 07, 2018 at 02:57AM by volci
via reddit https://ift.tt/2GJ2JrT
reddit
Secret Service Warns of Chip Card Scheme • r/security
1 points and 0 comments so far on reddit