Sat.Feb 25, 2017 - Fri.Mar 03, 2017

article thumbnail

macOS malware on the rise as Apple silently patches a mysterious new threat called Proton

Tech Republic Security

No one is safe from malware these days, even macOS users. 2017 has been a banner year for malware on Apple computers, including a new threat that allows total remote control from a web console.

Malware 163
article thumbnail

Bad beat: practical attacks against poker cheating devices

Elie

In-depth research publications, industry talks and blog posts about Google security, research at Google and cybersecurity in general in open-access.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Customized Threat Intelligence Engine

NopSec

Unified VRM Analytics leverages vulnerability data from across all the modules (Internal, External and Web) the user has subscribed to and correlates that vulnerability information with external and internal threat feeds to provide the user actionable security intelligence. This enables the user to proactively protect them and take action against threats and vulnerabilities before potential severe business impact.

article thumbnail

Cracking in the Cloud with CUDA GPUs

Kali Linux

Due to increasing popularity of cloud-based instances for password cracking, we decided to focus our efforts into streamlining Kali’s approach. We’ve noticed that Amazon’s AWS P2-Series and Microsoft’s Azure NC-Series are focused on Windows and Ubuntu. The corresponding blog posts and guides followed suit. Although these instances are limited by the NVIDIA Tesla K80’s hardware capabilities, the ability to quickly deploy a Kali instance with CUDA support is appealing

article thumbnail

The Importance of User Roles and Permissions in Cybersecurity Software

How many people would you trust with your house keys? Chances are, you have a handful of trusted friends and family members who have an emergency copy, but you definitely wouldn’t hand those out too freely. You have stuff that’s worth protecting—and the more people that have access to your belongings, the higher the odds that something will go missing.

article thumbnail

Yahoo confirms 32M accounts breached in 2015-2016 forged cookies attack

Tech Republic Security

In a recent annual report filed with the SEC, Yahoo confirmed that forged cookies were used to hack 32 million accounts. Here's what it means and why your company should be aware of such attacks.

article thumbnail

Introspection on a Recent Downward Spiral

The Falcon's View

Alrighty. now that my RSA summary post is out of the way, let's get into a deeply personal post about how absolutely horrible of a week I had at RSA. Actually, that's not fair. The first half of the week was ok, but some truly horrible human beings targeted me (on social media) on Wednesday of that week, and it drove me straight down into a major depressive crash that left me reeling for days (well, frankly, through to today still).

More Trending

article thumbnail

Enterprise IoT adoption to hit critical mass by 2019, but security remains a top concern

Tech Republic Security

Security breaches have impacted the vast majority of companies that have implemented IoT, according to a new study from HPE's Aruba.

IoT 166
article thumbnail

De-anonymizing web-browsing histories may reveal your social media profiles

Tech Republic Security

Researchers from Princeton and Stanford explain how linking social media profiles to web-browsing activity may threaten the anonymization of browsing histories and lead to a cyberattack.

Media 134
article thumbnail

Report: Drones will impact business, but this one thing is holding them back

Tech Republic Security

A new report from the ISACA said that security and privacy are the top concerns for business leaders looking to implement drone technology in their organization.

article thumbnail

In 2016, Pence used hacked personal email account to discuss homeland security issues

Tech Republic Security

A public records request submitted by IndyStar showed that Mike Pence used his personal AOL account, which was hacked, to discuss security issues with top advisors while he was governor of Indiana.

article thumbnail

IDC Analyst Report: The Open Source Blind Spot Putting Businesses at Risk

In a recent study, IDC found that 64% of organizations said they were already using open source in software development with a further 25% planning to in the next year. Most organizations are unaware of just how much open-source code is used and underestimate their dependency on it. As enterprises grow the use of open-source software, they face a new challenge: understanding the scope of open-source software that's being used throughout the organization and the corresponding exposure.

article thumbnail

Report: 2016 saw 8.5 million mobile malware attacks, ransomware and IoT threats on the rise

Tech Republic Security

Mobile malware attacks increased more than three times between 2015 and 2016, according to a new report from Kaspersky Lab. Here's what you need to know.

Mobile 135
article thumbnail

Responding to cyber threats in the terabit era

Tech Republic Security

Prepare for a new wave of cutting-edge cyber attacks linked to emerging technologies like networked IoT devices. Deloitte vice chairman Paul Sallomi explains how hacks are evolving in the terabit era.

article thumbnail

The Black Report: Attacking your system, from the hacker perspective

Tech Republic Security

To prevent and respond to hacks, says security firm Nuix, you need to think like a hacker. The company's new report shares expert tactics on preventing and responding to cyberattacks.

Hacking 118
article thumbnail

IoT connected teddy bear leaks millions of kids' conversations, exposed database to blame

Tech Republic Security

CloudPets connected stuffed animals recently leaked 2.2 million voice recordings of parents and children, due to poor database security.

IoT 131
article thumbnail

Beware of Pixels & Trackers on U.S. Healthcare Websites

The healthcare industry has massively adopted web tracking tools, including pixels and trackers. Tracking tools on user-authenticated and unauthenticated web pages can access personal health information (PHI) such as IP addresses, medical record numbers, home and email addresses, appointment dates, or other info provided by users on pages and thus can violate HIPAA Rules that govern the Use of Online Tracking Technologies by HIPAA Covered Entities and Business Associates.

article thumbnail

High-tech bacon making using industrial IoT at SugarCreek

Tech Republic Security

Find out how one Indiana food manufacturer is using data-driven decision making in an industrial setting to make one of America's most beloved cured meat products.

IoT 112
article thumbnail

Why Apple shouldn't force two-factor authentication on iPhone users

Tech Republic Security

Recent reports claim that Apple's iOS 10.3 beta is pushing users to enable two-factor authentication, but it might not be the right move.

article thumbnail

How can cybersecurity professionals get better? They need to think like hackers

Tech Republic Security

A new security report finds that security teams are woefully unprepared for many attacks. They could catch many of them if they thought like their attackers, though.

article thumbnail

Video interview: The biggest enterprise cybersecurity red flags

Tech Republic Security

Is your company prepared for a hack? Cisco's Trust Strategy Officer Anthony Grieco explains how to learn from attacks, and highlights the biggest mistakes companies make with cybersecurity policy.

article thumbnail

Software Composition Analysis: The New Armor for Your Cybersecurity

Speaker: Blackberry, OSS Consultants, & Revenera

Software is complex, which makes threats to the software supply chain more real every day. 64% of organizations have been impacted by a software supply chain attack and 60% of data breaches are due to unpatched software vulnerabilities. In the U.S. alone, cyber losses totaled $10.3 billion in 2022. All of these stats beg the question, “Do you know what’s in your software?

article thumbnail

Video interview: The biggest enterprise cybersecurity red flags

Tech Republic Security

Is your company prepared for a hack? Cisco's Trust Strategy Officer Anthony Grieco explains how to learn from attacks, and highlights the biggest mistakes companies make with cybersecurity policy.

article thumbnail

Your computer's hard drive LED can be hacked to transmit your personal data

Tech Republic Security

Researchers were able to change the blink rate on a hard drive LED to turn it into a data stream, which they were then able to capture from outside the building.

Hacking 62
article thumbnail

How can cybersecurity professionals get better? They need to think like hackers

Tech Republic Security

A new security report finds that security teams are woefully unprepared for many attacks. They could catch many of them if they thought like their attackers, though.

article thumbnail

How bad was mobile malware in 2016? Really, really bad

Tech Republic Security

Infection rates on Android devices tripled in 2016. Most frightening was the top source of the infections: The Google Play Store.

Mobile 61
article thumbnail

Cybersecurity Predictions for 2024

Within the past few years, ransomware attacks have turned to critical infrastructure, healthcare, and government entities. Attackers have taken advantage of the rapid shift to remote work and new technologies. Add to that hacktivism due to global conflicts and U.S. elections, and an increased focus on AI, and you have the perfect recipe for a knotty and turbulent 2024.

article thumbnail

How bad was mobile malware in 2016? Really, really bad

Tech Republic Security

Infection rates on Android devices tripled in 2016. Most frightening was the top source of the infections: The Google Play Store.

Mobile 60
article thumbnail

How to install the OpenVAS vulnerability scanner on Ubuntu 16.04

Tech Republic Security

If you're looking for a single tool to run vulnerability scanning on the systems you administer, OpenVAS might be the security tool you need.

128
128
article thumbnail

RSA USA 2017 In Review

The Falcon's View

Now that I've had a week to recover from the annual infosec circus event to end all circus events, I figured it's a good time to attempt being reflective and proffer my thoughts on the event, themes, what I saw, etc, etc, etc. For starters, holy moly, 43,000+ people?!?!?!?!?! I mean. good grief. the event was about a quarter of that a decade ago. If you've never been to RSA, or if you only started attending in the last couple years, then it's really hard to describe to you how dramatic the chang

InfoSec 40
article thumbnail

Despite privacy concerns, Trump will not reform FISA 'to protect the security of the nation'

Tech Republic Security

The Trump administration plans to reauthorize the Foreign Intelligence Surveillance Act, despite criticisms from Congress and privacy advocates, who say it allows unnecessary spying on citizens.

article thumbnail

From Complexity to Clarity: Strategies for Effective Compliance and Security Measures

Speaker: Erika R. Bales, Esq.

When we talk about “compliance and security," most companies want to ensure that steps are being taken to protect what they value most – people, data, real or personal property, intellectual property, digital assets, or any other number of other things - and it’s more important than ever that safeguards are in place. Let’s step back and focus on the idea that no matter how complicated the compliance and security regime, it should be able to be distilled down to a checklist.