Under Armour is getting kudos for disclosing breach within weeks, but concerns remain over an unknown portion of credentials reportedly stored using the weak SHA-1 hashing function.
Browsing Author: Tom Spring
Drupal developers are urged to patch a bug that allows attackers to take over a site simply by visiting it.
Cisco releases 22 patches as part of its semiannual Cisco IOS and IOS XE software security advisory.
Researcher finds Microsoft’s January Patch Tuesday release included a fix for the Intel Meltdown bug, however the update opened up a new vulnerability.
Researchers identify a new malware family called GoScanSSH that avoids servers linked to government and military IP addresses.
Attackers, purportedly hailing from Korea, are stepping up their malware campaign with three new techniques ranging from abusing UAC and targeting Windows 10.
Mozilla is testing a method of securing DNS traffic via HTTPS, but is faced with some privacy resistance.
Threatpost talks to Kaspersky Lab researcher Kurt Baumgartner who was instrumental in tracking the latest activities of the Russian-speaking Sofacy APT gang.
Drupal is giving developers ample time to prepare for an update that patches a “highly critical” flaw because exploits might be developed within hours or days of disclosure.
Netflix opens up bug bounty program to all white hat hackers and ups the ante for bugs to as much as $15,000.