Shop online at Asda? Website vuln created account hijack risk
Walmart-owned store patches hole, but it was open for nearly 2 years. Retailer Asda dragged its heels for nearly two years before finally this week tackling a set of securityRead More →
Walmart-owned store patches hole, but it was open for nearly 2 years. Retailer Asda dragged its heels for nearly two years before finally this week tackling a set of securityRead More →
A new variant of the infamous Tinba banking trojan has emerged in the wild and is targeting financial institutions in the Asia Pacific region. Even small threats can scare theRead More →
Finnish fellow scores $10k bug bounty for reporting malformed HTML mess. Video A stored XSS vuln in Yahoo! Mail has netted Finnish researcher Jouko Pynnönen of Klikki a US$10,000 bugRead More →
At some point over the weekend, the official website of Belinda Carlisle was compromised, displaying banner ads for a Canadian Pharmacy page. Here’s the Google search result for “Belinda Carlisle”Read More →
This is how a $30 D-Link webcam can be converted into a backdoor. Researchers at US security firm Vectra Networks have hacked a ‘tiny’ D-Link web camera and demonstrated how it canRead More →
In the summer of 2014, anonymous hackers flooded the internet with private nude photos of major (and minor) celebrities. Two years later, new details show the FBI thinks they identifiedRead More →
New interesting revelation about the Stuxnet attack published by The New York Times, a must read for experts. The popular cyber security expert Mikko Hypponen has published an interesting blogRead More →
Ukrainian Government is accusing Russia of organizing hacker attacks against the Boryspil airport’s networks. Cyber security experts of the State Service of Special Communications and Information Protection of Ukraine areRead More →
This article looks at how an attacker can intercept and read emails sent from one email provider to another by performing a DNS MX record hijacking attack. While our researchRead More →
Over the years, I have written many articles here on Null Byte chronicling the many the hacks of the NSA, including the recent hack of the Juniper Networks VPN. (ByRead More →
At the recent ShmooCon conference a researcher presented a LastPass phishing attack that could allow hackers to steal your password. We discussed several times the importance of password managers suchRead More →
THE DEPARTMENT OF Transportation and its automotive safety branch, the National Highway Traffic and Safety Administration, are waking up to the threat of hackable vulnerabilities in Internet-connected cars and trucks.Read More →
The sport of holding Apple, Google and other tech companies over a barrel to demand backdoors now has a new player: New York. The state assembly has come up withRead More →
One thing you might not know about hackers is that besides cracking some virtual systems many of them are fond of hacking real world stuff as well. One thing ofRead More →
Hacked casino operator alleges breach continued while Trustwave was investigating. A Las Vegas-based casino operator has sued security firm Trustwave for conducting an allegedly “woefully inadequate” forensics investigation that missedRead More →
The stolen Bitcoin & Litecoin were worth over $5.7 million. Cryptsy, a website for trading Bitcoin, Litecoin, and other smaller crypto-currencies, announced a security incident, accusing the developer of Lucky7Coin ofRead More →
Apple has had two cracks at patching a vulnerability that allows malicious apps to bypass its OS X Gatekeeper security feature, and twice has taken a shortcut approach to theRead More →
Security firm Damballa says that when computer crime cops in Norway arrested five men last month in a joint operation with Europol, one of them was the creator of theRead More →
Data for 18,000 users stolen in the incident. The website of the Faithless British EDM band has been breached and the personal information of over 18,000 fans stolen by a yetRead More →
OpenSSH today released a patch for a critical vulnerability that could be exploited by an attacker to force a client to leak private cryptographic keys. The attacker would have to controlRead More →