Login
FreshRSS
Login
Secure Planet Training Courses Updated For 2019 - Click Here
Main stream
Favourites (0)
My labels
Security
/r/netsec - Information Security News & Discussion
Dark Reading:
ICS-CERT Alert Feed
InfoSec Resources
Infosec Island Latest Articles
Krebs on Security
McAfee Blogs
Naked Security
News β Packet Storm
Paul's Security Weekly
SANS Internet Storm Center, InfoCON: green
Security β Cisco Blog
SecurityFocus News
The Hacker News
The Register - Security
The first stop for security news | Threatpost
Threatpost | The first stop for security news
Troy Hunt
Verisign Blog
WIRED
WeLiveSecurity
ZDNet | security RSS
http://blog.trendmicro.com/feed
Tools
KitPloit - PenTest Tools!
Security Tool Files β Packet Storm
ToolsWatch.org β The Hackers Arsenal Tools Portal
Vulnerabilities
Advisory Files β Packet Storm
Exploit-DB Updates
Full Disclosure
SecurityFocus Vulnerabilities
There are new available articles, click to refresh the page.
Before yesterday
Naked Security
Naked Security
Google Virus Total leaks list of spooky email addresses
July 18
th
2023 at 23:16Β
Google Virus Total leaks list of spooky email addresses
By:
Paul Ducklin
Careful with that file, Eugene!
π·οΈ
My labels
β
Article tags
β
Microsoft
data leak
Google
Virus Total
VT
July 18
th
2023 at 23:16
Naked Security
S3 Ep138: I like to MOVEit, MOVEit
June 8
th
2023 at 16:56Β
S3 Ep138: I like to MOVEit, MOVEit
By:
Paul Ducklin
Backdoors, exploits, and Little Bobby Tables. Listen now! (Full transcript available...)
s3-ep138-1200
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft
Microsoft Edge
Podcast
Vulnerability
"Edge"
chrome
Gigabyte
MOVEit
Naked Security Podcast
Zero Day
June 8
th
2023 at 16:56
Naked Security
Chrome and Edge zero-day: βThis exploit is in the wildβ, so check your versions now
June 6
th
2023 at 18:28Β
Chrome and Edge zero-day: βThis exploit is in the wildβ, so check your versions now
By:
Paul Ducklin
Chrome and Edge 0-days patched.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft
Microsoft Edge
Vulnerability
"Edge"
chrome
CVE-2023-3079
type confusion
vulnerability
Zero Day
June 6
th
2023 at 18:28
Naked Security
Tracked by hidden tags? Apple and Google unite to propose safety and security standardsβ¦
May 3
rd
2023 at 19:58Β
Tracked by hidden tags? Apple and Google unite to propose safety and security standardsβ¦
By:
Paul Ducklin
To bleat, or not to bleat, that is the question.
π·οΈ
My labels
β
Article tags
β
Apple
Google
Privacy
AirTag
cyberstalking
May 3
rd
2023 at 19:58
Naked Security
Mac malware-for-hire steals passwords and cryptocoins, sends βcrime logsβ via Telegram
April 30
th
2023 at 01:23Β
Mac malware-for-hire steals passwords and cryptocoins, sends βcrime logsβ via Telegram
By:
Paul Ducklin
These malware peddlers are specifically going after Mac users. The hint's in the name: "Atomic macOS Stealer", or AMOS for short.
π·οΈ
My labels
β
Article tags
β
Apple
Brave
Firefox
Google Chrome
Microsoft Edge
Opera
Yandex
AMOS
Cybercrime
mac
malware
April 30
th
2023 at 01:23
Naked Security
Google wins court order to force ISPs to filter botnet traffic
April 28
th
2023 at 19:59Β
Google wins court order to force ISPs to filter botnet traffic
By:
Naked Security writer
CryptBot criminals are alleged to have plundered browser passwords, illicitly-snapped screenshots, cryptocurrency account data, and more.
π·οΈ
My labels
β
Article tags
β
Google
Law & order
bust
CryptBot
racketeering
Scam
April 28
th
2023 at 19:59
Naked Security
S3 Ep132: Proof-of-concept lets anyone hack at will
April 27
th
2023 at 16:55Β
S3 Ep132: Proof-of-concept lets anyone hack at will
By:
Paul Ducklin
When Doug says, "Happy Remote Code Execution Day, Duck"... it's irony. For the avoidance of all doubt :-)
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft
Microsoft Edge
Podcast
Privacy
Vulnerability
"Edge"
chrome
Cybercrime
PaperCut
April 27
th
2023 at 16:55
Naked Security
Google leaking 2FA secrets β researchers advise against new βaccount syncβ feature for now
April 26
th
2023 at 17:59Β
Google leaking 2FA secrets β researchers advise against new βaccount syncβ feature for now
By:
Paul Ducklin
You waited 13 years for this feature in Google Authenticator. Now researchers are advising you to wait a while longer, just in case...
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Google
April 26
th
2023 at 17:59
Naked Security
Double zero-day in Chrome and Edge β check your versions now!
April 24
th
2023 at 16:59Β
Double zero-day in Chrome and Edge β check your versions now!
By:
Paul Ducklin
Wouldn't it be handy if there were a single version number to check for in every Chromium-based browser, on every supported platform?
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft
Microsoft Edge
Vulnerability
"Edge"
chrome
Chromium
Patch
Zero Day
April 24
th
2023 at 16:59
Naked Security
S3 Ep131: Can you really have fun with FORTRAN?
April 20
th
2023 at 17:55Β
S3 Ep131: Can you really have fun with FORTRAN?
By:
Paul Ducklin
Loop-the-loop in this week's episode. Entertaining, educational and all in plain English. Transcript inside.
π·οΈ
My labels
β
Article tags
β
Apple
Google
Law & order
Podcast
2FA
data breach
juicejacking
Naked Security Podcast
rogue apps
April 20
th
2023 at 17:55
Naked Security
FBI and FCC warn about βJuicejackingβ β but just how useful is their advice?
April 17
th
2023 at 14:17Β
FBI and FCC warn about βJuicejackingβ β but just how useful is their advice?
By:
Paul Ducklin
USB charging stations - can you trust them? What are the real risks, and how can you keep your data safe on the road?
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
Privacy
Android
Apple
FBI
FCC
Google
ios
juicejacking
April 17
th
2023 at 14:17
Naked Security
S3 Ep128: So you want to be a cyberΒcriminal? [Audio + Text]
March 30
th
2023 at 14:43Β
S3 Ep128: So you want to be a cyberΒcriminal? [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Apple
Google
Law & order
Microsoft
Podcast
Privacy
DDoS
Naked Security Podcast
vulnerability
March 30
th
2023 at 14:43
Naked Security
S3 Ep127: When you chop someone out of a photo, but there they are anywayβ¦
March 23
rd
2023 at 17:59Β
S3 Ep127: When you chop someone out of a photo, but there they are anywayβ¦
By:
Paul Ducklin
Listen now - latest episode. Full transcript inside.
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Data loss
Google
Microsoft
Podcast
Vulnerability
aCropalypse
BTC
cryptocurrency
Cybercrime
March 23
rd
2023 at 17:59
Naked Security
Google Pixel phones had a serious data leakage bug β hereβs what to do!
March 21
st
2023 at 17:58Β
Google Pixel phones had a serious data leakage bug β hereβs what to do!
By:
Paul Ducklin
What if the "safe" images you shared after carefully cropping them... had some or all of the "unsafe" pixels left behind anyway?
π·οΈ
My labels
β
Article tags
β
Android
Data loss
Google
aCropalypse
CVE-2023-20136
image leak
Pixel
March 21
st
2023 at 17:58
Naked Security
Dangerous Android phone 0-day bugs revealed β patch or work around them now!
March 17
th
2023 at 17:56Β
Dangerous Android phone 0-day bugs revealed β patch or work around them now!
By:
Paul Ducklin
Despite its usually inflexible 0-day disclosure policy, Google is keeping four mobile modem bugs semi-secret due to likely ease of exploitation.
π·οΈ
My labels
β
Article tags
β
Android
Google
Samsung
Vulnerability
Patches
rce
vulnerability
March 17
th
2023 at 17:56
Naked Security
S3 Ep 126: The price of fast fashion (and feature creep) [Audio + Text]
March 16
th
2023 at 17:56Β
S3 Ep 126: The price of fast fashion (and feature creep) [Audio + Text]
By:
Paul Ducklin
Worried about rogue apps? Unsure about the new Outlook zero-day? Clear advice in plain English... just like old times, with Duck and Chet!
π·οΈ
My labels
β
Article tags
β
Data loss
Google
Microsoft
Mozilla
Podcast
Privacy
Vulnerability
Cybercrime
Firefox
Naked Security Podcast
Outlook
Patch Tuesday
SHEIN
vulnerability
March 16
th
2023 at 17:56
Naked Security
S3 Ep124: When so-called security apps go rogue [Audio + Text]
March 2
nd
2023 at 15:40Β
S3 Ep124: When so-called security apps go rogue [Audio + Text]
By:
Paul Ducklin
Rogue software packages. Rogue "sysadmins". Rogue keyloggers. Rogue authenticators. Rogue ROGUES!
s3-ep124-auth--1200
π·οΈ
My labels
β
Article tags
β
Apple
Cryptography
Data loss
Google
Law & order
Podcast
2FA
Cybercrime
extortion
hacking
LastPass
Naked Security Podcast
ransomware
March 2
nd
2023 at 15:40
Naked Security
S3 Ep119: Breaches, patches, leaks and tweaks! [Audio + Text]
January 26
th
2023 at 15:57Β
S3 Ep119: Breaches, patches, leaks and tweaks! [Audio + Text]
By:
Paul Ducklin
Lastest episode - listen now! (Or read the transcript.)
π·οΈ
My labels
β
Article tags
β
Apple
Data loss
Google
Podcast
Vulnerability
DNS
GoTo
LastPass
vulnerability
Zero Day
January 26
th
2023 at 15:57
Naked Security
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
December 9
th
2022 at 16:46Β
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
By:
Paul Ducklin
Breaches, exploits, busts, buffer overflows and bug hunting - entertaining and educational in equal measure.
π·οΈ
My labels
β
Article tags
β
Apple
Google
Law & order
Malware
Microsoft
Podcast
Privacy
Vulnerability
"Edge"
chrome
Cybercrime
Exploit
hacking
ios
Naked Security Podcast
December 9
th
2022 at 16:46
Naked Security
Number Nine! Chrome fixes another 2022 zero-day, Edge patched too
December 5
th
2022 at 00:58Β
Number Nine! Chrome fixes another 2022 zero-day, Edge patched too
By:
Paul Ducklin
Ninth more unto the breach, dear friends, ninth more.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft
Vulnerability
"Edge"
chrome
Chromium
CVE-2022-4262
Zero Day
December 5
th
2022 at 00:58
Naked Security
Chrome fixes 8th zero-day of 2022 β check your version now (Edge too!)
November 28
th
2022 at 19:42Β
Chrome fixes 8th zero-day of 2022 β check your version now (Edge too!)
By:
Paul Ducklin
There isn't a rhyme to remind you which months have browser zero-days... you just have to keep your eyes and ears open!
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft Edge
Vulnerability
"Edge"
chrome
Zero Day
November 28
th
2022 at 19:42
Naked Security
Dangerous SIM-swap lockscreen bypass β update Android now!
November 11
th
2022 at 17:59Β
Dangerous SIM-swap lockscreen bypass β update Android now!
By:
Paul Ducklin
A bit like leaving the front door keys under the doormat...
π·οΈ
My labels
β
Article tags
β
Android
Google
CVE-2022-20465
hacking
lockscreen pypass
SIM
November 11
th
2022 at 17:59
Naked Security
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
November 3
rd
2022 at 17:51Β
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
By:
Paul Ducklin
Listen now - latest episode - audio plus full transcript
π·οΈ
My labels
β
Article tags
β
Apple
Data loss
Google
Law & order
Malware
Podcast
Privacy
Vulnerability
bust
Cybercrime
cyberextortion
data breach
heartbleed
Naked Security Podcast
openssl
Patches
November 3
rd
2022 at 17:51
Naked Security
Chrome issues urgent zero-day fix β update now!
October 29
th
2022 at 15:08Β
Chrome issues urgent zero-day fix β update now!
By:
Paul Ducklin
We've said it before/And we'll say it again/It's not *if* you should patch/It's a matter of *when*. (Hint: now!)
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Vulnerability
"Edge"
0 day
chrome
Chromium
CVE-2022-3723
Exploit
Zero Day
October 29
th
2022 at 15:08
Naked Security
WhatsApp goes after Chinese password scammers via US court
October 7
th
2022 at 16:14Β
WhatsApp goes after Chinese password scammers via US court
By:
Paul Ducklin
If you can't beat 'em, sue 'em!
π·οΈ
My labels
β
Article tags
β
Malware
Android
Google Play
malware
Meta
scammers
WhatsApp
October 7
th
2022 at 16:14
Naked Security
Chrome and Edge fix zero-day security hole β update now!
September 5
th
2022 at 15:12Β
Chrome and Edge fix zero-day security hole β update now!
By:
Paul Ducklin
This time, the crooks got there first - only 1 security hole patched, but it's a zero-day.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Vulnerability
chrome
CVE-2022-3075
Exploit
Patch
Zero Day
September 5
th
2022 at 15:12
Naked Security
Chrome patches 24 security holes, enables βSanitizerβ safety system
August 31
st
2022 at 11:48Β
Chrome patches 24 security holes, enables βSanitizerβ safety system
By:
Paul Ducklin
24 existing bugs fixed. And, we hope, numerous potential future bugs prevented.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Vulnerability
buffer overflow
chrome
Sanitizer
use-after-free
vulnerability
XSS
August 31
st
2022 at 11:48
Naked Security
S3 Ep97: Did your iPhone get pwned? How would you know? [Audio + Text]
August 25
th
2022 at 15:37Β
S3 Ep97: Did your iPhone get pwned? How would you know? [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now! (Or read the transcript if you prefer the text version.)
π·οΈ
My labels
β
Article tags
β
Apple
Cryptocurrency
Google
Microsoft
Podcast
Vulnerability
"Edge"
chrome
crypto
cryptocurrency
denial of service
DOS
iPhone
Naked Security Podcast
R&B
Zero Day
August 25
th
2022 at 15:37
Naked Security
Chrome browser gets 11 security fixes with 1 zero-day β update now!
August 17
th
2022 at 13:16Β
Chrome browser gets 11 security fixes with 1 zero-day β update now!
By:
Paul Ducklin
Don't delay - patch today.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Vulnerability
August 17
th
2022 at 13:16
Naked Security
S3 Ep90: Chrome 0-day again, True Cybercrime, and a 2FA bypass [Podcast + Transcript]
July 7
th
2022 at 14:46Β
S3 Ep90: Chrome 0-day again, True Cybercrime, and a 2FA bypass [Podcast + Transcript]
By:
Paul Ducklin
Listen now! Or read if you prefer...
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Google
Google Chrome
Law & order
Podcast
Vulnerability
2FA
busts
cryptocurrency
Naked Security Podcast
OneCoin
July 7
th
2022 at 14:46
Naked Security
Google patches βin-the-wildβ Chrome zero-day β update now!
July 5
th
2022 at 15:55Β
Google patches βin-the-wildβ Chrome zero-day β update now!
By:
Paul Ducklin
Running Chrome? Do the "Help-About-Update" dance move right now, just to be sure...
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Vulnerability
0 day
chrome
CVE-2022-2294
vulnerability
zer-day
Zero Day
July 5
th
2022 at 15:55
Naked Security
You didnβt leave enough space between ROSE and AND, and AND and CROWN
May 6
th
2022 at 16:59Β
You didnβt leave enough space between ROSE and AND, and AND and CROWN
By:
Paul Ducklin
What weird Google Docs bug connects the words THEREFORE, AND, SECONDLY, WHY, BUT and BESIDES?
π·οΈ
My labels
β
Article tags
β
Google
Vulnerability
crash
Google Docs
recursion
May 6
th
2022 at 16:59
Naked Security
Android monthly updates are out β critical bugs found in critical places!
May 4
th
2022 at 15:54Β
Android monthly updates are out β critical bugs found in critical places!
By:
Paul Ducklin
Android May 2022 updates are out - with some critical fixes in some critical places. Learn more...
π·οΈ
My labels
β
Article tags
β
Android
Google
Vulnerability
critical
Patch
update
vulnerability
May 4
th
2022 at 15:54
Naked Security
Yet another Chrome zero-day emergency update β patch now!
April 16
th
2022 at 00:33Β
Yet another Chrome zero-day emergency update β patch now!
By:
Paul Ducklin
The third emergency Chrome 0-day in three months - the first one was exploited by North Korea, so you might as well get this one ASAP.
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft Edge
Vulnerability
"Edge"
browser
chrome
CVE-2022-1364
type confusion
vulnerability
April 16
th
2022 at 00:33
Naked Security
S3 Ep77: Bugs, busts and old-school PDP-11 hacking [Podcast]
April 7
th
2022 at 12:24Β
S3 Ep77: Bugs, busts and old-school PDP-11 hacking [Podcast]
By:
Paul Ducklin
Latest episode - listen now! Cybersecurity news and advice in plain English.
π·οΈ
My labels
β
Article tags
β
Android
Apple
Firefox
Google
iOS
Law & order
Mozilla
OS X
Podcast
Privacy
Vulnerability
Cybercrime
data breach
lapsus
Naked Security Podcast
Patches
vulnerability
April 7
th
2022 at 12:24
Naked Security
Googleβs monthly Android updates patch numerous βget rootβ holes
April 5
th
2022 at 14:44Β
Googleβs monthly Android updates patch numerous βget rootβ holes
By:
Paul Ducklin
Get the update now... if it's available for your phone. Here's how to check.
android-1200
π·οΈ
My labels
β
Article tags
β
Android
Google
Vulnerability
Android 10
EoP
Patch
vulnerability
April 5
th
2022 at 14:44
Naked Security
S3 Ep76: Deadbolt, LAPSUS$, Zlib, and a Chrome 0-day [Podcast]
March 31
st
2022 at 13:38Β
S3 Ep76: Deadbolt, LAPSUS$, Zlib, and a Chrome 0-day [Podcast]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Google
Law & order
Podcast
Ransomware
Vulnerability
chrome
Clippy
Deadbolt
Naked Security Podcast
ransomware
vulnerability
Zlib
March 31
st
2022 at 13:38
Naked Security
Google Chrome patches mysterious new zero-day bug β update now
March 28
th
2022 at 14:18Β
Google Chrome patches mysterious new zero-day bug β update now
By:
Paul Ducklin
CVE-2022-1096 - another mystery in-the-wild 0-day in Chrome... check your version now!
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
chrome
Chromium
CVE-2022-1096
Exploit
Zero Day
March 28
th
2022 at 14:18
Naked Security
βDirty Pipeβ Linux kernel bug lets anyone write to any file
March 8
th
2022 at 17:37Β
βDirty Pipeβ Linux kernel bug lets anyone write to any file
By:
Paul Ducklin
Even read-only files can be written to, leading to a dangerously general purpose elevation-of-privilege attack.
pipe-1200
π·οΈ
My labels
β
Article tags
β
Android
Google
Linux
Vulnerability
CVE-2022-0847
EoP
file overwrite
kernel
splice
vulnerability
March 8
th
2022 at 17:37
Naked Security
S3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day [Podcast + Transcript]
February 17
th
2022 at 17:12Β
S3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day [Podcast + Transcript]
By:
Paul Ducklin
Latest episode - listen and learn!
π·οΈ
My labels
β
Article tags
β
Podcast
Adobe
Apple
bitcoin
bust
cryptocoins
cryptocurrency
Google
Naked Security Podcast
February 17
th
2022 at 17:12
Naked Security
Google announces zero-day in Chrome browser β update now!
February 15
th
2022 at 19:17Β
Google announces zero-day in Chrome browser β update now!
By:
Paul Ducklin
Zero-day buses: none for a while, then three at once. Here's Google joining Apple and Adobe in "zero-day week"
π·οΈ
My labels
β
Article tags
β
Google
Google Chrome
Microsoft Edge
Vulnerability
chrome
Chromium
CVE-2022-0609
Zero Day
February 15
th
2022 at 19:17
Naked Security
Cloud Security: Donβt wait until your next bill to find out about an attack!
November 26
th
2021 at 17:58Β
Cloud Security: Donβt wait until your next bill to find out about an attack!
By:
Paul Ducklin
Cloud security is the best sort of altruism: you need to do it to protect yourself, but you help to protect everyone else at the same time.
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
cloud security
cryptomining
Google Cloud
November 26
th
2021 at 17:58
There are no more articles
β
Mark all as read