Login
FreshRSS
Login
Secure Planet Training Courses Updated For 2019 - Click Here
Main stream
Favourites (0)
My labels
Security
/r/netsec - Information Security News & Discussion
Dark Reading:
ICS-CERT Alert Feed
InfoSec Resources
Infosec Island Latest Articles
Krebs on Security
McAfee Blogs
Naked Security
News β Packet Storm
Paul's Security Weekly
SANS Internet Storm Center, InfoCON: green
Security β Cisco Blog
SecurityFocus News
The Hacker News
The Register - Security
The first stop for security news | Threatpost
Threatpost | The first stop for security news
Troy Hunt
Verisign Blog
WIRED
WeLiveSecurity
ZDNet | security RSS
http://blog.trendmicro.com/feed
Tools
KitPloit - PenTest Tools!
Security Tool Files β Packet Storm
ToolsWatch.org β The Hackers Arsenal Tools Portal
Vulnerabilities
Advisory Files β Packet Storm
Exploit-DB Updates
Full Disclosure
SecurityFocus Vulnerabilities
There are new available articles, click to refresh the page.
Before yesterday
Naked Security
Naked Security
βSnakes in airplane modeβ β what if your phone says itβs offline but isnβt?
August 21
st
2023 at 17:45Β
βSnakes in airplane modeβ β what if your phone says itβs offline but isnβt?
By:
Paul Ducklin
WYSIWYG is short for "what you see is what you get". Except when it isn't...
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Airplane Mode
data leakage
iPhone
WYSIWYG
August 21
st
2023 at 17:45
Naked Security
S3 Ep142: Putting the X in X-Ops
July 6
th
2023 at 17:58Β
S3 Ep142: Putting the X in X-Ops
By:
Paul Ducklin
How to get all your corporate "Ops" teams working together, with cybersecurity correctness as a guiding light.
s3-ep100-js-1200
π·οΈ
My labels
β
Article tags
β
Malware
Podcast
Privacy
Security leadership
Cybercrime
DevOps
hacking
IT
Naked Security Podcast
secops
X-Ops
July 6
th
2023 at 17:58
Naked Security
S3 Ep141: What was Steve Jobsβs first job?
June 29
th
2023 at 16:58Β
S3 Ep141: What was Steve Jobsβs first job?
By:
Paul Ducklin
Latest episode - listen now! (Full transcript inside.)
π·οΈ
My labels
β
Article tags
β
Apple
Cryptocurrency
Data loss
Law & order
Malware
Podcast
Privacy
Vulnerability
bust
Cybercrime
hacking
iPhone
malware
Naked Security Podcast
Twitter
Zero Day
June 29
th
2023 at 16:58
Naked Security
Aussie PM says, βShut down your phone every 24 hours for 5 minsβ β but thatβs not enough on its own
June 23
rd
2023 at 16:10Β
Aussie PM says, βShut down your phone every 24 hours for 5 minsβ β but thatβs not enough on its own
By:
Paul Ducklin
Don't treat rebooting your phone once a day as a cybersecurity talisman... here are 8 additional tips for better mobile phone security.
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Albanese
australia
modile phone tips
June 23
rd
2023 at 16:10
Naked Security
Beware bad passwords as attackers co-opt Linux servers into cybercrime
June 21
st
2023 at 17:50Β
Beware bad passwords as attackers co-opt Linux servers into cybercrime
By:
Paul Ducklin
Did you prevent password-only logins on your SSH servers? On ALL of them? Are you sure about that?
π·οΈ
My labels
β
Article tags
β
Botnet
Cryptocurrency
Malware
botnet
cryptojacking
DDoS
password guessing
ssh
XMrig
zombie malware
June 21
st
2023 at 17:50
Naked Security
S3 Ep139: Are password rules like running through rain?
June 15
th
2023 at 16:43Β
S3 Ep139: Are password rules like running through rain?
By:
Paul Ducklin
Latest episode - listen now! (Full transcript inside.)
π·οΈ
My labels
β
Article tags
β
Law & order
Malware
Microsoft
Podcast
bust
Cybercrime
hacking
malware
Naked Security Podcast
June 15
th
2023 at 16:43
Naked Security
Gozi banking malware βIT chiefβ finally jailed after more than 10 years
June 13
th
2023 at 16:43Β
Gozi banking malware βIT chiefβ finally jailed after more than 10 years
By:
Paul Ducklin
Gozi threesome from way back in the late 2000s and early 2010s now all charged, convicted and sentenced. The DOJ got there in the end...
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
Malware
bust
doj
Gozi
paunescu
June 13
th
2023 at 16:43
Naked Security
S3 Ep136: Navigating a manic malware maelstrom
May 25
th
2023 at 16:50Β
S3 Ep136: Navigating a manic malware maelstrom
By:
Paul Ducklin
Latest episode - listen now. Full transcript inside...
π·οΈ
My labels
β
Article tags
β
Denial of Service
Law & order
Malware
Podcast
bust
Cybercrime
hacking
Naked Security Podcast
PyPI
supply chain
Uncategorized
May 25
th
2023 at 16:50
Naked Security
PyPI open-source code repository deals with manic malware maelstrom
May 23
rd
2023 at 16:45Β
PyPI open-source code repository deals with manic malware maelstrom
By:
Paul Ducklin
Controlled outage used to keep malware marauders from gumming up the works. Learn what you can do to help in future...
π·οΈ
My labels
β
Article tags
β
Malware
malware
PyPI
python
supply chain
May 23
rd
2023 at 16:45
Naked Security
S3 Ep133: Apple takes βtight-lippedβ to a whole new level
May 4
th
2023 at 20:59Β
S3 Ep133: Apple takes βtight-lippedβ to a whole new level
By:
Paul Ducklin
Entertaining, educational, and all in plain English π§π
π·οΈ
My labels
β
Article tags
β
Podcast
AMOS
Apple
mac
malware
Naked Security Podcast
passwords
May 4
th
2023 at 20:59
Naked Security
Mac malware-for-hire steals passwords and cryptocoins, sends βcrime logsβ via Telegram
April 30
th
2023 at 01:23Β
Mac malware-for-hire steals passwords and cryptocoins, sends βcrime logsβ via Telegram
By:
Paul Ducklin
These malware peddlers are specifically going after Mac users. The hint's in the name: "Atomic macOS Stealer", or AMOS for short.
π·οΈ
My labels
β
Article tags
β
Apple
Brave
Firefox
Google Chrome
Microsoft Edge
Opera
Yandex
AMOS
Cybercrime
mac
malware
April 30
th
2023 at 01:23
Naked Security
Attention gamers! Motherboard maker MSI admits to breach, issues βrogue firmwareβ alert
April 11
th
2023 at 16:58Β
Attention gamers! Motherboard maker MSI admits to breach, issues βrogue firmwareβ alert
By:
Paul Ducklin
Stealing private keys is like getting hold of a medieval monarch's personal signet ring... you get to put an official seal on treasonous material.
π·οΈ
My labels
β
Article tags
β
Malware
Ransomware
blackmail
data breach
extortion
MSI
private key
ransomware
supply chain
April 11
th
2023 at 16:58
Naked Security
S3 Ep129: When spyware arrives from someone you trust
April 6
th
2023 at 14:57Β
S3 Ep129: When spyware arrives from someone you trust
By:
Paul Ducklin
Scanning tools, supply-chain malware, Wi-Fi hacking, and why there should be TWO World Backup Days... listen now!
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Podcast
Privacy
3CX
Naked Security Podcast
supply chain
Wi-fi
world backup day
April 6
th
2023 at 14:57
Naked Security
Supply chain blunder puts 3CX telephone app users at risk
March 30
th
2023 at 17:36Β
Supply chain blunder puts 3CX telephone app users at risk
By:
Paul Ducklin
Booby-trapped app, apparently signed and shipped by 3CX itself after its source code repository was broken into.
π·οΈ
My labels
β
Article tags
β
Malware
3CX
Electron
git
malware
suuply chain
March 30
th
2023 at 17:36
Naked Security
LastPass: Keylogger on home PC led to cracked corporate password vault
February 28
th
2023 at 02:23Β
LastPass: Keylogger on home PC led to cracked corporate password vault
By:
Paul Ducklin
Seems the crooks implanted a keylogger via a vulnerable media app (LastPass politely didn't say which one!) on a developer's home computer.
π·οΈ
My labels
β
Article tags
β
Data loss
breach
keylogger
LastPass
malware
February 28
th
2023 at 02:23
Naked Security
Beware rogue 2FA apps in App Store and Google Play β donβt get hacked!
February 27
th
2023 at 02:10Β
Beware rogue 2FA apps in App Store and Google Play β donβt get hacked!
By:
Paul Ducklin
Even in Apple's and Google's "walled gardens", there are plenty of 2FA apps that are either dangerously incompetent, or unrepentantly malicious. (Or perhaps both.)
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Cryptography
Data loss
Malware
2FA
authenticator
authenticator app
mysk_co
Tommy Mysk
TOTP
February 27
th
2023 at 02:10
Naked Security
S3 Ep123: Crypto company compromise kerfuffle [Audio + Text]
February 23
rd
2023 at 17:58Β
S3 Ep123: Crypto company compromise kerfuffle [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now! Top-notch advice for cybersecurity, both at work and at home.
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Data loss
Podcast
Privacy
2FA
Coinbase
crypto
cryptocurrency
Cybercrime
GoDaddy
malware
Naked Security Podcast
Twitter
February 23
rd
2023 at 17:58
Naked Security
GoDaddy admits: Crooks hit us with malware, poisoned customer websites
February 20
th
2023 at 01:36Β
GoDaddy admits: Crooks hit us with malware, poisoned customer websites
By:
Paul Ducklin
New report admits that attackers were detected in the network about three months ago, and may have been attacking for about three years.
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
breach
GoDaddy
malware
February 20
th
2023 at 01:36
Naked Security
Microsoft Patch Tuesday: One 0-day; Win 7 and 8.1 get last-ever patches
January 11
th
2023 at 00:22Β
Microsoft Patch Tuesday: One 0-day; Win 7 and 8.1 get last-ever patches
By:
Paul Ducklin
Get 'em while they're hot. And get 'em for the very last time, if you still have Windows 7 or 8.1...
π·οΈ
My labels
β
Article tags
β
Microsoft
Vulnerability
Exploit
malware. spam. vulnerability
Patch Tuesday
January 11
th
2023 at 00:22
Naked Security
Serious Security: How to improve cryptography, resist supply chain attacks, and handle data breaches
January 4
th
2023 at 19:50Β
Serious Security: How to improve cryptography, resist supply chain attacks, and handle data breaches
By:
Paul Ducklin
Lessons for us all: improve cryptography, fight cybercrime, own your supply chain... and don't steal my data and then pretend you're sorry.
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Podcast
Security leadership
Vulnerability
Cryptography
Cybercrime
Linux
machine learning
vulnerability
January 4
th
2023 at 19:50
Naked Security
PyTorch: Machine Learning toolkit pwned from Christmas to New Year
January 1
st
2023 at 21:36Β
PyTorch: Machine Learning toolkit pwned from Christmas to New Year
By:
Paul Ducklin
The bad news: the crooks have your SSH private keys. The good news: only users of the "nightly" build were affected.
π·οΈ
My labels
β
Article tags
β
Machine Learning
Malware
AI
Artificial intelligence
data stealing
Linux
machine learning
malware
ML
PyTorch
triton
January 1
st
2023 at 21:36
Naked Security
S3 Ep115: True crime stories β A day in the life of a cybercrime fighter [Audio + Text]
December 29
th
2022 at 09:20Β
S3 Ep115: True crime stories β A day in the life of a cybercrime fighter [Audio + Text]
By:
Paul Ducklin
Listen now - you'll be alarmed, amused and educated, all in equal measure. (Full transcript in article.)
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Podcast
Ransomware
Security leadership
Cybercrime
hacking
MDR
Naked Security Podcast
Peter Mackenzie
ransomware
December 29
th
2022 at 09:20
Naked Security
S3 Ep114: Preventing cyberthreats β stop them before they stop you! [Audio + Text]
December 22
nd
2022 at 17:56Β
S3 Ep114: Preventing cyberthreats β stop them before they stop you! [Audio + Text]
By:
Paul Ducklin
Join world-renowned expert Fraser Howard, Director of Research at SophosLabs, for this fascinating episode on how to fight cybercrime.
π·οΈ
My labels
β
Article tags
β
Malware
Podcast
Security leadership
Cybercrime
fraser howard
malware
Security SOS Week
sophoslabs
SOS Week
threat prevention
December 22
nd
2022 at 17:56
Naked Security
S3 Ep113: Pwning the Windows kernel β the crooks who hoodwinked Microsoft [Audio + Text]
December 15
th
2022 at 17:10Β
S3 Ep113: Pwning the Windows kernel β the crooks who hoodwinked Microsoft [Audio + Text]
By:
Paul Ducklin
Return o' the rookit, super-sneaky wireless spyware, credit card skimming, and patches galore. Listen and learn!
π·οΈ
My labels
β
Article tags
β
Apple
Data loss
Malware
Microsoft
Podcast
Privacy
Vulnerability
0 day
Ben-Gurion University
ios
Naked Security Podcast
skimming
supply chain
vulnerability
Zero Day
December 15
th
2022 at 17:10
Naked Security
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
December 9
th
2022 at 16:46Β
S3 Ep112: Data breaches can haunt you more than once! [Audio + Text]
By:
Paul Ducklin
Breaches, exploits, busts, buffer overflows and bug hunting - entertaining and educational in equal measure.
π·οΈ
My labels
β
Article tags
β
Apple
Google
Law & order
Malware
Microsoft
Podcast
Privacy
Vulnerability
"Edge"
chrome
Cybercrime
Exploit
hacking
ios
Naked Security Podcast
December 9
th
2022 at 16:46
Naked Security
Credit card skimming β the long and winding road of supply chain failure
December 8
th
2022 at 17:58Β
Credit card skimming β the long and winding road of supply chain failure
By:
Paul Ducklin
Don't keep calling home to a JavaScript server that closed its doors eight years ago!
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Privacy
Cockpit
e-commerce
HTML injection
skimming
December 8
th
2022 at 17:58
Naked Security
S3 Ep111: The business risk of a sleazy βnudity unfilterβ [Audio + Text]
December 1
st
2022 at 17:58Β
S3 Ep111: The business risk of a sleazy βnudity unfilterβ [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now (or read if you prefer)...
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Law & order
Malware
Podcast
Privacy
CryptoRom
Cybercrime
iSpoof
Naked Security Podcast
porn scam
TikTok
December 1
st
2022 at 17:58
Naked Security
The CHRISTMA EXEC network worm β 35 years and counting!
December 1
st
2022 at 20:35Β
The CHRISTMA EXEC network worm β 35 years and counting!
By:
Paul Ducklin
"Uh-oh, this viruses-and-worms scene could turn out quite troublesome." If only we'd been wrong...
xmas-1200-35-wide
π·οΈ
My labels
β
Article tags
β
Malware
3270
Christma
CMS
IBM
Virus
worm
December 1
st
2022 at 20:35
Naked Security
TikTok βInvisible Challengeβ porn malware puts us all at risk
November 29
th
2022 at 17:58Β
TikTok βInvisible Challengeβ porn malware puts us all at risk
By:
Paul Ducklin
An injury to one is an injury to all. Especially if the other people are part of your social network.
π·οΈ
My labels
β
Article tags
β
Malware
Privacy
Social networks
github
malware
supply chain
Tik Tok
TikTok
November 29
th
2022 at 17:58
Naked Security
Multimillion dollar CryptoRom scam sites seized, suspects arrested in US
November 23
rd
2022 at 19:58Β
Multimillion dollar CryptoRom scam sites seized, suspects arrested in US
By:
Paul Ducklin
Five tips to keep yourself, and your friends and family, out of the clutches of "chopping block" scammers...
cryptorom-1200
π·οΈ
My labels
β
Article tags
β
BEC
Law & order
Malware
Social networks
CryptoRom
ios
romance scam
TestFlight
November 23
rd
2022 at 19:58
Naked Security
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
November 3
rd
2022 at 17:51Β
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
By:
Paul Ducklin
Listen now - latest episode - audio plus full transcript
π·οΈ
My labels
β
Article tags
β
Apple
Data loss
Google
Law & order
Malware
Podcast
Privacy
Vulnerability
bust
Cybercrime
cyberextortion
data breach
heartbleed
Naked Security Podcast
openssl
Patches
November 3
rd
2022 at 17:51
Naked Security
Online ticketing company βSeeβ pwned for 2.5 years by attackers
October 26
th
2022 at 16:58Β
Online ticketing company βSeeβ pwned for 2.5 years by attackers
By:
Paul Ducklin
Don't be a cybersecurity slowcoach - you need to spot possible attacks as soon as you can.
π·οΈ
My labels
β
Article tags
β
Data loss
data breach
See Tickets
Web Malware
October 26
th
2022 at 16:58
Naked Security
WhatsApp goes after Chinese password scammers via US court
October 7
th
2022 at 16:14Β
WhatsApp goes after Chinese password scammers via US court
By:
Paul Ducklin
If you can't beat 'em, sue 'em!
π·οΈ
My labels
β
Article tags
β
Malware
Android
Google Play
malware
Meta
scammers
WhatsApp
October 7
th
2022 at 16:14
Naked Security
Interested in cybersecurity? Join us for Security SOS Week 2022!
September 21
st
2022 at 14:24Β
Interested in cybersecurity? Join us for Security SOS Week 2022!
By:
Paul Ducklin
Four one-on-one interviews with experts who are passionate about sharing their expertise with the community.
π·οΈ
My labels
β
Article tags
β
Security events
Security leadership
Event
malware
SOS Week
September 21
st
2022 at 14:24
Naked Security
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
August 18
th
2022 at 14:38Β
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now (or read if you prefer!)
π·οΈ
My labels
β
Article tags
β
Cryptography
Intel
Law & order
Malware
Podcast
Privacy
AEPIC
Conti
healthcare
Naked Security Podcast
ransomware
zoom
August 18
th
2022 at 14:38
Naked Security
Apple patches double zero-day in browser and kernel β update now!
August 17
th
2022 at 23:33Β
Apple patches double zero-day in browser and kernel β update now!
By:
Paul Ducklin
Double 0-day exploits - one in WebKit (to break in) and the other in the kernel (to take over). Patch now!
π·οΈ
My labels
β
Article tags
β
Apple
iOS
Malware
OS X
Vulnerability
CVE-2022-32893
CVE-2022-32894
ios
iPadOS
jailbreak
macOS
spyware
August 17
th
2022 at 23:33
Naked Security
S3 Ep95: Slack leak, Github onslaught, and post-quantum crypto [Audio + Text]
August 11
th
2022 at 14:34Β
S3 Ep95: Slack leak, Github onslaught, and post-quantum crypto [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now! (Or read the transcript if you prefer.)
π·οΈ
My labels
β
Article tags
β
Cryptography
Data loss
Law & order
Malware
Microsoft
Podcast
Privacy
Cybercrime
github
hacking
malware
Naked Security Podcast
quantum computing
August 11
th
2022 at 14:34
Naked Security
GitHub blighted by βresearcherβ who created thousands of malicious projects
August 3
rd
2022 at 23:06Β
GitHub blighted by βresearcherβ who created thousands of malicious projects
By:
Paul Ducklin
If you spew projects laced with hidden malware into an open source repository, don't waste your time telling us "no harm done" afterwards.
π·οΈ
My labels
β
Article tags
β
Law & order
github
malware
supply chain
August 3
rd
2022 at 23:06
Naked Security
Office macro security: on-again-off-again feature now BACK ON AGAIN!
July 23
rd
2022 at 01:10Β
Office macro security: on-again-off-again feature now BACK ON AGAIN!
By:
Paul Ducklin
20 years to turn it on, then 20 weeks to turn it off, then just 2 weeks to turn it back on again. That's progress!
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Microsoft
Privacy
macros
Office
VBA
July 23
rd
2022 at 01:10
Naked Security
Last member of Gozi malware troika arrives in US for criminal trial
July 20
th
2022 at 14:56Β
Last member of Gozi malware troika arrives in US for criminal trial
By:
Paul Ducklin
His co-conspirators went into and got out of prison years ago, while he remained free. Now the tables have turned...
π·οΈ
My labels
β
Article tags
β
Law & order
Malware
banking malware
bust
Gozi
SpyEye
Zeus
July 20
th
2022 at 14:56
Naked Security
8 months on, US says Log4Shell will be around for βa decade or longerβ
July 18
th
2022 at 16:57Β
8 months on, US says Log4Shell will be around for βa decade or longerβ
By:
Paul Ducklin
When it comes to cybersecurity, ask not what everyone else can do for you...
π·οΈ
My labels
β
Article tags
β
Malware
Vulnerability
CSRB
DHS
Log4j
Log4Shell
Security.txt
July 18
th
2022 at 16:57
Naked Security
S3 Ep91: CodeRed, OpenSSL, Java bugs, Office macros [Audio + Text]
July 14
th
2022 at 18:47Β
S3 Ep91: CodeRed, OpenSSL, Java bugs, Office macros [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now! Great discussion, technical content, solid advice... all covered in plain English.
π·οΈ
My labels
β
Article tags
β
Cryptography
Law & order
Malware
Microsoft
Podcast
AES
Naked Security Podcast
ransomware
RSA
VBA
July 14
th
2022 at 18:47
Naked Security
That didnβt last! Microsoft turns off the Office security it just turned on
July 11
th
2022 at 13:27Β
That didnβt last! Microsoft turns off the Office security it just turned on
By:
Paul Ducklin
An Office anti-malware setting that took more than 20 years to arrive... and fewer than 20 weeks to vanish again.
π·οΈ
My labels
β
Article tags
β
Malware
Microsoft
Phishing
macro
malware
Office
VBA
July 11
th
2022 at 13:27
Naked Security
S3 Ep88: Phone scammers, hacking bust, and data breach fines [Podcast + Transcript]
June 23
rd
2022 at 11:08Β
S3 Ep88: Phone scammers, hacking bust, and data breach fines [Podcast + Transcript]
By:
Paul Ducklin
Latest epsiode - listen (or read) now!
π·οΈ
My labels
β
Article tags
β
Amazon
Cryptocurrency
Data loss
Law & order
Malware
Podcast
Privacy
bust
data breach
hacking
Interpol
Naked Security Podcast
phone scams
scammers
June 23
rd
2022 at 11:08
Naked Security
Capital One identity theft hacker finally gets convicted
June 21
st
2022 at 15:24Β
Capital One identity theft hacker finally gets convicted
By:
Paul Ducklin
It took three years, but the Capital One cracker was convicted in the end. Don't get caught out in a data breach of your own!
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
Malware
capital one
cryptojacking
data breach
doj
SSN
June 21
st
2022 at 15:24
Naked Security
Youβre invited! Join us for a live walkthrough of the βFollinaβ storyβ¦
June 13
th
2022 at 16:28Β
Youβre invited! Join us for a live walkthrough of the βFollinaβ storyβ¦
By:
Paul Ducklin
Live demo, plain English, no sales pitch, just a chance to watch an attack dissected in safety. Join us if you can!
π·οΈ
My labels
β
Article tags
β
Malware
Security leadership
Vulnerability
CVE-2022-30190
Follina
webinar
June 13
th
2022 at 16:28
Naked Security
Poisoned Python and PHP packages purloin passwords for AWS access
May 24
th
2022 at 23:04Β
Poisoned Python and PHP packages purloin passwords for AWS access
By:
Paul Ducklin
More supply chain trouble - this time with clear examples so you can learn how to spot this stuff yourself.
π·οΈ
My labels
β
Article tags
β
Malware
Vulnerability
exfiltration
PHP
python
secops
supply chain
XDR
May 24
th
2022 at 23:04
Naked Security
S3 Ep80: Ransomware news, phishing woes, NAS bugs, and a giant hole in Java [Podcast]
April 28
th
2022 at 13:18Β
S3 Ep80: Ransomware news, phishing woes, NAS bugs, and a giant hole in Java [Podcast]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Malware
Oracle
Podcast
Privacy
Ransomware
CIH
firewall
Java
Naked Security Podcast
ransomware
ZTNA
April 28
th
2022 at 13:18
Naked Security
S3 Ep75: Okta hack, CryptoRom, OpenSSL, and CafePress [Podcast]
March 24
th
2022 at 13:49Β
S3 Ep75: Okta hack, CryptoRom, OpenSSL, and CafePress [Podcast]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Cryptography
Data loss
Malware
Podcast
Vulnerability
CafePress
data breach
ftc
lapsus
Naked Security Podcast
March 24
th
2022 at 13:49
Naked Security
Beware bogus Betas β cryptocoin scammers abuse Appleβs TestFlight system
March 16
th
2022 at 15:49Β
Beware bogus Betas β cryptocoin scammers abuse Appleβs TestFlight system
By:
Paul Ducklin
"Install this moneymaking app" - this one is so special that it isn't available on Google Play or the App Store!
π·οΈ
My labels
β
Article tags
β
Apple
Cryptocurrency
iOS
Malware
cryptocoin scam
CryptoRom
fake app
malware
scammer
TestFlight
March 16
th
2022 at 15:49
Naked Security
At last! Office macros from the internet to be blocked by default
February 8
th
2022 at 16:34Β
At last! Office macros from the internet to be blocked by default
By:
Paul Ducklin
It's been a long time coming, and we're not there yet, but at least Microsoft Office will be a bit safer against macro malware...
π·οΈ
My labels
β
Article tags
β
Malware
Microsoft
Security threats
macroi viruses
malware
Melissa virus
Office
VBA
February 8
th
2022 at 16:34
Naked Security
Microsoft blocks web installation of its own App Installer files
February 7
th
2022 at 16:36Β
Microsoft blocks web installation of its own App Installer files
By:
Paul Ducklin
It's a big deal when a vendor decides to block one of its own "features" for security reasons. Here's why we think it's a good idea.
π·οΈ
My labels
β
Article tags
β
Malware
Phishing
Vulnerability
App Bundle
App Installer
CVE-2021-43890
MSIX
Windows
February 7
th
2022 at 16:36
Naked Security
Firefox update brings a whole new sort of security sandbox
December 7
th
2021 at 17:14Β
Firefox update brings a whole new sort of security sandbox
By:
Paul Ducklin
Firefox 95.0 is out, with the usual security fixes... plus some funky new ones.
π·οΈ
My labels
β
Article tags
β
Malware
Mozilla
Vulnerability
Firefox
Sandbox
vulnerability
December 7
th
2021 at 17:14
Naked Security
Black Friday and Cyber Monday β hereβs what you REALLY need to do!
November 22
nd
2021 at 12:52Β
Black Friday and Cyber Monday β hereβs what you REALLY need to do!
By:
Paul Ducklin
The world fills up with cybersecurity tips every year when Black Friday comes round. But what about the rest of the year?
π·οΈ
My labels
β
Article tags
β
Malware
Phishing
Black Friday
Cyber Monday
cybersecurity
November 22
nd
2021 at 12:52
Naked Security
S3 Ep59: Emotet, an FBI hoax, Samba bugs, and a hijackable suitcase [Podcast]
November 18
th
2021 at 15:00Β
S3 Ep59: Emotet, an FBI hoax, Samba bugs, and a hijackable suitcase [Podcast]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Apple
Law & order
Podcast
Cybercrime
Emotet
iot
malware
Naked Security Podcast
takedown
November 18
th
2021 at 15:00
Naked Security
Emotet malware: βThe report of my death was an exaggerationβ
November 16
th
2021 at 14:13Β
Emotet malware: βThe report of my death was an exaggerationβ
By:
Paul Ducklin
"Old malware rarely dies." The best way to predict the future is to look at the past... if it worked before, it will probably work again.
π·οΈ
My labels
β
Article tags
β
Botnet
Law & order
Malware
Cybercrime
Emotet
ransoimware
zombie
November 16
th
2021 at 14:13
Naked Security
Sophos 2022 Threat Report: Malware, Mobile, Machine learning and more!
November 9
th
2021 at 12:31Β
Sophos 2022 Threat Report: Malware, Mobile, Machine learning and more!
By:
Paul Ducklin
The crooks have shown that they're willing to learn and adapt their attacks, so we need to make sure we learn and adapt, too.
π·οΈ
My labels
β
Article tags
β
Machine Learning
Malware
Mobile
Security leadership
Security threats
AI
MTR
sophoslabs
Threat Report
November 9
th
2021 at 12:31
Naked Security
βCustomer complaintβ email scam preys on your fear of getting into trouble at work
November 5
th
2021 at 17:49Β
βCustomer complaintβ email scam preys on your fear of getting into trouble at work
By:
Paul Ducklin
Stop. Think. Connect. Don't let the crooks trick you into acting in haste.
π·οΈ
My labels
β
Article tags
β
Botnet
Phishing
anti-phishing
Backdoor
botnet
malware
zombie
November 5
th
2021 at 17:49
There are no more articles
β
Mark all as read