Login
FreshRSS
Login
Secure Planet Training Courses Updated For 2019 - Click Here
Main stream
Favourites (0)
My labels
Security
/r/netsec - Information Security News & Discussion
Dark Reading:
ICS-CERT Alert Feed
InfoSec Resources
Infosec Island Latest Articles
Krebs on Security
McAfee Blogs
Naked Security
News β Packet Storm
Paul's Security Weekly
SANS Internet Storm Center, InfoCON: green
Security β Cisco Blog
SecurityFocus News
The Hacker News
The Register - Security
The first stop for security news | Threatpost
Threatpost | The first stop for security news
Troy Hunt
Verisign Blog
WIRED
WeLiveSecurity
ZDNet | security RSS
http://blog.trendmicro.com/feed
Tools
KitPloit - PenTest Tools!
Security Tool Files β Packet Storm
ToolsWatch.org β The Hackers Arsenal Tools Portal
Vulnerabilities
Advisory Files β Packet Storm
Exploit-DB Updates
Full Disclosure
SecurityFocus Vulnerabilities
There are new available articles, click to refresh the page.
Before yesterday
Naked Security
Naked Security
FBI warns about scams that lure you in as a mobile beta-tester
August 16
th
2023 at 18:57Β
FBI warns about scams that lure you in as a mobile beta-tester
By:
Paul Ducklin
Apps on your iPhone must come from the App Store. Except when they don't... we explain what to look out for.
π·οΈ
My labels
β
Article tags
β
Law & order
FBI
MDM
pig butchering
romance scam
Scam
TestFlight
August 16
th
2023 at 18:57
Naked Security
SEC demands four-day disclosure limit for cybersecurity breaches
July 31
st
2023 at 16:57Β
SEC demands four-day disclosure limit for cybersecurity breaches
By:
Paul Ducklin
When is a ransomware attack a reportable matter? And how long have you got to decide?
π·οΈ
My labels
β
Article tags
β
Data loss
Opinion
data breach
ransomware
regulation
SEC
July 31
st
2023 at 16:57
Naked Security
Apple silently pulls its latest zero-day update β what now?
July 11
th
2023 at 15:21Β
Apple silently pulls its latest zero-day update β what now?
By:
Paul Ducklin
Previously, we said "do it today", but now we're forced back on: "Do not delay; do it as soon as Apple and your device will let you."
π·οΈ
My labels
β
Article tags
β
Apple
Apple Safari
iOS
OS X
Rapid Security Response
vulnerability
Zero Day
July 11
th
2023 at 15:21
Naked Security
Ghostscript bug could allow rogue documents to run system commands
July 4
th
2023 at 17:57Β
Ghostscript bug could allow rogue documents to run system commands
By:
Paul Ducklin
Even if you've never heard of the venerable Ghostscript project, you may have it installed without knowing.
π·οΈ
My labels
β
Article tags
β
Vulnerability
command injection
CVE-2023-36664
Ghostscript
pipe
rce
vulnerability
July 4
th
2023 at 17:57
Naked Security
Serious Security: That KeePass βmaster password crackβ, and what we can learn from it
May 31
st
2023 at 17:39Β
Serious Security: That KeePass βmaster password crackβ, and what we can learn from it
By:
Paul Ducklin
Here, in an admittedly discursive nutshell, is the fascinating story of CVE-2023-32784. (Short version: Don't panic.)
π·οΈ
My labels
β
Article tags
β
Data loss
CVE-2023-32784
KeePass
memory management
ram scraping
serious security
May 31
st
2023 at 17:39
Naked Security
S3 Ep136: Navigating a manic malware maelstrom
May 25
th
2023 at 16:50Β
S3 Ep136: Navigating a manic malware maelstrom
By:
Paul Ducklin
Latest episode - listen now. Full transcript inside...
π·οΈ
My labels
β
Article tags
β
Denial of Service
Law & order
Malware
Podcast
bust
Cybercrime
hacking
Naked Security Podcast
PyPI
supply chain
Uncategorized
May 25
th
2023 at 16:50
Naked Security
PyPI open-source code repository deals with manic malware maelstrom
May 23
rd
2023 at 16:45Β
PyPI open-source code repository deals with manic malware maelstrom
By:
Paul Ducklin
Controlled outage used to keep malware marauders from gumming up the works. Learn what you can do to help in future...
π·οΈ
My labels
β
Article tags
β
Malware
malware
PyPI
python
supply chain
May 23
rd
2023 at 16:45
Naked Security
Apple delivers first-ever Rapid Security Response βcyberattackβ patch β leaves some users confused
May 1
st
2023 at 20:46Β
Apple delivers first-ever Rapid Security Response βcyberattackβ patch β leaves some users confused
By:
Paul Ducklin
Just when we'd got used to three-numbered versions, such as "13.3.1", here comes an update suffix, bringing you "13.3.1 (a)"...
π·οΈ
My labels
β
Article tags
β
Uncategorized
Apple
Patch
Rapid Security Response
Zero Day
May 1
st
2023 at 20:46
Naked Security
Researchers claim they can bypass Wi-Fi encryption (briefly, at least)
April 3
rd
2023 at 16:59Β
Researchers claim they can bypass Wi-Fi encryption (briefly, at least)
By:
Paul Ducklin
They can't read much of your data, but even a few stray network packets could tell them something they're not supposed to know.
π·οΈ
My labels
β
Article tags
β
Data loss
Framing Frames
snooping
Wi-fi
April 3
rd
2023 at 16:59
Naked Security
Windows 11 also vulnerable to βaCropalypseβ image data leakage
March 22
nd
2023 at 17:59Β
Windows 11 also vulnerable to βaCropalypseβ image data leakage
By:
Paul Ducklin
Turns out that the Windows 11 Snipping Tool has the same "aCropalypse" data leakage bug as Pixel phones. Here's how to work around the problem...
π·οΈ
My labels
β
Article tags
β
Data loss
Microsoft
aCropalypse
CVE-2023-20136
data leakage
Snipping Tool
Windows
March 22
nd
2023 at 17:59
Naked Security
Google Pixel phones had a serious data leakage bug β hereβs what to do!
March 21
st
2023 at 17:58Β
Google Pixel phones had a serious data leakage bug β hereβs what to do!
By:
Paul Ducklin
What if the "safe" images you shared after carefully cropping them... had some or all of the "unsafe" pixels left behind anyway?
π·οΈ
My labels
β
Article tags
β
Android
Data loss
Google
aCropalypse
CVE-2023-20136
image leak
Pixel
March 21
st
2023 at 17:58
Naked Security
Credit card skimming β the long and winding road of supply chain failure
December 8
th
2022 at 17:58Β
Credit card skimming β the long and winding road of supply chain failure
By:
Paul Ducklin
Don't keep calling home to a JavaScript server that closed its doors eight years ago!
π·οΈ
My labels
β
Article tags
β
Data loss
Malware
Privacy
Cockpit
e-commerce
HTML injection
skimming
December 8
th
2022 at 17:58
Naked Security
Ping of death! FreeBSD fixes crashtastic bug in network tool
December 5
th
2022 at 17:59Β
Ping of death! FreeBSD fixes crashtastic bug in network tool
By:
Paul Ducklin
It's a venerable program, and this version had a venerable bug in it.
π·οΈ
My labels
β
Article tags
β
Vulnerability
buffer overflow
freebsd
ICMP
ping
December 5
th
2022 at 17:59
Naked Security
βGucci Masterβ business email scammer Hushpuppi gets 11 years
November 14
th
2022 at 16:24Β
βGucci Masterβ business email scammer Hushpuppi gets 11 years
By:
Naked Security writer
Learn how to protect yourself from big-money tricksters like the Hushpuppis of the world...
puppi-car-1200
π·οΈ
My labels
β
Article tags
β
BEC
Law & order
Abbas
business email compromise
Hushpuppi
November 14
th
2022 at 16:24
Naked Security
Public URL scanning tools β when security leads to insecurity
November 7
th
2022 at 17:59Β
Public URL scanning tools β when security leads to insecurity
By:
Paul Ducklin
Never make your users cry/By how you use an API
π·οΈ
My labels
β
Article tags
β
Privacy
API
BrΔunlein
data leakage
urlscan
November 7
th
2022 at 17:59
Naked Security
Zoom for Mac patches sneaky βspy-on-meβ bug β update now!
October 18
th
2022 at 15:58Β
Zoom for Mac patches sneaky βspy-on-meβ bug β update now!
By:
Paul Ducklin
Hey! That back door isn't supposed to be there at all, let alone propped open...
π·οΈ
My labels
β
Article tags
β
Uncategorized
CVE-2022-28762
snooping
spyware
vulnerabiloity
zoom
October 18
th
2022 at 15:58
Naked Security
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
August 18
th
2022 at 14:38Β
S3 Ep96: Zoom 0-day, AEPIC leak, Conti reward, healthcare security [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now (or read if you prefer!)
π·οΈ
My labels
β
Article tags
β
Cryptography
Intel
Law & order
Malware
Podcast
Privacy
AEPIC
Conti
healthcare
Naked Security Podcast
ransomware
zoom
August 18
th
2022 at 14:38
Naked Security
APIC/EPIC! Intel chips leak secrets even the kernel shouldnβt seeβ¦
August 10
th
2022 at 16:59Β
APIC/EPIC! Intel chips leak secrets even the kernel shouldnβt seeβ¦
By:
Paul Ducklin
If you've ever written code that left stuff lying around in memory when you didn't need it any more... we bet you've regretted it!
π·οΈ
My labels
β
Article tags
β
Cryptography
Data loss
Vulnerability
APIC
CVE-2022-21233
EPIC
SGX
ΓPIC Leak
August 10
th
2022 at 16:59
Naked Security
Capital One identity theft hacker finally gets convicted
June 21
st
2022 at 15:24Β
Capital One identity theft hacker finally gets convicted
By:
Paul Ducklin
It took three years, but the Capital One cracker was convicted in the end. Don't get caught out in a data breach of your own!
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
Malware
capital one
cryptojacking
data breach
doj
SSN
June 21
st
2022 at 15:24
Naked Security
Colonial Pipeline facing $1,000,000 fine for poor recovery plans
May 10
th
2022 at 16:59Β
Colonial Pipeline facing $1,000,000 fine for poor recovery plans
By:
Paul Ducklin
How good is your cybersecurity? Are you making the same mistakes as lots of other people? Here's some real-life advice...
π·οΈ
My labels
β
Article tags
β
Ransomware
Colonial
Colonial Pipeline
MTR
ransomware
May 10
th
2022 at 16:59
Naked Security
Hospital robot system gets five critical security holes patched
April 12
th
2022 at 18:58Β
Hospital robot system gets five critical security holes patched
By:
Paul Ducklin
Fortunately, we're not talking about a robot revolution, or about hospital AI run amuck. But these bugs could lead to ransomware, or worse...
π·οΈ
My labels
β
Article tags
β
Vulnerability
healthcare
hospital
JekyllBot
robot
TUG
vulnerability
April 12
th
2022 at 18:58
Naked Security
S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects [Podcast]
March 17
th
2022 at 13:32Β
S3 Ep74: Cybercrime busts, Apple patches, Pi Day, and disconnect effects [Podcast]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Apple
Law & order
Podcast
Vulnerability
"vulnerability"
PiDay
Cybercrime
Naked Security Podcast
Pi
March 17
th
2022 at 13:32
Naked Security
S3 Ep73: Ransomware with a difference, dirty Linux pipes, and much more [Podcast + Transcript]
March 10
th
2022 at 19:37Β
S3 Ep73: Ransomware with a difference, dirty Linux pipes, and much more [Podcast + Transcript]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Podcast
adafruit
CVE-2022-0847
Cybercrime
Dirty Pipe
Firefox
hacking
Linux
Mozilla
Naked Security Podcast
NVIDIA
ransomware
March 10
th
2022 at 19:37
Naked Security
The cool retro phone with a REAL DIAL⦠plus plenty of IoT problems
December 23
rd
2021 at 17:58Β
The cool retro phone with a REAL DIAL⦠plus plenty of IoT problems
By:
Paul Ducklin
You know you want one, because this retro phone is NOT A TOY... except when it comes to cybersecurity.
π·οΈ
My labels
β
Article tags
β
IoT
Security threats
bugs
Buletooth
Chatter Phone
data leakage
iot
snooping
December 23
rd
2021 at 17:58
Naked Security
Appleβs Mail Privacy Protection feature β watch out if you have a Watch!
November 17
th
2021 at 19:55Β
Appleβs Mail Privacy Protection feature β watch out if you have a Watch!
By:
Paul Ducklin
Apple's "Protect Mail Activity" is a handy privacy enhancement for your messaging habits. As long as you know its limitations...
π·οΈ
My labels
β
Article tags
β
Apple
Privacy
Tracking
tracking pixels
November 17
th
2021 at 19:55
There are no more articles
β
Mark all as read