Login
FreshRSS
Login
Secure Planet Training Courses Updated For 2019 - Click Here
Main stream
Favourites (0)
My labels
Security
/r/netsec - Information Security News & Discussion
Dark Reading:
ICS-CERT Alert Feed
InfoSec Resources
Infosec Island Latest Articles
Krebs on Security
McAfee Blogs
Naked Security
News β Packet Storm
Paul's Security Weekly
SANS Internet Storm Center, InfoCON: green
Security β Cisco Blog
SecurityFocus News
The Hacker News
The Register - Security
The first stop for security news | Threatpost
Threatpost | The first stop for security news
Troy Hunt
Verisign Blog
WIRED
WeLiveSecurity
ZDNet | security RSS
http://blog.trendmicro.com/feed
Tools
KitPloit - PenTest Tools!
Security Tool Files β Packet Storm
ToolsWatch.org β The Hackers Arsenal Tools Portal
Vulnerabilities
Advisory Files β Packet Storm
Exploit-DB Updates
Full Disclosure
SecurityFocus Vulnerabilities
There are new available articles, click to refresh the page.
Before yesterday
Naked Security
Naked Security
S3 Ep144: When threat hunting goes down a rabbit hole
July 20
th
2023 at 14:58Β
S3 Ep144: When threat hunting goes down a rabbit hole
By:
Paul Ducklin
Latest episode - check it out now!
π·οΈ
My labels
β
Article tags
β
Uncategorized
Exploit
Microsoft
Naked Security Podcast
Storm
Virus Total
Zero Day
Zimbra
July 20
th
2023 at 14:58
Naked Security
Microsoft hit by Storm season β a tale of two semi-zero days
July 18
th
2023 at 16:59Β
Microsoft hit by Storm season β a tale of two semi-zero days
By:
Paul Ducklin
The first compromise didn't get the crooks as far as they wanted, so they found a second one that did...
π·οΈ
My labels
β
Article tags
β
Cryptography
Data loss
Microsoft
Vulnerability
0 day
authentication
Storm
July 18
th
2023 at 16:59
Naked Security
Google leaking 2FA secrets β researchers advise against new βaccount syncβ feature for now
April 26
th
2023 at 17:59Β
Google leaking 2FA secrets β researchers advise against new βaccount syncβ feature for now
By:
Paul Ducklin
You waited 13 years for this feature in Google Authenticator. Now researchers are advising you to wait a while longer, just in case...
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Google
April 26
th
2023 at 17:59
Naked Security
Ex-CEO of breached pyschotherapy clinic gets prison sentence for bad data security
April 18
th
2023 at 16:56Β
Ex-CEO of breached pyschotherapy clinic gets prison sentence for bad data security
By:
Paul Ducklin
Did the sentence fit the crime? Read the backstory, and then have your say in our comments! (You may post anonymously.)
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
bust
data breach
extortion
Finland
GDPR
April 18
th
2023 at 16:56
Naked Security
Attention gamers! Motherboard maker MSI admits to breach, issues βrogue firmwareβ alert
April 11
th
2023 at 16:58Β
Attention gamers! Motherboard maker MSI admits to breach, issues βrogue firmwareβ alert
By:
Paul Ducklin
Stealing private keys is like getting hold of a medieval monarch's personal signet ring... you get to put an official seal on treasonous material.
π·οΈ
My labels
β
Article tags
β
Malware
Ransomware
blackmail
data breach
extortion
MSI
private key
ransomware
supply chain
April 11
th
2023 at 16:58
Naked Security
S3 Ep124: When so-called security apps go rogue [Audio + Text]
March 2
nd
2023 at 15:40Β
S3 Ep124: When so-called security apps go rogue [Audio + Text]
By:
Paul Ducklin
Rogue software packages. Rogue "sysadmins". Rogue keyloggers. Rogue authenticators. Rogue ROGUES!
s3-ep124-auth--1200
π·οΈ
My labels
β
Article tags
β
Apple
Cryptography
Data loss
Google
Law & order
Podcast
2FA
Cybercrime
extortion
hacking
LastPass
Naked Security Podcast
ransomware
March 2
nd
2023 at 15:40
Naked Security
Beware rogue 2FA apps in App Store and Google Play β donβt get hacked!
February 27
th
2023 at 02:10Β
Beware rogue 2FA apps in App Store and Google Play β donβt get hacked!
By:
Paul Ducklin
Even in Apple's and Google's "walled gardens", there are plenty of 2FA apps that are either dangerously incompetent, or unrepentantly malicious. (Or perhaps both.)
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Cryptography
Data loss
Malware
2FA
authenticator
authenticator app
mysk_co
Tommy Mysk
TOTP
February 27
th
2023 at 02:10
Naked Security
Twitter tells users: Pay up if you want to keep using insecure 2FA
February 20
th
2023 at 17:58Β
Twitter tells users: Pay up if you want to keep using insecure 2FA
By:
Paul Ducklin
Ironically, Twitter Blue users will be allowed to keep using the very 2FA process that's not considered secure enough for everyone else.
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Twitter
2FA
SIM
sim swap
February 20
th
2023 at 17:58
Naked Security
Finnish psychotherapy extortion suspect arrested in France
February 6
th
2023 at 16:13Β
Finnish psychotherapy extortion suspect arrested in France
By:
Naked Security writer
Company transcribed ultra-personal conversations, didn't secure them. Criminal stole them, then extorted thousands of vulnerable patients.
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
data breach
extortion
Vastaamo
February 6
th
2023 at 16:13
Naked Security
S3 Ep116: Last straw for LastPass? Is crypto doomed? [Audio + Text]
January 5
th
2023 at 17:52Β
S3 Ep116: Last straw for LastPass? Is crypto doomed? [Audio + Text]
By:
Paul Ducklin
Lots of big issues this week: breaches, encryption, supply chains and patching problems. Listen now! (Full transcript inside.)
π·οΈ
My labels
β
Article tags
β
Cryptography
Podcast
LastPass
Naked Security Podcast
PyTorch
January 5
th
2023 at 17:52
Naked Security
PyTorch: Machine Learning toolkit pwned from Christmas to New Year
January 1
st
2023 at 21:36Β
PyTorch: Machine Learning toolkit pwned from Christmas to New Year
By:
Paul Ducklin
The bad news: the crooks have your SSH private keys. The good news: only users of the "nightly" build were affected.
π·οΈ
My labels
β
Article tags
β
Machine Learning
Malware
AI
Artificial intelligence
data stealing
Linux
machine learning
malware
ML
PyTorch
triton
January 1
st
2023 at 21:36
Naked Security
Twitter data of β+400 million unique usersβ up for sale β what to do?
December 28
th
2022 at 17:59Β
Twitter data of β+400 million unique usersβ up for sale β what to do?
By:
Paul Ducklin
If the crooks have connected up your phone number and your Twitter handle... what could go wrong?
π·οΈ
My labels
β
Article tags
β
Data loss
breach
extortion
Twitter
December 28
th
2022 at 17:59
Naked Security
S3 Ep111: The business risk of a sleazy βnudity unfilterβ [Audio + Text]
December 1
st
2022 at 17:58Β
S3 Ep111: The business risk of a sleazy βnudity unfilterβ [Audio + Text]
By:
Paul Ducklin
Latest episode - listen now (or read if you prefer)...
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Law & order
Malware
Podcast
Privacy
CryptoRom
Cybercrime
iSpoof
Naked Security Podcast
porn scam
TikTok
December 1
st
2022 at 17:58
Naked Security
Multimillion dollar CryptoRom scam sites seized, suspects arrested in US
November 23
rd
2022 at 19:58Β
Multimillion dollar CryptoRom scam sites seized, suspects arrested in US
By:
Paul Ducklin
Five tips to keep yourself, and your friends and family, out of the clutches of "chopping block" scammers...
cryptorom-1200
π·οΈ
My labels
β
Article tags
β
BEC
Law & order
Malware
Social networks
CryptoRom
ios
romance scam
TestFlight
November 23
rd
2022 at 19:58
Naked Security
Twitter Blue Badge email scams β Donβt fall for them!
November 4
th
2022 at 17:59Β
Twitter Blue Badge email scams β Donβt fall for them!
By:
Naked Security writer
That was the week that was...
π·οΈ
My labels
β
Article tags
β
2-factor Authentication
Phishing
Privacy
Spam
blue badge
phishing
Twitter
verified
November 4
th
2022 at 17:59
Naked Security
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
November 3
rd
2022 at 17:51Β
S3 Ep107: Eight months to kick out the crooks and you think thatβs GOOD? [Audio + Text]
By:
Paul Ducklin
Listen now - latest episode - audio plus full transcript
π·οΈ
My labels
β
Article tags
β
Apple
Data loss
Google
Law & order
Malware
Podcast
Privacy
Vulnerability
bust
Cybercrime
cyberextortion
data breach
heartbleed
Naked Security Podcast
openssl
Patches
November 3
rd
2022 at 17:51
Naked Security
Psychotherapy extortion suspect: arrest warrant issued
October 31
st
2022 at 17:59Β
Psychotherapy extortion suspect: arrest warrant issued
By:
Paul Ducklin
Wanted! Not only the extortionist who abused the data, but also the CEO who let it happen.
π·οΈ
My labels
β
Article tags
β
Law & order
cover-up
extortion
Finland
Vastaamo
October 31
st
2022 at 17:59
Naked Security
Paying ransomware crooks wonβt reduce your legal risk, warns regulator
July 12
th
2022 at 13:24Β
Paying ransomware crooks wonβt reduce your legal risk, warns regulator
By:
Paul Ducklin
"We paid the crooks to keep things under control and make a bad thing better"... isn't a valid excuse. Who knew?
π·οΈ
My labels
β
Article tags
β
GDPR compliance
Law & order
Ransomware
Uncategorized
cyberextortion
GCHQ
ico
NCSC
ransomware
July 12
th
2022 at 13:24
Naked Security
S3 Ep89: Sextortion, blockchain blunder, and an OpenSSL bugfix [Podcast + Transcript]
June 30
th
2022 at 12:57Β
S3 Ep89: Sextortion, blockchain blunder, and an OpenSSL bugfix [Podcast + Transcript]
By:
Paul Ducklin
Latest episode - listen and read now! Use our advice to advise your own friends and family... let's all do our bit to stand up to scammers!
π·οΈ
My labels
β
Article tags
β
Cryptocurrency
Cryptography
Law & order
Podcast
Vulnerability
crypto
cryptocurrency
extortion
Naked Security Podcast
openssl
scammers
June 30
th
2022 at 12:57
Naked Security
FTC warns of LGBTQ+ extortion scams β be aware before you share!
June 27
th
2022 at 14:58Β
FTC warns of LGBTQ+ extortion scams β be aware before you share!
By:
Paul Ducklin
It's a simple jingle and it's solid advice: "If in doubt, don't give it out!"
π·οΈ
My labels
β
Article tags
β
Law & order
Privacy
cyberextortion
extortion
RTC
Scam
June 27
th
2022 at 14:58
Naked Security
Whoβs watching your webcam? The Screencastify Chrome extension storyβ¦
May 26
th
2022 at 12:41Β
Whoβs watching your webcam? The Screencastify Chrome extension storyβ¦
By:
Paul Ducklin
When you really need to make exceptions in cybersecurity, specify them as explicitly as you can.
π·οΈ
My labels
β
Article tags
β
Privacy
Chrome store
need-to-know
Screencastify
webcam
May 26
th
2022 at 12:41
Naked Security
LAPSUS$ hacks continue despite two hacker suspects in court
April 4
th
2022 at 21:36Β
LAPSUS$ hacks continue despite two hacker suspects in court
By:
Paul Ducklin
Do you know where in your company to report security anomalies? If you receive such reports, do you have an efficient way to process them?
π·οΈ
My labels
β
Article tags
β
Data loss
Law & order
Privacy
bust
cyberextortion
hacking
lapsus
ransomware
April 4
th
2022 at 21:36
Naked Security
Beware bogus Betas β cryptocoin scammers abuse Appleβs TestFlight system
March 16
th
2022 at 15:49Β
Beware bogus Betas β cryptocoin scammers abuse Appleβs TestFlight system
By:
Paul Ducklin
"Install this moneymaking app" - this one is so special that it isn't available on Google Play or the App Store!
π·οΈ
My labels
β
Article tags
β
Apple
Cryptocurrency
iOS
Malware
cryptocoin scam
CryptoRom
fake app
malware
scammer
TestFlight
March 16
th
2022 at 15:49
Naked Security
Ransomware with a difference: βDerestrict your software, or else!β
March 2
nd
2022 at 16:33Β
Ransomware with a difference: βDerestrict your software, or else!β
By:
Paul Ducklin
"Change your code to improve cryptomining"... or we'll dump 1TB of stolen secrets.
π·οΈ
My labels
β
Article tags
β
Security threats
data breach
extortion
hacking
lapsus
NVIDIA
ransomware
March 2
nd
2022 at 16:33
Naked Security
S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams [Podcast + Transcript]
February 24
th
2022 at 16:51Β
S3 Ep71: VMware escapes, PHP holes, WP plugin woes, and scary scams [Podcast + Transcript]
By:
Paul Ducklin
Latest episode - listen now!
π·οΈ
My labels
β
Article tags
β
Phishing
Podcast
Vulnerability
backup
Exploit
hacking
Naked Security Podcast
Scam
sextortion
VMware
vulnerability
Wordpress
February 24
th
2022 at 16:51
Naked Security
French speakers blasted by sextortion scams with no text or links
February 21
st
2022 at 17:59Β
French speakers blasted by sextortion scams with no text or links
By:
Paul Ducklin
You'd spot this one a mile away... but what about your friends or family?
π·οΈ
My labels
β
Article tags
β
Privacy
Security threats
Cybercrime
extortion
porn scam
Scam
sextortion
spam
February 21
st
2022 at 17:59
There are no more articles
β
Mark all as read