Apple recently addressed a vulnerability in its macOS operating system that can be exploited by an attacker to obtain a MacBook’s FileVault password using a $300 device.
read more
Privilege Escalation, RCE Flaws Patched in Nagios Core
Attackers can chain a couple of serious flaws affecting Nagios Core to gain complete control of systems running vulnerable versions of the product, a researcher has warned.
read more
LinkedIn’s Lynda.com Notifies Users of Data Breach
Lynda.com, the online learning platform acquired last year by LinkedIn for $1.5 billion, started notifying customers over the weekend that a database containing user information had been accessed by an unauthorized third party.
read more
Dyre Gang Takes TrickBot Trojan to Asia
TrickBot, the Dyre-linked Trojan that emerged in October 2016, is now targeting users in Singapore, India and Malaysia, IBM X-Force security researchers warn.
read more
0-Day Exploits Could Wreak Havoc on Linux Desktops
Researcher Reveals 0-Day Linux Exploit Leveraging SNES
read more
“Shadow Brokers” Put NSA Exploits Up for Direct Sale
After a failed attempt to sell stolen exploits from the National Security Agency at an auction just months ago, the hacker group calling itself Shadow Brokers has decided to sell them directly via a new website.
read more
No More Ransom Alliance Gains Momentum
In July 2016 the Dutch National Police, Europol, Kaspersky Lab and Intel Security launched the No More Ransom project and website. A primary purpose is to help victims of ransomware recover encrypted files without having to pay the criminals.
read more
Updated Tordow Android Malware Gets Ransomware Capabilities
An updated variant of the Tordow Android malware emerged last month featuring additional data collection capabilities and ransomware-like behavior, security researchers warn.
read more
U.S. Election Assistance Commission Hacked
Russian-Speaking Hacker Selling Data Stolen from U.S. Election Assistance Commission (EAC)
read more
Joomla Patches Dangerous Security Flaws
Joomla this week resolved a High severity vulnerability that allowed an attacker to modify other user accounts by resetting their usernames and passwords.
read more


