Project Zero researcher Tavis Ormandy has identified several vulnerabilities in Palo Alto Networks’ PAN-OS operating system. An attacker can combine the flaws to execute arbitrary code with root privileges.
read more
Do You Need a Threat Intelligence Team?
I have the great opportunity to spend time with CSOs and IT executives to understand their cybersecurity concerns and help them map out a strategy for success.
read more
US Pentagon, Intelligence Sought NSA Chief’s Removal: Reports
The Defense Department and broader US government intelligence community have urged President Barack Obama to fire National Security Agency chief Admiral Michael Rogers, US media reported Saturday.
read more
Pentagon, Intelligence Leaders Seek NSA Chief’s Removal: Reports
Top US military and intelligence leaders are pushing President Barack Obama to fire National Security Agency chief Admiral Michael Rogers, US media reported Saturday, even as Rogers is apparently being considered for a senior position in the Trump administration.
read more
iPhone Call Logs Quietly Synced to iCloud, Forensics Firm Warns
A log of all phone calls made from iPhone devices running iOS 8 or newer may be automatically synchronized to iCloud and susceptible to third-party access, digital forensics and IT security solutions provider Elcomsoft has warned.
read more
Moxa, Vanderbilt Surveillance Products Affected by Serious Flaws
Surveillance products from Moxa and Vanderbilt are affected by several critical and high severity flaws that can be exploited by remote hackers to take control of vulnerable systems.
Moxa SoftCMS vulnerabilities
read more
Over-the-Air Update Mechanism Exposes Millions of Android Devices
The insecure implementation of the OTA (Over-the-air) update mechanism used by numerous Android phone models exposes nearly 3 million phones to Man-in-the-Middle (MitM) attacks and allows adversaries to execute arbitrary commands with root privileges.
read more
When Ransomware Hits Business – Paying Up Unlikely to Guarantee Resolution
A new survey into the prevalence and effect of ransomware confirms many other surveys — around half of all companies have now been affected within the last 12 months. Now, however, there is increasing evidence that paying the ransom is not the end of the matter: 86% of companies that paid up reported that the extortionist attempted to extract a second ransom; and 81% said they had been attacked at least three times.
read more
Ransoc Ransomware Blackmails Victims
A newly observed piece of ransomware isn’t targeting files to encrypt as most threats in this category do, but rather scrapes Skype and social media profiles for personal information to encourage victims to pay the ransom.
read more
New Trojan Used to Spy on Russian Crane Manufacturers
Researchers at Russian security company Doctor Web discovered a new piece of malware used by malicious actors to target some of the largest construction crane manufacturers in Russia.
read more

