Infosecurity News
Faithless Fans Suffer Data Breach thanks to SQLi Flaw
Site owners didn’t contact users after September attack
Malicious SEO Campaign Uses SQL Injection to Confuse Page Rankings
The intent is to confuse search engine bots and erroneously impact page rankings for thousands of sites, for mass web defacement.
Most Health and Financial Mobile Apps Are Rife with Vulnerabilities
59% of the Android mobile finance apps tested had at least three Top 10 risks, whereas a full 100% of the iOS apps tested had at least three.
Trochilus RAT Discovered in Multi-Pronged Government Attack
A group of malware is targeting government websites in Asia, using watering-hole methods and spear phishing.
Brazil’s Cybercriminals Compete for Online Infamy – Report
Trend Micro says distracted police and lax laws are to blame
Turkish Hacker Jailed for Over 300 Years
Onur Kopçak gets 135 years to add to his previous 199
Firms Already Swamped by Right to be Forgotten Requests
New study claims few are ready for GDPR compliance
Spymel Trojan Taps Digital Certificates to Avoid Detection
Spymel infects the targeted system through spammed email, spies on all user activity, and relays it to the attacker.
Feds Warn Banks of Rising Ransomware Tide
There has been a concerning uptick in both the number and severity of attacks against financial institutions that involve extortion.
General Motors Launches Bug Bounty Program
Car maker in security push
Report: Lack of Trust Holds Back Mobile Ecosystem
According to the Mobile Ecosystem Forum, 36% of consumers say that lack of trust is the No. 1 reason they decide against mobile apps.
Security Alert as Internet Explorer Support Deadline Lands Next Week
Tuesday 12 January will see many versions left exposed to attackers
WhatsApp Phishing Campaign Unleashes Malware Storm
Fake emails are claiming to be delivering legitimate WhatsApp content.
EZCast TV Streaming Dongle Leaves Home Networks Wide Open to Hackers
The device's security relies on an 8-digit password which is easily brute-forced, allowing full unauthorized access to the user’s network.
Brain Test Malware Discovered Back on Google Play
Malware sold to developers keen to guarantee app installs
NSA Stalwart to Tell Parliament: 'Bulk Collection Costs Lives'
William Binney will warn committee reviewing controversial draft snoopers’ bill
Cisco Jabber UC Client Open to Wiretapping
The vulnerability affects the Cisco Jabber unified communications client for Windows, iPhone, iPad and Android.
Sandworm Team Could Be Behind Ukraine Power Grid Attack
The Sandworm Team is likely to blame if the BlackEnergy malware is found to be behind the attack.
BlackBerry to Stay in Pakistan after BES Encryption 'Victory'
Islamabad appears to back down over data access
Pre-packaged Russian Dating Scam Templates Revealed
Fraud-as-a-service could earn scammers $2,000 per week