Infosecurity News
#infosec15: Pen Testers Lack Code-Level Exploit Savvy
Researcher James Lyne says black box tech has led to disconnect from ‘lower level workings’
#infosec15: DevOps is the ‘End of Security as we Know it’ … in a Good Way
A little bit of empathy could go a long way, experts argue
#infosec15: UK Firms Urged to Step Up to Combat New Breed of Social Engineers
Phishing emails are least of their worries, claims leading ‘psychological hacker’
#infosec15: Call for New ICO Powers as Watchdog Misses Thousands of Breaches
Police dealt with at least 13,000 device thefts, but only 1,000 breaches reported to ICO
United Nations: We Need Strong Encryption to Defend Free Speech
UN report at odds with politicians calling for greater restrictions
US Tried to Fire ‘Stuxnet’ Malware at North Korean Nuke Plant
Hermit nation saved by its own global isolation
Apple 'Text of Death' Flaw Hits Twitter, Snapchat
It’s possible to send booby-trapped text, Twitter or Snapchat messages to Apple gear with the express purpose of DoSing them.
Angler Exploit Kit Loads Up CryptoWall 3.0, Flash Flaw
CVE-2015-3090 for Flash by Adobe in the middle of May, so users should upgrade as soon as possible.
Iran Blames US for Cyber-Attack on Oil Ministry
Police chief claims his team foiled plot
Leeds the UK Capital of Smartphone Theft
Swansea and Newcastle are the safest citites
China Preps 5-Year Cybersecurity Plan
The goal is to prevent foreign spying on government departments, state-owned enterprises and financial institutions.
Companies Buy Good Security, But Fail to Deploy It Properly
Data remains at risk because IT teams don’t have the expertise or time to deploy complicated IT security products.
Security Software Growth Tops 5% But Symantec Slumps
Market leader in decline for second consecutive year
Millennials Represent a Vast Insider Threat Vector
Most millennials reuse passwords, find security workarounds, and take a cavalier attitude towards social media privacy.
UK Breach Costs Rise 7% Over Two Years
Ponemon study reveals average loss of £104 per record
Online Scammers Drive UK Identity Fraud up 5%
But account takeover scams drop 38% thanks to improved security
FIDO Alliance Kicks Off Certification and Interop Program
The FIDO Certified program ensures interoperability within the group’s post-password authentication specs.
PCI Council Launches Group to Help Improve SME Compliance
Small merchants are an attractive target for cybercriminals
Hackers Spam Out New Nitlove POS Malware
Those who check emails on Windows Point of Sale machines are at risk
Fake Minecraft Apps for Android See 2.8 Million Downloads
In a classic scareware technique, users are directed to remove "viruses" by activating a premium-rate SMS subscription that costs 4.80 EUR per week.