Infosecurity News

KilerRat Rises to Carry on NJrat's Torch
It has a broad range of capabilities, ranging from stealing credentials stored in browsers to accessing a victim’s webcam.

New Crypto-Ransomware Targets Linux
Instead of targeting end users with weaponized documents that encrypt their file system, this new breed of ransomware is targeting the web servers themselves.

Touchnote Postcard Service Hacked, Affecting Millions
Registered users' names, email addresses and order history have been accessed.

Nuclear EK Infects Major Nonprofit with Kelihos
The bot is used to send spam email, capture sensitive information or download and execute malicious files.

Pentagon to Develop Lethal Cyber-Weapons—Report
Computer code and cyber-weapons capable of killing adversaries will be developed under a new half-billion-dollar military contract.

Lack of Employee Security Training Plagues US Businesses
About 10% of employees have lost a device with sensitive business info, 12% use shadow IT and 37% have access to information that is above their position.

Teenage 'Cracka' Hackers Hit FBI Deputy Director
The group has leaked more than 3,500 names, email addresses and contact numbers of law enforcement and military personnel.

Coffeemakers, Baby Monitors and More Open Up Big IoT Security Holes
Kaspersky Lab's investigation into the connected home discovered that almost all of the devices tested contained vulnerabilities.

iPhone-targeting XcodeGhost Malware Infiltrates US Enterprises
XcodeGhost has maintained persistence—and has indeed evolved to become even more dangerous.

Vulnerability Remediation Much Slower Than Criminal Exploits
Most organizations fail to secure the holes within their environment faster than cyber-criminals can wreak havoc.

The Return of Angler EK: Chinese Website Redirects to Cryptowall 3.0
The Angler exploit kit has freshened up with new Flash exploits and watering-hole techniques.

FIDO Alliance Certifies New iOS, Mobile Devices
Android, Apple, iOS and TouchID users can leverage FIDO authentication in devices, services and applications instead of passwords.

Zero-Day Attack Compromises a Half-Million Web Forum Accounts—Report
Visitors to forums based on vBulletin and possibly Foxit Software are in danger of having their personal information stolen.

Mac OS X Malware Soars in 2015
Bit9 + Carbon Black warns ‘security by obscurity’ no longer offers protection

IBM’s SoftLayer Pegged as Number One Spammer
Cloudmark report urges Big Blue to crack down on Brazilian crime.

US Government Launches New Cyber Security Strategy Plan
Don’t expect a ‘one-shot silver bullet.’

Tech Contractors Pay $12m to Settle Claims they Failed to Screen Staff
CSC and NetCracker cough up in whistleblower-led civil case

Kaspersky: Mobile Threats Spike in Q3
Displaying intrusive advertisements to consumers remained the main method of profiting from mobile threats.

Bloxx Buyout to Boost Akamai Security
As part of its current cloud security strategy, content delivery network firm Akamai has acquired secure web gateway (SWG) technology provider Bloxx.

US and UK Banks Ready for Resilient Shield Cyber War Games
Attack simulation will test readiness for major incident



