Facebook users worldwide (minus some mobile phones) now getting secure web...
It's one thing to say, "Turn it on for everybody everywhere by default!" But actually getting to ubiquitous HTTPS was a pain in the … umm... browser. But now, Facebook says, after a load of blood,...
View ArticleNSA's XKeyscore is a global dragnet for vulnerable systems
XKeyscore doesn't just turn somebody's Internet life inside out. It's also a blood hound for sniffing out vulnerable systems.
View ArticleHumans still the weakest link as phishing gets smarter and more focused
The latest figures from the APWG show a decline in phishing reports. Verizon, on the other hand, implies that almost all incidents of cyber espionage reported in the last year included some phishing...
View ArticleXKeyScore surveillance, Bradley Manning verdict, LinkedIn hole - 60 Sec...
What's XKeyScore all about? How did Bradley Manning fare? What about the authentication hole in LinkedIn? Watch this week's 60 Second Security video and find out more!
View ArticleApple to fix iPhones' vulnerability to boobytrapped chargers
iPhones and iPads will be vulnerable until they get the iOS 7 update, which is scheduled for release later this year. Until then, you might want to avoid plugging into sleazy charging stations, though...
View ArticleMonday review – the hot 21 stories of the week
Did you miss anything in the past week? Here's a recap of the hot 21 stories of the past seven days, so you can catch up quickly!
View ArticleLatvia blocking extradition of Gozi writer thanks to “disproportionate” US...
One of three men indicted in the US earlier this year in connection with the Gozi banking trojan remains in his native Latvia, after courts twice blocked US requests for extradition. The Latvian...
View ArticleFreedom Hosting arrest and takedown linked to Tor privacy compromise
The anonymising service Tor and the secretive web underworld operating under its shadowy cloak were rocked over the weekend by the arrest of a major hosting provider and suggestions that malicious...
View ArticleAnatomy of a cryptographic oracle - understanding (and mitigating) the BREACH...
A whole lot has been talked, over the past week, about BREACH, a newly-documented attack against HTTPS. Paul Ducklin digs into the theory, shows how it works in practice, and suggests how to soften the...
View ArticleOk, who uses their pet's name as their password?
One in five of us click on spam, 59% of us haven't updated antivirus software this year, 15% of us peek at our partners' emails, 19% of us wander away without logging out (thereby enabling email...
View ArticleHacker doxes intimate email between Colin Powell and Romanian politician
The former US Secretary of State was forced to put out a statement denying an affair after intimate, lovelorn email made its way online.
View ArticleJust when you thought it was safe to go back in the water (closet)!
So many vulnerabilities are doom-and-gloom that you'd be forgiven for wondering if there are ever any at which you are allowed an uncomplicated chuckle. The guys at Trustwave found one!
View ArticleOpenX ad servers "pre-compromised" - official distro contained remote code...
You don't always have to break into someone's web server to get them to deliver your malware for you. You can just break into the server they get their online ads from. Or you can pre-infect the online...
View ArticleDaily Mail readers wince as Mail Online slices and dices their data
The bulbous behemoth of online journalism has security-SNAFUed its way into showing readers other peoples' profiles, including date of birth. But no worries, because Mail Online takes readers' privacy...
View ArticleFirefox 23.0 is out - fixes, features and just a tiny bit of frustration
Note to Firefox fans: 23.0 is out. Paul Ducklin, a Firefox fan himself, looks at the many new fixes, one handy new security feature and a nagging frustration in the update...
View ArticleIs this Snapchat clone really an end to your embarrassing Facebook photos?
Snapchat-alike Secret.li promises to control who sees your truly embarrassing Facebook photos and for how long. What could possibly go wrong?
View ArticleWho is SophosLabs: Peter Szabo, Senior Threat Researcher
In our latest delve into the minds behind SophosLabs, Peter Szabo talks about how the problem with malware isn't going away any time soon. He also reveals that he's a "digital hermit" and stays far far...
View ArticleCalifornia escrow firm shuttered after cyberthieves drained it of $1.5 million
An escrow firm in the US state of California has been run out of business and its nine employees laid off, after a remote access Trojan planted on its system drained it of $1.5 million. Could this...
View ArticleSaga of a stolen iPhone, as told by a trail of automatically uploaded selfies
A thief who stole a woman's iPhone forgot to turn off the auto-upload image feature. So the victim turned his adventures into a blog called 'life of a stranger who stole my phone'.
View ArticleChrome, Firefox display plain-text passwords with a few clicks
An ongoing catfight has boiled up regarding whether these are features or security fright-fests, particularly given that the nontechnical masses aren't liable to know that they can, for example, tell...
View Article