Hacking

Pierluigi Paganini February 01, 2016
JSPatch hot patching technique puts iOS users at risk

Security experts at FireEye are warning attackers can exploit the JSPatch hot patching technique to serve malicious code and put iOS users at risk The release of hot patches for apps already deployed in the official App Store is a time-consuming procedure that results frustrating for developers. Apple is aware of this drawback, for this reason […]

Pierluigi Paganini February 01, 2016
Facebook XSS could have allowed attackers to take over users’ accounts

A security researcher has discovered a serious XSS flaw that could have allowed attackers to take over users’ Facebook accounts. The security expert Jack Whitton reported a critical XSS vulnerability to Facebook that could be exploited by hackers to take over users’ Facebook accounts. The researchers reported the flaw to Facebook in July 2015, and […]

Pierluigi Paganini January 30, 2016
A FOP data dump leaked online, 2.5GB of police contracts and data

The Fraternal Order of Police (FOP), a US Police Organisation, has been hacked and 2,5GB data dump leaked online. A data dump related to a US police association has been leaked online, as well as a backup containing personal information belonging to the member of a forum. The data dump results from the data breach […]

Pierluigi Paganini January 30, 2016
ISIS – The first man charged of cyber terrorism has been extradited to the US

Malaysia extradited a hacker charged by DoJ with stealing the personal data of US members and passing it to the ISIS. A former computer science student accused of supporting the ISIL terrorist group has arrived in the US to face charges. The former computer science student Ardit Ferizi is charged with hacking crimes and providing support to […]

Pierluigi Paganini January 30, 2016
A severe flaw in OpenSSL allows hackers to decrypt HTTPS traffic

Developers of OpenSSL issued a patch that fixes a high-severity vulnerability that allows attackers to decrypt secure traffic. The development team at the OpenSSL has issued a security patch to fix a flaw, coded as CVE-2016-0701, that could be exploited by hackers to decrypt secure traffic. The flaw was reported on January 12 by Antonio Sanso […]

Pierluigi Paganini January 29, 2016
HSBC online banking services offline due to a DDoS attack

The British branch of the HSBC bank has suffered for the second time in a month a cyber attack that brought its services offline. It’s happened again, HSBC customers were not able to access the online services of the bank due to a DDoS attack that hit the financial institution. “HSBC UK internet banking was attacked this morning. […]

Pierluigi Paganini January 29, 2016
ATP group uses Word Docs to drop BlackEnergy Malware

The APT group behind the attacks against critical infrastructure in Ukraine is spreading BlackEnergy malware through specially crafted Word documents. Malicious campaigns leveraging the BlackEnergy malware are targeting energy and ICS/SCADA companies from across the world. The threat actors behind the recent attacks based on the popular malware are now targeting critical infrastructure in Ukraine. In […]

Pierluigi Paganini January 28, 2016
ISIS offers hackers up to $10,000 to hack govt websites

The ISIS radical group is trying to infiltrate the Indian hacking community by offering money to hack government websites. 30,000 people on social media have been already contacted by the group. Members of the ISIS are willing to pay Indian hackers to hack into government websites and gain access to sensitive documents. The radical organization […]

Pierluigi Paganini January 28, 2016
Caution, Hackers targeted the cPanel Database

The cPanel Inc. company that manages the popular web hosting account management tool is warning customers about a possible data breach occurred over the weekend. According to the cPanel firm customers’ account information may have been compromised, hackers tried to access a database containing users’ data, including names, salted passwords, and contact information. cPanel Inc. added that […]

Pierluigi Paganini January 28, 2016
ENISA Threat Landscape 2015, a must reading

ENISA has issued the annual ENISA Threat Landscape 2015 a document that synthesizes the emerging trends in cyber security I’m very happy to announce the publication of the annual ENISA Threat Landscape 2015 (ETL 2015), this is the fifth report issued by the European Agency. The ENISA Threat Landscape 2015 summarizes top cyber threats, experts have identified […]