Hacking

Pierluigi Paganini September 05, 2015
A PayPal stored XSS vulnerability exposed users to hack

Security experts at BitDefender have discovered a PayPal stored XSS vulnerability that could be exploited by hackers run various attacks on PayPal users. Security researchers at Bitdefender have discovered a PayPal stored XSS vulnerability in the e-payment service that could be exploited by attackers to upload specifically crafted files to hack registered users. The PayPal […]

Pierluigi Paganini September 05, 2015
Mozilla Bugzilla accessed, private flaws compromised since at least 2014

Mozilla said that data stolen from its bug tracking system was used to attack Firefox users in the wild, but attackers probably have had access since 2013. A threat actor that stole sensitive vulnerability information from the Mozilla’s Bugzilla bug tracking system last year has likely used it to target Firefox users. Mozilla explained that it did […]

Pierluigi Paganini September 04, 2015
Barclays creates its own red team to attack its systems to find flaws

Barclays has created a red team to hack its own computer systems to discover and exploit security vulnerabilities before external attacker do. For someone working in the security area, it’s known that many companies have red teams to attack their own system, but this information is never recognized by the company. Barclays did exactly the […]

Pierluigi Paganini September 03, 2015
Critical OS X flaw could be exploited to steal data from Keychain

Security researchers at MalwareBytes have discovered a new variant of an adware installer that is leveraging an old trick to access the Keychain on MAC OS X In July, researchers at Malwarebytes have identified a local privilege escalation (LPE) vulnerability in the Mac OS X operating system. The experts discovered that the flaw in OS X was […]

Pierluigi Paganini September 03, 2015
Company’s data at risk due to the use of mobile gambling apps

Veracode has conducted a research on the security of several mobile gambling apps and discovered a number of flaws that expose enterprises to serious risks. If you belong to a global corporation, the most probably think you will find out is that some of your colleagues have installed mobile apps that don’t belong to the […]

Pierluigi Paganini September 03, 2015
Hacking Baby Monitors is dramatically easy

Security researchers from Rapid7 security firm discovered a number of security vulnerabilities affecting several Video Baby Monitors. Researchers find major security flaws in popular networked video baby monitor products that could allow attackers to snoop on babies and businesses. Rapid7 analyzed baby monitors from six vendors, ranging in price from $55 to $260 in order to […]

Pierluigi Paganini September 02, 2015
Once again Chinese smartphones infected with pre-installed malware

Security experts at G-Data security firm have discovered new cases of Chinese Android mobile devices infected by pre-installed malware. Security researchers from G DATA have discovered more than two dozen Android mobile phones from different manufacturers already infected by pre-installed malware. The kits analyzed by the company are commercialized by many manufacturers including Huawei, Lenovo […]

Pierluigi Paganini September 02, 2015
Rocket kitten and Cyber Espionage – Targeting individuals for geopolitical purposes

ClearSky detected new activity from the Rocket kitten APT group against 550 targets, most of which are located in the Middle East. Cyber espionage nowadays plays an important role in politics, it helps governments to decide their “friends” as well their “enemies”, and the more dependent we are of technology the more Cyber espionage will […]

Pierluigi Paganini September 02, 2015
Filet-O-Firewall exposes millions of home routers to attacks

The security vulnerability Filet-O-Firewall in UPnP is exposing millions of home networking devices at risk for cyber attacks. According to a security advisory recently issued by the CERT at the Software Engineering Institute at Carnegie Mellon University, security vulnerabilities in UPnP are exposing millions of home networking devices at risk for cyber attacks. The problem […]

Pierluigi Paganini September 02, 2015
US weighs sanctioning China and Russia in response to recent cyber attacks

The Obama administration weighs sanctioning China and Russia in response to recent cyber attacks who have exposed sensitive data of the US Govt and US firms. The US Government is considering sanctions against both Russian and Chinese hackers in response to the hacking campaign targeting US entities. The news was reported by several U.S. officials yesterday who […]