Security

Pierluigi Paganini July 18, 2016
OpenSSH is affected by a user enumeration bug

The popular OpenSSH is affected by a user enumeration bug that could be exploited by a remote attacker to check a list of hacked credentials. A bug (CVE-2016-6210) in the popular OpenSSH crypto library could be exploited by a remote attacker to enumerate users on systems running SSHD. An attacker can exploit the bug to check […]

Pierluigi Paganini July 18, 2016
Robocop is (almost) here : Artificial Intelligence in your Security Team

DARPA organized a challenge where 7 finalists will battle it out with the Artificial Intelligence system to detect flaws and scan networks for exploits. The Rio Olympics 2016 is something everyone is looking forward to. The sportsmanship, the record making, medals the spirit of the game and the hilarious doping scandals like the 1920’s grafting […]

Pierluigi Paganini July 07, 2016
The EU passed the NIS directive, its first ever cyber security rules

The EU has passed the new NIS directive that establishes minimum requirements for cyber-security on critical infrastructure operators. The European Parliament has passed the new network and information security (NIS) directive that establishes minimum requirements for cyber-security on critical infrastructure operators. The NIS directive has a significant impact on all the businesses that supply essential […]

Pierluigi Paganini July 06, 2016
Government wiretaps – You can’t stop what you can’t see

Report on wiretaps in 2015 suggests Americans are using less encryption to hide their activities online, is it really true. Last week, a wiretap report from 2015 surfaced on the United States Courts website that suggests Americans are using less encryption to hide their activities online but the report may not tell the whole story. […]

Pierluigi Paganini July 04, 2016
WhatsApp vs Telegram in Terms of Encryption and Features

Compare and contrast WhatsApp and Telegram, so as to see which of the two messaging apps offers the best option for encrypted chat. Messaging apps have been increasing rapidly in popularity. WhatsApp has gone over one billion users and Telegram claims to have over 350,000 people a day signing up for its services. So, it […]

Pierluigi Paganini July 04, 2016
ThinkPwn UEFI Zero-Day flaw allows hackers to disable security features

The researcher Dmytro Oleksiuk published details of ThinkPwn flaw, a UEFI zero-day that could be exploited by hackers to disable security features. Once again the IT giant Lenovo is in the headlines, some products of the company and some others from other PC vendors, are affected by a UEFI vulnerability, dubbed ThinkPwn, that can be exploited […]

Pierluigi Paganini July 02, 2016
Cyber security outlook: UK needs to re-vamp existing policy due to Brexit vote

The United Kingdom has approved the Brexit, the decision of its citizen of leaving the Europe. Which are the first effects on cyber security? The reality behind the breakaway of the UK in the Brexit referendum vote after nearly 43 years as part of the European Union has caused many to fear the falling value […]

Pierluigi Paganini July 01, 2016
Two flaws in Siemens SICAM PAS impact the energy industry

Researchers discovered two flaws in the Siemens SICAM PAS widely used in the energy industry. One of the vulnerabilities is still unpatched. Security experts from Positive Technologies that have reviewed the Siemens SICAM PAS (Power Automation System) solution have discovered two information disclosure vulnerabilities (CVE-2016-5848 and CVE-2016-5849) that can be exploited by a local attacker. The experts […]

Pierluigi Paganini June 30, 2016
CISCO fixed severe vulnerabilities in Network Management and Security Products

Cisco released security patches for some of its products that fix critical and high severity flaw that could be remotely exploited by hackers. Cisco has released security patches for a number of high-severity vulnerabilities in the CISCO Management and other security products. One of the flaws, a critical vulnerability in the Cisco Prime Collaboration Provisioning (CVE-2016-1416), […]

Pierluigi Paganini June 30, 2016
The transportation industry is increasingly being targeted by hackers

According to the 2015 version of the ‘Transportation Systems Sector-Specific Plan’ the transportation industry is increasingly exposed to cyber threats. The transportation industry is considered part of the critical infrastructure of a country, and according to the IBM’s X-Force security team is it a privileged target for hackers. The report, Security Trends in the Transportation […]