Security Affairs

Pierluigi Paganini January 31, 2016
Security Affairs newsletter Round 45 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs Shodan implements a feature to browse vulnerable webcams Europol, a new EU counter terrorism centre opening this month Security Affairs newsletter Round 44 – News of the week Skype – IP will now be hidden by default […]

Pierluigi Paganini January 29, 2016
CenterPOS – The evolution of POS malware

Security Experts at FireEye discovered a new strain of POS malware dubbed CenterPOS that is threatening the retail systems. In the last 2/3 years, we have seen a significant increase in the number of POS malware, their diffusion is becoming even more worrying. We read about many high-profile breaches that involved high-complex malware targeting payment systems […]

Pierluigi Paganini January 26, 2016
Flaw in Magento exposes millions of websites at risk of takeover

A stored cross-site scripting vulnerability in Magento exposes millions of e-commerce websites at risk of takeover, update your platform as soon as possible Once again a vulnerability in the popular Magento e-commerce platform opens at risk of hijacking attacks millions of online merchants. According to the experts at Sucuri, the Magento e-commerce platform was affected by a […]

Pierluigi Paganini January 24, 2016
Security Affairs newsletter Round 44 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs Cyber defence is a profitable Hamster Wheel Energy industry under unceasing attack in 2015 Security Affairs newsletter Round 43 – News of the week Critical OpenSSH bug leaks private crypto keys just fixed LastPass phishing attack could […]

Pierluigi Paganini January 22, 2016
RSA Conference registration page asks Twitter credentials, that’s incredible!

It is hard to believe but the RSA Conference registration page is collecting Twitter credentials sending them back to an RSA server, in-security by design! Security experts from Twitter recently made a singular discovery, the final step of the registration page on the RSA Conference website was requesting user’s Twitter credentials and sending them to the […]

Pierluigi Paganini January 21, 2016
Asacub Android Malware, the multiform threat

Asacub is a new Android threat that has been used by bad actors to infect thousands of users in Russia in a recent SMS spam campaign. According to the experts from Kaspersky Lab, the Trojan-Banker.AndroidOS.Asacub was first detected as a new spyware Trojan. The experts noticed that one of the C&C servers used by the Asacub Android malware (chugumshimusona[.]com) was also […]

Pierluigi Paganini January 20, 2016
The rise of the Brazilian Cybercriminal Underground in 2015

Trend Micro has published a new report on the Brazilian Cybercriminal Underground, a criminal ecosystem that is becoming one of the most important in the world. Trend Micro has published a new report on the Brazilian Cybercriminal Underground, a criminal ecosystem that is becoming one of the most important in the world. A first study […]

Pierluigi Paganini January 20, 2016
Which are the worst passwords of 2015?

SplashData has published its fifth annual report on most used passwords in 2015, including the list of the Worst passwords of the year. For the fifth time, experts from the SplashData security firm have published a report, titled “Worst Passwords of 2015”  that analyzes the use of passwords in 2015. The researchers compiled the annual report with data […]

Pierluigi Paganini January 19, 2016
Tinba, a 20KB trojan that scares banks in Singapore and Indonesia

A new variant of the infamous Tinba banking trojan has emerged in the wild and is targeting financial institutions in the Asia Pacific region. Even small threats can scare the giants, this is the case of Tinba, a small malware that continues to create serious problems for financial institutions. Tinba is a popular financial trojan, the fifth version is […]

Pierluigi Paganini January 18, 2016
National Security Agency says US Govt new spying program meets security standards

National Security Agency says the US Govt surveillance programme for collecting domestic telephone records rmeets security standards The United States government’s updated spying program for gathering native people’ phone records has passed the muster as far as civil and privacy principles, the NSA (National Security Agency) claims. The new structure, which was executed in November […]