Stories by Lucian Constantin

Researchers hack Internet Explorer 11 and Chrome at Mobile Pwn2Own

Security researchers have compromised Microsoft Surface RT, Nexus 4 and Samsung Galaxy S4 devices by exploiting previously unknown vulnerabilities in Internet Explorer 11 running on Windows 8.1 and Google Chrome running on Android.

Written by Lucian Constantin14 Nov. 13 12:43

Adobe patches critical vulnerabilities in Flash Player, ColdFusion

Adobe Systems released security updates for Flash Player, AIR and ColdFusion to fix critical vulnerabilities that could allow attackers to take control of affected systems or read information from servers without authorization.

Written by Lucian Constantin13 Nov. 13 16:40

Facebook forces some users to reset passwords because of Adobe data breach

Facebook locked some users out of their accounts after determining that their log-in credentials were exposed as a result of a security breach at Adobe. The company is asking users who used the same log-in credentials for Adobe's online services and Facebook to verify their identity and change their password.

Written by Lucian Constantin12 Nov. 13 16:14

Payment card industry gets updated security standard with new requirements

The PCI Security Standards Council released version 3.0 of the PCI Data Security Standard (PCI DSS) and corresponding Payment Application Data Security Standard (PA-DSS), adding new security requirements and guidance for payment-card industry organizations, including merchants, payment processors, financial institutions and service providers.

Written by Lucian Constantin08 Nov. 13 18:30

Despite patches, Supermicro's IPMI firmware is far from secure, researchers say

The Intelligent Platform Management Interface (IPMI) implementation found in motherboards from server manufacturer Supermicro suffers from serious vulnerabilities that could allow attackers to remotely compromise the management controllers in servers that use them.

Written by Lucian Constantin07 Nov. 13 18:07

Dutch civil society groups sue government over NSA data sharing

A coalition of defense lawyers, privacy advocates and journalists has sued the Dutch government over its collaboration and exchange of data with the U.S. National Security Agency and other foreign intelligence services.

Written by Lucian Constantin06 Nov. 13 17:56

New malware variant suggests cybercriminals targeting SAP users

A new variant of a Trojan program that targets online banking accounts also contains code to search if infected computers have SAP client applications installed, suggesting that attackers might target SAP systems in the future.

Written by Lucian Constantin01 Nov. 13 10:05

Fake social media ID duped security-aware IT guys

Security experts used fake Facebook and LinkedIn profiles pretending to represent a smart, attractive young woman to penetrate the defenses of a U.S. government agency with a high level of cybersecurity awareness, as part of an exercise that shows how effective social engineering attacks can be, even against technically sophisticated organizations.

Written by Lucian Constantin31 Oct. 13 12:22

Cops should be allowed to hack into computers, police officials say

Law enforcement agencies should be allowed to hack into computers to identify cybercriminals and collect evidence, representatives from Europol and the Dutch National Police argued in front of a room full of security professionals at the RSA Europe security conference in Amsterdam.

Written by Lucian Constantin31 Oct. 13 00:38