Yahoo’s latest SEC filing includes confirmation that it knew attackers were on its network in 2014 and stole information on 500 million accounts.

Siemens Discloses Local Privilege Escalation Bug in SCADA Gear
Siemens is warning customers of a local privilege escalation vulnerability that leaves over a dozen models of its SCADA equipment open to attack.

Signal Audit Reveals Protocol Cryptographically Sound
Academics audited the popular end-to-end encryption app Signal and their findings are encouraging.

Cloud Security
One of the most effective steps you can take to protect your cloud account is to make sure you are using two-step verification. In addition, always be sure you know exactly whom you are sharing files with. It is very…

Facebook suspends plans to collect WhatsApp user data in the UK
Consumer rights ‘aren’t properly protected’, says the ICO as it says users should be given ‘ongoing control’ over their data

WoT pulls browser extension after privacy failure
WoT has left its users exposed on the web by not properly anonymizing the user data it has been selling to third parties.

Tech support scammers bite Chrome users with forgotten 2014 bug
Vulnerability found two years ago remains unpatched by Google

November Patch Tuesday fixes controversial Windows 0-day hole
This month: 14 bulletins, seven remote code execution holes closed, and one controversial ‘promote yourself to administrator’ zero-day bug fixed.

Google hits incorrigible sites with “Repeat Offender” tag
Google is toughening its Safe Browsing policies for sites that won’t clean up their act

General Motors To Lay Off 2,000 Workers at Two US Plants
General Motors plans to lay off 2,000 employees at two U.S. auto plants in early 2017, the automaker said on Wednesday. From a Reuters report:GM said it will furlough the employees when it cuts the third shift at its Lordstown,…