Our researchers have found more than 50 apps in Google Play that contain XavirAd, which says it doesn’t collect your personal information and then promptly sucks it up and sends it back to the mothership
Google’s OSS-Fuzz Finds 1,000 Open Source Bugs
Google said Tuesday that its OSS-Fuzz project has unearthed over 1,000 bugs, a quarter of them potential security vulnerabilities.
Downloading Chrome for Android? Be careful – we’ve found an evil twin
Techniques used to poison a version of the Android Chrome browser with Andr/SandRat-C, Andr/Rootnik-AH are finding their way into other apps – and into the Play Store
Google Researchers Find Wormable 'Crazy Bad' Windows Exploit
An anonymous reader quotes a report from BleepingComputer: Two Google security experts have found a severe remote code execution (RCE) bug in the Windows OS, which they’ve described as “crazy bad.” The two experts are Natalie Silvanovich and Tavis Ormandy,…
Wormable Windows Zero Day Reported to Microsoft
Google Project Zero researchers Tavis Ormandy and Natalie Silvanovich found a remotely exploitable Windows vulnerability that Ormandy called he worst in recent memory.
The Google-phish-that-was-also-a-worm – what happened and what to do
More on that Google-phish-and-worm saga, with some tips on what to do now, and how to avoid this sort of thing in the future.
Threatpost News Wrap, May 5, 2017
The news of the week is discussed, including the Gmail/Google Docs phishing attack, the Intel AMT vulnerability, IBM’s malware-laden USB drives, and drone security.
Update: Google Doc phishing story takes some bizarre turns
Since news began circulating last night of a phishing campaign parading around as Google Doc access links, the tale has taken strange twists and turns. A self-described graduate student claims he was behind the blast of emails, and that they were…
Google Shuts Down Docs Phishing Spree
Google has removed offending accounts involved in a widespread phishing attack today impersonating Google Docs.
News in brief: Kashmir blocks social media; ‘whaling’ victims revealed; TalkTalk GDPR fine ‘would be £59m’
Your daily round-up of some of the other stories in the news