Researchers are tracking a new wave of DDoS attacks that rival Mirai when it comes to intensity and scope.
Distributed Guessing Attack Reels in Payment Card Data
A research paper describes vulnerabilities enabling distributed guessing attacks which allow an attacker to collect payment card data across a number of sites without triggering alerts.
Google Debuts Continuous Fuzzer for Open Source Software
A new Google program OSS-Fuzz is aimed at continuously fuzzing open source software and has already detected over 150 bugs.
Dirty Cow Vulnerability Patched in Android Security Bulletin
Today’s Android Security Bulletin included a patch for the Dirty Cow vulnerability, a seven-year-old Linux bug that had yet to be patched by Google.
Google Fixes 12 High-Severity Flaws In Chrome Browser
Chrome 55.0.2883.75 for Windows, Mac, and Linux was released Thursday and patched 36 vulnerabilities, including 12 high-severity flaws eligible for bounties.
Mozilla Patches Firefox Zero Day Used to Unmask Tor Browser Users
Mozilla released a new version of Firefox on Wednesday to address a zero day vulnerability that was actively being exploited to de-anonymize Tor Browser users.
Tor Patched Against Zero Day Under Attack
The Tor Project has provided a browser update that patches a zero-day vulnerability being exploited in the wild to de-anonymize Tor users.
Microsoft Silently Fixes Kernel Bug That Led to Chrome Sandbox Bypass
Microsoft appears to have silently fixed a two-year-old bug in in Windows Kernel Object Manager that could have allowed for the bypass of privileges in Google’s Chrome browser.
New Mirai Variant Targets Routers, Knocks 900,000 Offline
Attackers are targeting DSL routers this week with what’s being called a potent new variant of the Mirai malware that knocked offline major Internet companies like Twitter and Spotify last month.
PayPal Fixes OAuth Token Leaking Vulnerability
PayPal fixed an issue that could have allowed an attacker to hijack OAuth tokens associated with any PayPal OAuth application.