Finnish security researcher Jouko Pynnonen found a second stored cross-site scripting vulnerability in Yahoo Mail in less than a year, both of which earned him $10,000 bug bounties.
Threatpost News Wrap, December 8, 2016
Mike Mimoso and Chris Brook discuss the news of the week, including the latest Linux bug, Sony closing backdoors in cameras, and Google’s new open source fuzzer.
NYU Students Apply Blockchain Solution to Electronic Voting Security
A team of New York University students architected a permissioned blockchain system called Votebook that could be applied to secure electronic voting. Their solution was the winning entry of the Cybersecurity Case Study Competition sponsored by Kaspersky Lab and The…
Ransomware Gives Free Decryption Keys to Victims Who Infect Others
Ransomware still under development called Popcorn Time forces victims to either pay the ransom, or try to infect other machines in exchange for the decryption key.
If you’ve got a Sony IP camera, update its firmware now
Sony closes backdoors in IPELA security cameras – but why were they open in the first place?
News in brief: fake news move; ‘massive’ data breach; spook welcomes Snooper’s charter
Your daily round-up of some of the other security stories in the news
Goldeneye ransomware: the resumé that scrambles your computer twice
Scrambling your files isn’t enough for Goldeneye – once it’s ransomed your data it scrambles Windows as well so you have to pay to reboot.
Did Russia hack the US election? Democrats want an investigation
Russia has denied involvement in hacking the US election, but politicians and intelligence officials fear it played a big part
Watchdog Group Claims Smart Toys Are Spying On Kids
The Center for Digital Democracy has filed a complaint with the Federal Trade Commission warning of security and privacy holes associated with a pair of smart toys designed for children. Mashable reports: “This complaint concerns toys that spy,” reads the…
Yik Yak Lays Off 60 Percent of Employees As Growth Collapses
An anonymous reader quotes a report from The Verge: Yik Yak has laid off 60 percent of employees amid a downturn in the app’s growth prospects, The Verge has learned. The three-year-old anonymous social network has raised $73.5 million from…