New Security Flaw Found in Lenovo Solution Center Software

Friday, May 6th, 2016

A new vulnerability has been discovered in Lenovo’s much-maligned Lenovo Solution Center (LSC) software. The vulnerability allows attackers with local network access to a PC to execute arbitrary code, said researchers at Trustwave SpiderLabs. The flaw allows an attacker to elevate privileges and is tied to the LSC application’s backend. It opens the door ...

Google makes it mandatory for Chrome Apps to tell Users what Data they collect

Tuesday, April 19th, 2016

Around 40 percent of all Google Chrome users have some kind of browser extensions, plugins or add-ons installed, but how safe are they? The company plans to enforce developers starting this summer, to "ensure transparent use of the data in a way that is consistent with the wishes and expectations of ...

Qubes OS 3.1 Overview/Demo

Sunday, March 20th, 2016

Here is an excellent overview of Qubes OS, which I am mostly converting over to for my everyday operating system. [embed]https://www.youtube.com/watch?v=dD0_gq_ugw8[/embed] What is Qubes OS?  From it's own website: Qubes is a security-oriented operating system (OS). The OS is the software which runs all the other programs on a computer. Some examples of ...

Google Security Expert Criticizes Meaningless Antivirus Excellence Awards

Tuesday, March 15th, 2016

Over the weekend, one of Google's top security researchers, Tavis Ormandy, published a blog post in which he criticized antivirus certification programs that award meaningless prizes to flawed security products. His problem came from the fact that at this year's RSA security conference held at the start of March, Verizon's ICSA ...

New attack steals secret crypto keys from Android and iOS phones

Saturday, March 5th, 2016

Researchers have devised an attack on Android and iOS devices that successfully steals cryptographic keys used to protect Bitcoin wallets, Apple Pay accounts, and other high-value assets. The exploit is what cryptographers call a non-invasive side-channel attack. It works against the Elliptic Curve Digital Signature Algorithm, a crypto system that's widely ...