Yahoo users exposed to malware attack

Sunday, January 5th, 2014

Yahoo.com visitors over the last few days may have been served with malware via the Yahoo ad network, according to a security firm in the Netherlands. Users clicking on some of the ads were redirected to sites armed with code that exploits vulnerabilities in Java and installs a variety of different ...

Unique malware evades sandboxes

Thursday, December 19th, 2013

On Wednesday, security vendor Seculert reported finding that one of five malware types used in the attack had a unique cloaking property for evading sandboxes. The company called the malware DGA.Changer. DGA.Changer's only purpose was to download other malware onto infected computers, Aviv Raff, chief technology officer for Seculert, said on ...

New DDoS malware targets Linux and Windows systems

Wednesday, December 18th, 2013

Attackers are compromising Linux and Windows systems to install a new malware program designed for launching distributed denial-of-service (DDoS) attacks, according to researchers from the Polish Computer Emergency Response Team (CERT Polska). The malware was found by the Polish CERT at the beginning of December and the Linux version is being ...

Firefox 26 blocks Java plugins by default

Wednesday, December 11th, 2013

Mozilla released Firefox 26 which includes five critical, three high, three moderate, and three low security updates. All Java plug-ins are defaulted to 'click to play', which is a welcome security addition. Benjamin Smedberg, Engineering Manager, Stability and Plugins at Mozilla commented: "When Mozilla conducted a user research study on the prototype ...

Have I been pwned?

Friday, December 6th, 2013

A very useful site was just created to check if any of your online accounts have been compromised (yet): http://www.haveibeenpwned.com/ It’s trustworthy…I know the guy who runs it and it will be updated with all the major data breaches going forward.