www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2018-12-15T11:17:05+01:00 www.secnews.physaphae.fr Wired Threat Level - Security News Amazon Came to the Bargaining Table-But Workers Want More 2018-12-15T01:31:01+01:00 https://www.wired.com/story/amazon-labor-protests-minnesota-nyc www.secnews.physaphae.fr/article.php?IdArticle=947129 False None None None ZD Net - Magazine Info SQLite bug impacts thousands of apps, including all Chromium-based browsers 2018-12-14T23:49:02+01:00 https://www.zdnet.com/article/sqlite-bug-impacts-thousands-of-apps-including-all-chromium-based-browsers/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=947036 False None None None The Hacker News - The Hacker News est un blog de news de hack (surprenant non?) Critical SQLite Flaw Leaves Millions of Apps Vulnerable to Hackers ]] 2018-12-14T22:05:01+01:00 https://thehackernews.com/2018/12/sqlite-vulnerability.html www.secnews.physaphae.fr/article.php?IdArticle=947350 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe Electric Vehicle Charging Stations Open to IoT Attacks 2018-12-14T21:41:05+01:00 https://threatpost.com/electric-vehicle-charging-stations/139958/ www.secnews.physaphae.fr/article.php?IdArticle=946854 False None None None Wired Threat Level - Security News Lin-Manuel Miranda\'s Hogwarts House? Slytherin, Naturally 2018-12-14T21:28:00+01:00 https://www.wired.com/story/lin-manuel-miranda-interview www.secnews.physaphae.fr/article.php?IdArticle=946890 False None None None ZD Net - Magazine Info Bing recommends piracy tutorial when searching for Office 2019 2018-12-14T20:58:00+01:00 https://www.zdnet.com/article/bing-recommends-piracy-tutorial-when-searching-for-office-2019/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=946810 False None None None McAfee Labs - Editeur Logiciel Shamoon Returns to Wipe Systems in Middle East, Europe

Destructive malware has been employed by adversaries for years. Usually such attacks are carefully targeted and can be motivated by ideology, politics, or even financial aims. Destructive attacks have a critical impact on businesses, causing the loss of data or crippling business operations. When a company is impacted, the damage can be significant. Restoration can […]

The post Shamoon Returns to Wipe Systems in Middle East, Europe appeared first on McAfee Blogs.

]]
2018-12-14T20:32:04+01:00 https://securingtomorrow.mcafee.com/other-blogs/mcafee-labs/shamoon-returns-to-wipe-systems-in-middle-east-europe/ www.secnews.physaphae.fr/article.php?IdArticle=946791 False None None None
Security Affairs - Blog Secu A bug in Facebook Photo API exposed photos of 6.8 Million users New problems for Facebook, the social network giant announced that a bug related to Photo API could have allowed third-party apps to access users\' photos. Facebook announced that photos of 6.8 Million users might have been exposed by a bug in the Photo API allowing third-party apps to access them.  The bug impacted up over 870 […]

The post A bug in Facebook Photo API exposed photos of 6.8 Million users appeared first on Security Affairs.

]]
2018-12-14T20:14:02+01:00 https://securityaffairs.co/wordpress/78913/social-networks/facebook-photo-api-bug.html www.secnews.physaphae.fr/article.php?IdArticle=946780 False None None None
TechRepublic - Security News US 5G outlook: What\'s to come in 2019 and beyond 2018-12-14T19:50:05+01:00 https://www.techrepublic.com/article/5g-outlook-whats-to-come-in-2019-and-beyond/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946711 False None None None TechRepublic - Security News US Apple predictions for 2019: What business pros can expect 2018-12-14T18:35:03+01:00 https://www.techrepublic.com/article/apple-predictions-for-2019-what-business-pros-can-expect/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946595 False None None None Bleeping Computer - Magazine Américain The Week in Ransomware - December 14th 2018 - Slow Week 2018-12-14T18:31:01+01:00 https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-december-14th-2018-slow-week/ www.secnews.physaphae.fr/article.php?IdArticle=947017 False None None None Wired Threat Level - Security News Gadget Lab Podcast: Climate Change and Cognitive Dissonance 2018-12-14T18:25:00+01:00 https://www.wired.com/2018/12/gadget-lab-podcast-388 www.secnews.physaphae.fr/article.php?IdArticle=946671 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe WordPress 5.0 Patched to Fix Serious Bugs 2018-12-14T18:16:00+01:00 https://threatpost.com/wordpress-5-0-patched-to-fix-serious-bugs/139948/ www.secnews.physaphae.fr/article.php?IdArticle=946633 False None None None TechRepublic - Security News US How to install and connect the new Nextcloud desktop client 2018-12-14T18:10:01+01:00 https://www.techrepublic.com/article/how-to-install-and-connect-the-new-nextcloud-desktop-client/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946596 False None None None Graham Cluley - Blog Security International email bomb hoax proves to be a spectacular failure International email bomb hoax proves to be a spectacular failure

Authorities in the United States, Canada, Australia, and New Zealand are said to be investigating a wave of bogus bomb threats that have been sent to a variety of organisations late on Thursday.

But if the hoaxer thought they were going to make a lot of money through the scam, they\'re going to be disappointed.

]]
2018-12-14T17:50:00+01:00 https://www.grahamcluley.com/international-email-bomb-hoax-proves-to-be-a-spectacular-failure/ www.secnews.physaphae.fr/article.php?IdArticle=946540 False None None None
Wired Threat Level - Security News Facebook Exposed 6.8 Million Users\' Photos to Cap Off a Terrible 2018 2018-12-14T17:22:00+01:00 https://www.wired.com/story/facebook-photo-api-bug-millions-users-exposed www.secnews.physaphae.fr/article.php?IdArticle=946565 False None None None SecurityWeek - Security News Photos of 6.8 Million Facebook Users Exposed by API Bug Facebook Discloses Photo API Bug Affecting 6.8 Million Users

read more

]]
2018-12-14T17:10:00+01:00 https://www.securityweek.com/photos-68-million-facebook-users-exposed-api-bug www.secnews.physaphae.fr/article.php?IdArticle=946961 False None None None
Tech Worm - Desc 3 New Ways To Take A ScreenShot On Android Smartphones Android is possibly the most popular Smartphone OS with more than 2 billion monthly active devices. There might be times when you are looking for how to take screenshots on Android smartphone? Here in this article, we are providing you with the best easiest ways to take a screenshot on android devices. A screenshot is […]

The post 3 New Ways To Take A ScreenShot On Android Smartphones appeared first on TechWorm.

]]
2018-12-14T16:58:01+01:00 https://www.techworm.net/2018/12/ways-take-screenshot-android-smartphone.html www.secnews.physaphae.fr/article.php?IdArticle=946436 False None None None
Bleeping Computer - Magazine Américain Neofetch Creates Colorful System Information Screens using Ascii Art 2018-12-14T16:57:05+01:00 https://www.bleepingcomputer.com/news/software/neofetch-creates-colorful-system-information-screens-using-ascii-art/ www.secnews.physaphae.fr/article.php?IdArticle=946868 False None None None UnderNews - Site de news "pirate" francais Alexa ! Vous avez été témoin… qui est le meurtrier ? Alexa va peut-être se retrouver au tribunal car les enquêteurs sont convaincus qu\'elle aurait été témoin - et aurait enregistré - un double homicide.]] 2018-12-14T16:47:04+01:00 https://www.undernews.fr/libertes-neutralite/alexa-vous-avez-ete-temoin-qui-est-le-meurtrier.html www.secnews.physaphae.fr/article.php?IdArticle=946370 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe Facebook Flaw Exposes Private Photos for 6.8M Users 2018-12-14T16:44:05+01:00 https://threatpost.com/facebook-photos-exposed/139940/ www.secnews.physaphae.fr/article.php?IdArticle=946461 False None None None TechRepublic - Security News US How to connect a Pixel 3 to a Chromebook-and why you should 2018-12-14T16:43:00+01:00 https://www.techrepublic.com/article/how-to-connect-a-pixel-3-to-a-chromebook-and-why-you-should/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946416 False None None None TechRepublic - Security News US 67% of women in tech feel underestimated at work, report says 2018-12-14T16:33:01+01:00 https://www.techrepublic.com/article/67-of-women-in-tech-feel-underestimated-at-work-report-says/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946417 False None None None SecurityWeek - Security News Identity Intelligence Firm 4iQ Lands $18 Million in Series B Funding Los Altos, California-based startup 4iQ, which describes its self as the "identity intelligence company", this week announced that it has secured $18 million in Series B funding, bringing the total raised by the company to date to $32 million. 

read more

]]
2018-12-14T16:28:04+01:00 https://www.securityweek.com/identity-intelligence-firm-4iq-lands-18-million-series-b-funding www.secnews.physaphae.fr/article.php?IdArticle=946962 False None None None
SecurityWeek - Security News Siemens Patches Several Critical Flaws in SINUMERIK Controllers Siemens informed customers this week that its SINUMERIK controllers are affected by denial-of-service (DoS), privilege escalation and code execution vulnerabilities, including several flaws that have been classified as “critical.”

read more

]]
2018-12-14T16:27:00+01:00 https://www.securityweek.com/siemens-patches-several-critical-flaws-sinumerik-controllers www.secnews.physaphae.fr/article.php?IdArticle=946963 False None None None
TechRepublic - Security News US 2019 cloud security predictions 2018-12-14T16:18:00+01:00 https://www.techrepublic.com/article/2019-cloud-security-predictions/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946418 False None None None Malwarebytes Labs - MalwarebytesLabs How threat actors are using SMB vulnerabilities SMB vulnerabilities have been so successful for criminals that they\'ve been used in some of the most devastating ransomware and Trojan attacks of the last two years. Learn how they work and how your organization can protect against them.

Categories:

101 Business

Tags:

(Read more...)

The post How threat actors are using SMB vulnerabilities appeared first on Malwarebytes Labs.

]]
2018-12-14T16:00:00+01:00 https://blog.malwarebytes.com/101/2018/12/how-threat-actors-are-using-smb-vulnerabilities/ www.secnews.physaphae.fr/article.php?IdArticle=946486 False None None None
ZD Net - Magazine Info Facebook bug exposed private photos of 6.8 million users 2018-12-14T16:00:00+01:00 https://www.zdnet.com/article/facebook-bug-exposed-private-photos-of-6-8-million-users/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=946395 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe Logitech Keystroke Injection Flaw Went Unaddressed for Months 2018-12-14T15:55:01+01:00 https://threatpost.com/logitech-keystroke-injection-flaw/139928/ www.secnews.physaphae.fr/article.php?IdArticle=946336 False None None None TechRepublic - Security News US ADATA UE700 Pro offers high performance for a USB flash drive 2018-12-14T15:52:04+01:00 https://www.techrepublic.com/article/adata-ue700-pro-offers-high-performance-for-a-usb-flash-drive/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946308 False None None None TechRepublic - Security News US Top 5 questions for data scientists 2018-12-14T15:41:00+01:00 https://www.techrepublic.com/article/top-5-questions-for-data-scientists/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946309 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe Save the Children Federation Duped in $1M Scam 2018-12-14T15:38:05+01:00 https://threatpost.com/save-the-children-federation-duped-in-1m-scam/139925/ www.secnews.physaphae.fr/article.php?IdArticle=946337 False None None None TechRepublic - Security News US What will the next year bring for developers? 2018-12-14T15:29:02+01:00 https://www.techrepublic.com/article/what-will-the-next-year-bring-for-developers/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946310 False None None None InformationSecurityBuzzNews - Site de News Securite New Android Trojan Targets PayPal Users News has broken that security researchers at Slovakia\'s ESET have identified a new banking Trojan that bypasses PayPal\'s two-factor authentication (2FA) to steal funds – waiting until users have fully logged in before enabling its exploit. The multifaceted malware also has a secondary function, downloading HTML-based phishing overlay screens for five apps – Google Play, WhatsApp, Skype, Viber, …

The ISBuzz Post: This Post New Android Trojan Targets PayPal Users appeared first on Information Security Buzz.

]]
2018-12-14T15:15:03+01:00 https://www.informationsecuritybuzz.com/expert-comments/new-android-trojan-targets-paypal-users/ www.secnews.physaphae.fr/article.php?IdArticle=946263 False None None None
ZD Net - Magazine Info Signal: We can\'t include a backdoor in our app for the Australian government 2018-12-14T15:09:00+01:00 https://www.zdnet.com/article/signal-we-cant-include-a-backdoor-in-our-app-for-the-australian-government/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=946282 False None None None Wired Threat Level - Security News Hundreds of Photos Form a Single Portrait of Britain\'s Decline 2018-12-14T15:00:00+01:00 https://www.wired.com/story/photo-collage-emily-allchurch www.secnews.physaphae.fr/article.php?IdArticle=946233 False None None None TechRepublic - Security News US The top 5 digital transformation challenges businesses face 2018-12-14T14:32:02+01:00 https://www.techrepublic.com/article/the-top-5-digital-transformation-challenges-businesses-face/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946179 False None None None InformationSecurityBuzzNews - Site de News Securite Critical Infrastructure Targeted In New Threat Campaign A cyberthreat group using malware tied to the Sony Pictures hack of late 2014 is attacking nuclear, defense, energy, and financial companies in what appears to be a campaign to gather information for future exploitation. In October and November alone, the malware has appeared on systems belonging to at least 87 organizations, most of them in …

The ISBuzz Post: This Post Critical Infrastructure Targeted In New Threat Campaign appeared first on Information Security Buzz.

]]
2018-12-14T14:30:02+01:00 https://www.informationsecuritybuzz.com/expert-comments/critical-infrastructure/ www.secnews.physaphae.fr/article.php?IdArticle=946151 False None None None
SecurityWeek - Security News Facebook Paid Out $1.1 Million in Bug Bounties in 2018 Facebook publishes bug bounty program results for 2018

read more

]]
2018-12-14T14:19:01+01:00 https://www.securityweek.com/facebook-paid-out-11-million-bug-bounties-2018 www.secnews.physaphae.fr/article.php?IdArticle=946964 False None None None
Security Intelligence - Site de news Américain How Alex Rombak Uses His Hospitality Background to Provide Top Tier Technical Support Alex Rombak has heard your jokes about tech support, and he doesn\'t mind. He knows the important role he plays in supply chain security, supporting financial institutions when things go wrong.

The post How Alex Rombak Uses His Hospitality Background to Provide Top Tier Technical Support appeared first on Security Intelligence.

]]
2018-12-14T14:15:02+01:00 https://securityintelligence.com/how-alex-rombak-uses-his-hospitality-background-to-provide-top-tier-technical-support/ www.secnews.physaphae.fr/article.php?IdArticle=946207 False None None None
ANSSI - Flux Étatique Francais LPM 2019 – 2025 : la publication du décret d\'application de l\'article 34 renforce les missions de l\'ANSSI 2018-12-14T14:04:05+01:00 https://ssi.gouv.fr/actualite/lpm-2019-2025-la-publication-du-decret-dapplication-de-larticle-34-renforce-les-missions-de-lanssi/ www.secnews.physaphae.fr/article.php?IdArticle=946278 False None None None Checkpoint - Fabricant Materiel Securite Check Point\'s Enterprise Sizing Tool – Appliance Testing Under Real World Conditions With security threats rising in prevalence and sophistication, threat prevention appliances are performing under higher-than-ever-before traffic volumes. In this new environment, it can be challenging to choose the right appliance to meet your security objectives, performance requirements, and growth expectations.   In the past, selecting the right security appliance was based on artificial lab testing…

The post Check Point\'s Enterprise Sizing Tool – Appliance Testing Under Real World Conditions appeared first on Check Point Software Blog.

]]
2018-12-14T14:00:02+01:00 http://blog.checkpoint.com/2018/12/14/check-points-enterprise-sizing-tool-appliance-testing-under-real-world-conditions/ www.secnews.physaphae.fr/article.php?IdArticle=946161 False None None None
Wired Threat Level - Security News Sonic the Hedgehog Is Ready For His Closeup-and It\'s Weird 2018-12-14T14:00:00+01:00 https://www.wired.com/story/sonic-hedgehog-movie-gaming-news www.secnews.physaphae.fr/article.php?IdArticle=946123 False None None None Wired Threat Level - Security News No GPS? A DIY Radio Transmitter Can Help You Navigate 2018-12-14T14:00:00+01:00 https://www.wired.com/story/no-gps-a-diy-radio-transmitter-can-help-you-navigate www.secnews.physaphae.fr/article.php?IdArticle=946121 False None None None AlienVault Blog - AlienVault est un acteur de defense majeur dans les IOC Things I Hearted this Year 2018

It’s hard to believe the whole year has gone past and I’ve been hearting things nearly every week since it began.

I’d like to sum up 2018, so I started to look through all the posts from every week and I realised it was a mammoth task. There have been 40 “Things I hearted” blog posts this year, each with an average of 10 stories. And that doesn’t include the dozens of other stories that didn’t make the cut every week.

Suffice to say, it’s been a very busy year as far as information security is concerned. Which could mean that business is very good. Or it could just mean that business is as usual, we’re just getting better at covering the stories.

In YouTube fashion, I decided to do a video rewind of some of the notable stories of the year (minus Will Smith and the big budget)

Conspiracy videos aside, let’s have a recap of an assortment of stories that were hearted over the course of the year.

January 12th Edition

Toy Firm VTech Fined Over Data Breach

VTech, the ‘smart’ toy manufacturer has been fined $650,000 by the FTC after exposing the data of millions of parents and children.

Troy Hunt brought up the issue back in November 2015 and it made for a chilling read. Not only was the website not secure, but the data was not encrypted in transit or at rest.

Hopefully, this kind of crackdown on weak ‘smart’ devices will continue until we see some changes. Not that I enjoy seeing companies being fined, but it doesn’t seem like many manufacturers are paying much attention to security.

March 9th Edition

SAML, SSO Many Vulnerabilities

SAML-based single sign on systems have some vulnerabilities that allow attackers with authenticated access to trick SAML systems into authenticating as different users without knowledge of the victims’ password.

Sounds like a lot of fun.

March 30th Edition

Investigating Lateral Movement Paths with ATA

Even when you do your best to protect your sensitive users, and your admins have complex passwords that they change frequently, their machines are hardened, and their data is stored securely, attackers can still use lateral movement paths to access sensitive accounts. In lateral movement attacks, the attacker takes advantage of instances when sensitive users log into a machine where a non-sensitive user has local rights. Attackers can then move late]] 2018-12-14T14:00:00+01:00 https://feeds.feedblitz.com/~/586368544/0/alienvault-blogs~Things-I-Hearted-this-Year www.secnews.physaphae.fr/article.php?IdArticle=946201 False None None None Wired Threat Level - Security News How to Cancel Subscriptions in Your Phone\'s Settings Menu 2018-12-14T14:00:00+01:00 https://www.wired.com/story/how-to-manage-subscription-services www.secnews.physaphae.fr/article.php?IdArticle=946122 False None None None TechRepublic - Security News US Google is reading text in YouTube videos for search crawling without user consent 2018-12-14T13:55:00+01:00 https://www.techrepublic.com/article/google-is-reading-text-in-youtube-videos-for-search-crawling-without-user-consent/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946062 False None None None TechRepublic - Security News US IBM\'s AI predictions: Trusted AI, quantum computing take center stage in 2019 2018-12-14T13:48:00+01:00 https://www.techrepublic.com/article/ibms-ai-predictions-trusted-ai-quantum-computing-take-center-stage-in-2019/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946063 False None None None ZD Net - Magazine Info Fancy Bear exploits Brexit to target government groups with Zebrocy Trojan 2018-12-14T13:41:04+01:00 https://www.zdnet.com/article/fancy-bear-exploits-brexit-to-target-government-groups-with-zebrocy-trojan/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=946027 False None None None Bleeping Computer - Magazine Américain Microsoft Launches AI Malware Prediction Competition with $25K Prize 2018-12-14T13:19:03+01:00 https://www.bleepingcomputer.com/news/security/microsoft-launches-ai-malware-prediction-competition-with-25k-prize/ www.secnews.physaphae.fr/article.php?IdArticle=946646 False None None None Security Affairs - Blog Secu WordPress version 5.0.1 addressed several vulnerabilities This week, the WordPress development team released on Thursday the version 5.0.1 of the popular CMS, that addresses several flaws. The Researcher Tim Coen discovered several cross-site scripting (XSS) vulnerabilities in the CMS. One of the flaws is caused by the ability of contributors to edit new comments from users with higher privileges. Coen also discovered that it […]

The post WordPress version 5.0.1 addressed several vulnerabilities appeared first on Security Affairs.

]]
2018-12-14T13:16:04+01:00 https://securityaffairs.co/wordpress/78906/security/wordpress-5_0_1.html www.secnews.physaphae.fr/article.php?IdArticle=946095 False None None None
SecurityWeek - Security News Authorities: Wave of Hoax Bomb Threats Made Across US A wave of bomb threats emailed Thursday to hundreds of schools, businesses and government buildings across the U.S. triggered searches, evacuations and fear - but there were no signs of explosives, and authorities said the scare appeared to be a crude extortion attempt.

read more

]]
2018-12-14T13:09:04+01:00 https://www.securityweek.com/authorities-wave-hoax-bomb-threats-made-across-us www.secnews.physaphae.fr/article.php?IdArticle=946965 False None None None
TechRepublic - Security News US The world\'s most popular programming language is JavaScript, but why? 2018-12-14T13:03:02+01:00 https://www.techrepublic.com/article/the-worlds-most-popular-programming-language-is-javascript-but-why/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=946064 False None None None InformationSecurityBuzzNews - Site de News Securite Shamoon Malware Re-Emerges Mounir Hahad, head of the Juniper Threat Labs, lent some perspective to news that a new variant of the Shamoon malware was discovered on the network of Italian oil and gas contractor Saipem. Mounir Hahad, Head at Juniper Threat Labs: “This version of the Shamoon destroyer packs the same punch as previous attacks, but was made more difficult to study …

The ISBuzz Post: This Post Shamoon Malware Re-Emerges appeared first on Information Security Buzz.

]]
2018-12-14T13:00:02+01:00 https://www.informationsecuritybuzz.com/expert-comments/shamoon-malware-re-emerges/ www.secnews.physaphae.fr/article.php?IdArticle=946051 False None None None
IT Security Guru - Blog Sécurité Cylance Narrows The Cybersecurity Skills Gap With Virtual CISO. Cylance Inc., the leading provider of AI-driven, prevention-first security solutions, today announced the availability of its virtual chief information security officer (vCISO) service, a program designed to provide organisations with critical technology and security resources that support next-generation security architectures and offer robust staff augmentation. Cylance vCISO enables customers at organisations large and small tackle […]

The post Cylance Narrows The Cybersecurity Skills Gap With Virtual CISO. appeared first on IT Security Guru.

]]
2018-12-14T13:00:01+01:00 https://www.itsecurityguru.org/2018/12/14/cylance-narrows-the-cybersecurity-skills-gap-with-virtual-ciso/ www.secnews.physaphae.fr/article.php?IdArticle=946077 False None None None
Wired Threat Level - Security News 14 Gifts for People Who Are Perpetually Cold 2018-12-14T13:00:00+01:00 https://www.wired.com/gallery/gifts-for-people-who-are-perpetually-cold www.secnews.physaphae.fr/article.php?IdArticle=945992 False None None None Wired Threat Level - Security News Google\'s Algorithm Isn\'t Biased, It\'s Just Not Human 2018-12-14T13:00:00+01:00 https://www.wired.com/story/google-algorithm-conservatives-biased-its-just-not-human www.secnews.physaphae.fr/article.php?IdArticle=945993 False None None None Security Intelligence - Site de news Américain 3 Keys to Building a Scalable Incident Response Automation and Orchestration Plan A robust, documented incident response plan is the foundation of a successful automation and orchestration program - but where do you begin?

The post 3 Keys to Building a Scalable Incident Response Automation and Orchestration Plan appeared first on Security Intelligence.

]]
2018-12-14T12:50:01+01:00 https://securityintelligence.com/3-keys-to-building-a-scalable-incident-response-automation-and-orchestration-plan/ www.secnews.physaphae.fr/article.php?IdArticle=945961 False None None None
Security Intelligence - Site de news Américain Stay on Top of Zero-Day Malware Attacks With Smart Mobile Threat Defense Mobile threats are growing both in number and severity. To protect crucial data, organizations need mobile threat defense solutions that can replicate the accuracy of manual analysis on a large scale.

The post Stay on Top of Zero-Day Malware Attacks With Smart Mobile Threat Defense appeared first on Security Intelligence.

]]
2018-12-14T12:20:02+01:00 https://securityintelligence.com/stay-on-top-of-zero-day-malware-attacks-with-smart-mobile-threat-defense/ www.secnews.physaphae.fr/article.php?IdArticle=945962 False None None None
The State of Security - Magazine Américain Save the Children Federation Tricked Into Sending $1 Million to Scammers Scammers tricked Save the Children Federation, a well-known U.S. charity, into sending them approximately one million dollars. As reported by The Boston Globe, digital attackers compromised the email account of a Save the Children Federation employee sometime in 2017. They then abused that access to issue a series of fake invoices and documents designed to […]… Read More

The post Save the Children Federation Tricked Into Sending $1 Million to Scammers appeared first on The State of Security.

]]
2018-12-14T12:17:01+01:00 https://www.tripwire.com/state-of-security/security-awareness/save-the-children-federation-tricked-into-sending-1-million-to-scammers/ www.secnews.physaphae.fr/article.php?IdArticle=945972 False None None None
Wired Threat Level - Security News Sci-Fi Promised Us Home Robots. So Where Are They? 2018-12-14T12:00:00+01:00 https://www.wired.com/story/sci-fi-promised-us-home-robots-so-where-are-they www.secnews.physaphae.fr/article.php?IdArticle=945902 False None None None Wired Threat Level - Security News \'Super Smash Bros. Ultimate\' Is a Massive Monument to Itself 2018-12-14T12:00:00+01:00 https://www.wired.com/story/super-smash-bros-ultimate-review www.secnews.physaphae.fr/article.php?IdArticle=945903 False None None None Wired Threat Level - Security News A Year Without Net Neutrality: No Big Changes (Yet) 2018-12-14T12:00:00+01:00 https://www.wired.com/story/year-without-net-neutrality-no-big-changes-yet www.secnews.physaphae.fr/article.php?IdArticle=945901 False None None None Bleeping Computer - Magazine Américain 123456 Is the Most Used Password for the 5th Year in a Row 2018-12-14T11:47:00+01:00 https://www.bleepingcomputer.com/news/security/123456-is-the-most-used-password-for-the-5th-year-in-a-row/ www.secnews.physaphae.fr/article.php?IdArticle=946472 False None None None Graham Cluley - Blog Security 2018 - a year of data breaches in review 2018 - a year of data breaches

Week after week, month after month, 2018 saw organisations and companies struck by massive and damaging data breaches, putting the personal details of innocent members of the public at risk.

Read more in my article on the Bitdefender Business Insights blog.

]]
2018-12-14T10:59:04+01:00 https://businessinsights.bitdefender.com/2018-data-breaches-review#new_tab www.secnews.physaphae.fr/article.php?IdArticle=945824 False None None None
Bleeping Computer - Magazine Américain Facebook Photo API Bug Exposed Pics of Up to 6.8 Million Users 2018-12-14T10:59:02+01:00 https://www.bleepingcomputer.com/news/security/facebook-photo-api-bug-exposed-pics-of-up-to-68-million-users/ www.secnews.physaphae.fr/article.php?IdArticle=946348 False None None None We Live Security - Editeur Logiciel Antivirus ESET How to protect yourself as the threat of scam apps grows As the threat of bogus apps continues, what can we do to protect ourselves against these fraudulent practices?

The post How to protect yourself as the threat of scam apps grows appeared first on WeLiveSecurity

]]
2018-12-14T10:58:03+01:00 https://www.welivesecurity.com/2018/12/14/protect-yourself-threat-scam-apps-grows/ www.secnews.physaphae.fr/article.php?IdArticle=945855 False None None None
The Hacker News - The Hacker News est un blog de news de hack (surprenant non?) New Facebook Bug Exposed 6.8 Million Users Photos to Third-Party Apps ]] 2018-12-14T10:01:02+01:00 https://thehackernews.com/2018/12/facebook-api-bug-leak.html www.secnews.physaphae.fr/article.php?IdArticle=946528 False None None None SecurityWeek - Security News Shamoon 3 Targets Energy Sector in Middle East Italian oil and gas services company Saipem has confirmed that its systems were hit recently by a new variant of the notorious Shamoon malware. Shamoon may have also been used in attacks aimed at other energy sector organizations operating in the Middle East.

read more

]]
2018-12-14T09:17:04+01:00 https://www.securityweek.com/shamoon-3-targets-energy-sector-middle-east www.secnews.physaphae.fr/article.php?IdArticle=945785 False None None None
ZD Net - Magazine Info Trump, Google, United Nations are among 2018\'s worst password offenders 2018-12-14T08:51:01+01:00 https://www.zdnet.com/article/trump-google-un-are-among-2018s-worst-password-offenders/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=945709 False None None None Security Affairs - Blog Secu New Sofacy campaign aims at Government agencies across the world Security experts at Palo Alto Networks uncovered a new espionage campaign carried out by Russia-Linked APT group Sofacy. Russian Cyber espionage group Sofacy (aka APT28, Pawn Storm, Fancy Bear, Sednit, Tsar Team, and Strontium)) carried out a new cyber campaign aimed at government agencies in four continents in an attempt to infect them with malware. The campaign has been focusing on Ukraine and NATO […]

The post New Sofacy campaign aims at Government agencies across the world appeared first on Security Affairs.

]]
2018-12-14T08:22:03+01:00 https://securityaffairs.co/wordpress/78896/apt/sofacy-government-agencies.html www.secnews.physaphae.fr/article.php?IdArticle=945660 False None None None
The Hacker News - The Hacker News est un blog de news de hack (surprenant non?) New Shamoon Malware Variant Targets Italian Oil and Gas Company ]] 2018-12-14T08:19:01+01:00 https://thehackernews.com/2018/12/shamoon-malware-attack.html www.secnews.physaphae.fr/article.php?IdArticle=946438 False None None None InformationSecurityBuzzNews - Site de News Securite Middle East Servers Targeted In Cyberattacks Against Saipem It has been reported that Italian oil-services company Saipem SpA has been hit by a cyberattack that targeted its servers in the Middle East on Monday. Servers in the Emirates and Saudi Arabia were hit the most, with attackers seeking to obtain administrative data. The only attack in Europe was in Aberdeen, Scotland. Saipem is still accessing …

The ISBuzz Post: This Post Middle East Servers Targeted In Cyberattacks Against Saipem appeared first on Information Security Buzz.

]]
2018-12-14T07:55:01+01:00 https://www.informationsecuritybuzz.com/expert-comments/middle-east-servers-targeted-in-cyberattacks-against-saipem/ www.secnews.physaphae.fr/article.php?IdArticle=945591 False None None None
UnderNews - Site de news "pirate" francais Top 10 / novembre 2018 : Les malwares les plus actifs en France Check Point® Software Technologies Ltd., l\'un des principaux fournisseurs mondiaux de solutions de cybersécurité, vient de publier son Global Threat Index pour le mois de novembre 2018.]] 2018-12-14T07:38:00+01:00 https://www.undernews.fr/malwares-virus-antivirus/top-10-novembre-2018-les-malwares-les-plus-actifs-en-france.html www.secnews.physaphae.fr/article.php?IdArticle=946371 False None None None ZD Net - Magazine Info Save the Children Foundation duped by hackers into paying out $1 million 2018-12-14T07:27:00+01:00 https://www.zdnet.com/article/save-the-children-foundation-duped-by-hackers-into-paying-out-1-million/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=945571 False None None None SecurityWeek - Security News Google Unveils New Encryption Features for Android Developers Security-minded Android application developers can better secure user data, thanks to new cryptographic features in Android 9.0, Google says. 

read more

]]
2018-12-14T07:13:04+01:00 https://www.securityweek.com/google-unveils-new-encryption-features-android-developers www.secnews.physaphae.fr/article.php?IdArticle=946967 False None None None
ZD Net - Magazine Info Logitech app security flaw allowed keystroke injection attacks 2018-12-14T05:50:00+01:00 https://www.zdnet.com/article/logitech-app-security-flaw-allowed-keystroke-injection-attacks/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=945509 False None None None SecurityWeek - Security News AP Exclusive: Iran Hackers Hunt Nuke Workers, US Officials LONDON - As U.S. President Donald Trump re-imposed harsh economic sanctions on Iran last month, hackers scrambled to break into personal emails of American officials tasked with enforcing them, The Associated Press has found - another sign of how deeply cyberespionage is embedded into the fabric of U.S.-Iranian relations.

read more

]]
2018-12-14T05:47:05+01:00 https://www.securityweek.com/ap-exclusive-iran-hackers-hunt-nuke-workers-us-officials www.secnews.physaphae.fr/article.php?IdArticle=945786 False None None None
Bleeping Computer - Magazine Américain Save the Children Charity Org Scammed for Almost $1 Million 2018-12-14T05:30:01+01:00 https://www.bleepingcomputer.com/news/security/save-the-children-charity-org-scammed-for-almost-1-million/ www.secnews.physaphae.fr/article.php?IdArticle=946349 False None None None The Hacker News - The Hacker News est un blog de news de hack (surprenant non?) Fake Bomb Threat Emails Demanding Bitcoins Sparked Chaos Across US, Canada ]] 2018-12-14T04:57:00+01:00 https://thehackernews.com/2018/12/bomb-email-hoax-bitcoin.html www.secnews.physaphae.fr/article.php?IdArticle=945949 False None None None InformationSecurityBuzzNews - Site de News Securite “Operation Sharpshooter” Targeting Global CI, Finance And Defense In response to today’s new findings from McAfee Labs on a new global campaign \'Operation Sharpshooter\' Targets Global Defense, Critical Infrastructure, a cybersecurity expert with CyberSaint offers perspective. George Wrenn, CEO and Founder at CyberSaint Security: “Critical infrastructure organizations, especially those who deal with defense-related initiatives, should always be on high alert for unexpected threats that might negatively impact their …

The ISBuzz Post: This Post “Operation Sharpshooter” Targeting Global CI, Finance And Defense appeared first on Information Security Buzz.

]]
2018-12-14T03:30:00+01:00 https://www.informationsecuritybuzz.com/expert-comments/operation-sharpshooter-targeting-global-ci/ www.secnews.physaphae.fr/article.php?IdArticle=945338 False None None None
Bleeping Computer - Magazine Américain WordPress Security Patch Addresses Privacy Leak Bug 2018-12-14T02:57:04+01:00 https://www.bleepingcomputer.com/news/security/wordpress-security-patch-addresses-privacy-leak-bug/ www.secnews.physaphae.fr/article.php?IdArticle=946350 False None None None InformationSecurityBuzzNews - Site de News Securite New Android Trojan Bypasses PayPal\'s 2FA In response to new research finding that an Android Trojan steals money from PayPal accounts even with 2FA on, two experts with OneSpan offer perspective and considerations for both end users and developers. Sam Bakken, Senior Product Marketing Manager at OneSpan: It’s time for all of us to be more scrupulous when it comes to the apps …

The ISBuzz Post: This Post New Android Trojan Bypasses PayPal’s 2FA appeared first on Information Security Buzz.

]]
2018-12-14T01:00:02+01:00 https://www.informationsecuritybuzz.com/expert-comments/new-android-trojan-bypasses-paypals-2fa/ www.secnews.physaphae.fr/article.php?IdArticle=945234 False None None None
We Live Security - Editeur Logiciel Antivirus ESET Malaysian government targeted with mash-up espionage toolkit An interview with ESET researchers Tomáš Gardoň and Filip Kafka on their research of a malware toolkit used in espionage against the Malaysian government

The post Malaysian government targeted with mash-up espionage toolkit appeared first on WeLiveSecurity

]]
2018-12-14T00:57:02+01:00 https://www.welivesecurity.com/2018/12/14/malaysian-government-targeted-mash-up-espionage-toolkit/ www.secnews.physaphae.fr/article.php?IdArticle=945285 False None None None
Wired Threat Level - Security News At a New York Privacy Pop-Up, Facebook Sells Itself 2018-12-14T00:38:02+01:00 https://www.wired.com/story/facebook-nyc-privacy-pop-up www.secnews.physaphae.fr/article.php?IdArticle=945199 False None None None Wired Threat Level - Security News Nationwide Bomb Threats Look Like New Spin on an Old Bitcoin Scam 2018-12-14T00:10:05+01:00 https://www.wired.com/story/bomb-threats-bitcoin-scam www.secnews.physaphae.fr/article.php?IdArticle=945200 False None None None Wired Threat Level - Security News Virgin Galactic Takes Off, and Space Tourism Draws Nearer 2018-12-13T23:29:03+01:00 https://www.wired.com/story/virgin-galactic-space-vss-unity-flight www.secnews.physaphae.fr/article.php?IdArticle=945104 False None None None Zataz - Magazine Francais de secu Opération Green Heart : 28 Français arrêtés L’opération Green Heart : 300 appartements en Europe fouillés, 235 personnes arrêtées, dont 28 Français. Des contrefacteurs de faux billets qui passaient par le black market. Voilà une opération d’envergure qui vient de se conclure. 13 pays européens impliqués, 300 domiciles perquisition...

Cet article Opération Green Heart : 28 Français arrêtés est apparu en premier sur ZATAZ.

]]
2018-12-13T23:14:03+01:00 https://www.zataz.com/operation-green-heart-28-francais-arretes/ www.secnews.physaphae.fr/article.php?IdArticle=945066 False None None None
InformationSecurityBuzzNews - Site de News Securite Mimecast Report Shows Malicious Emails On The Rise In light of Mimecast\'s latest Email Security Risk Assessment (ESRA) which shows a 25% rise in possible malicious emails since last year, Jake Moore, cyber security expert at ESET cimmented below. Jake Moore, Cyber Security Expert at ESET: “Emails are by far the largest attack vector for spreading malware or malware related services. With an estimated …

The ISBuzz Post: This Post Mimecast Report Shows Malicious Emails On The Rise appeared first on Information Security Buzz.

]]
2018-12-13T23:06:03+01:00 https://www.informationsecuritybuzz.com/expert-comments/mimecast-report-shows-malicious/ www.secnews.physaphae.fr/article.php?IdArticle=945020 False None None None
Zataz - Magazine Francais de secu Piratage du site Euro Palestine Le site Euro Palestine infiltré et piraté. L’espace dédié à dénoncer l\'occupation des territoires palestiniens se retrouve avec les données personnelles de ses utilisateurs dans les mains d’un pirate pro israélien. Un pirate pro israélien, il se nomme Zhacker, a annoncé il y a quelques j...

Cet article Piratage du site Euro Palestine est apparu en premier sur ZATAZ.

]]
2018-12-13T22:49:03+01:00 https://www.zataz.com/piratage-du-site-euro-palestine/ www.secnews.physaphae.fr/article.php?IdArticle=944944 False None None None
ZD Net - Magazine Info Extortion emails carrying bomb threats cause panic across the US 2018-12-13T22:18:00+01:00 https://www.zdnet.com/article/extortion-emails-carrying-bomb-threats-cause-panic-across-the-us/#ftag=RSSbaffb68 www.secnews.physaphae.fr/article.php?IdArticle=945033 False None None None Kaspersky Threatpost - Kaspersky est un éditeur antivirus russe Bomb Threat Bitcoin Demands Cause Disruption, Evacuations 2018-12-13T22:14:04+01:00 https://threatpost.com/bomb-threat-bitcoin-demands/139915/ www.secnews.physaphae.fr/article.php?IdArticle=944971 False None None None The Security Ledger - Blog Sécurité Destructive Shamoon Malware Attacks Italian Oil Services Firm The data-wiping Shamoon malware resurfaced this week at Italian oil and gas contractor Saipem, where it destroyed files on about 10 percent of company PCs, according to a published report. The attacks may be linked to Saipem\'s work with Saudi Aramco, a target of earlier Shamoon attacks.

The post Destructive Shamoon Malware Attacks Italian Oil...

Read the whole entry...  _!fbztxtlnk!_ https://feeds.feedblitz.com/~/585881192/0/thesecurityledger -->»

]]
2018-12-13T21:56:03+01:00 https://feeds.feedblitz.com/~/585881192/0/thesecurityledger~Destructive-Shamoon-Malware-Attacks-Italian-Oil-Services-Firm/ www.secnews.physaphae.fr/article.php?IdArticle=944902 False None None None
TechRepublic - Security News US How to use Google\'s Digital Wellbeing 2018-12-13T21:33:05+01:00 https://www.techrepublic.com/article/how-to-use-googles-digital-wellbeing/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=944856 False None None None Zataz - Magazine Francais de secu Carrefour Banque corrige une fuite de données Une fuite de données concernant Carrefour Banque permettait d\'accéder aux contrats crédits des nouveaux clients. En moins d’heure le problème était résolu. Voilà une nouvelle fuite de données corrigée grâce à un Protocole ZATAZ. Pendant que l’on entend parler de DELL, Marriott, Ministère...

Cet article Carrefour Banque corrige une fuite de données est apparu en premier sur ZATAZ.

]]
2018-12-13T21:33:03+01:00 https://www.zataz.com/carrefour-banque-corrige-une-fuite-de-donnees/ www.secnews.physaphae.fr/article.php?IdArticle=944882 False None None None
InformationSecurityBuzzNews - Site de News Securite Personal Details Of 120 Million Brazilians Exposed Following news that 20 million Brazilians’ detailed exposed, Ilia Kolochenko, CEO and founder of web security company High-Tech Bridge commented below. Ilia Kolochenko, CEO and Founder at High-Tech Bridge:  “The major question here is how did this highly sensitive and confidential data go online on a third-party server in a flagrant violation of all possible security, compliance and privacy fundamentals? …

The ISBuzz Post: This Post Personal Details Of 120 Million Brazilians Exposed appeared first on Information Security Buzz.

]]
2018-12-13T21:32:03+01:00 https://www.informationsecuritybuzz.com/expert-comments/personal-details-of-120-million-brazilians-exposed/ www.secnews.physaphae.fr/article.php?IdArticle=944845 False None None None
Wired Threat Level - Security News Facebook Bug Bounty Makes Biggest Payout Yet 2018-12-13T21:00:00+01:00 https://www.wired.com/story/facebook-bug-bounty-biggest-payout www.secnews.physaphae.fr/article.php?IdArticle=944810 False None None None Krebs on Security - Chercheur Américain Spammed Bomb Threat Hoax Demands Bitcoin 2018-12-13T20:24:03+01:00 https://krebsonsecurity.com/2018/12/spammed-bomb-threat-hoax-demands-bitcoin/ www.secnews.physaphae.fr/article.php?IdArticle=944804 False None None None TechRepublic - Security News US 3 tips for choosing Chrome or Android devices for work 2018-12-13T20:18:05+01:00 https://www.techrepublic.com/article/3-tips-for-choosing-chrome-or-android-devices-for-work/#ftag=RSS56d97e7 www.secnews.physaphae.fr/article.php?IdArticle=944745 False None None None Wired Threat Level - Security News Radiohead Will Enter the Rock and Roll Hall of Fame in 2019 2018-12-13T19:49:04+01:00 https://www.wired.com/story/radiohead-rock-and-roll-hall-of-fame www.secnews.physaphae.fr/article.php?IdArticle=944710 False None None None