Cryptographic key of Facebook’s Free Basics app has been compromised

Cryptographic key of Facebook’s Free Basics app has been compromised

Last week, APK Mirror and Android Police owner Artem Russakovskii reported that a cryptographic key used by Facebook developers to digitally sign its Free Basics by Facebook app has been compromised, and third-party apps are reusing the key. In the past several weeks, I noticed a bunch of random APKs ... Read More
Amazon EBS snapshots exposed publicly leaking sensitive data in hundreds of thousands, security analyst reveals at DefCon 27

Amazon EBS snapshots exposed publicly leaking sensitive data in hundreds of thousands, security analyst reveals at DefCon 27

Last week the DefCon security conference, which was held in Paris and Las Vegas, revealed that companies, govt and startups are inadvertently leaking their own files from the cloud. Ben Morris, a senior security analyst at cybersecurity firm Bishop Fox presented at DefCon on finding the secrets in publicly exposed ... Read More
Mimecast introduced community based tailored threat intelligence tool at Black Hat 2019

Mimecast introduced community based tailored threat intelligence tool at Black Hat 2019

Yesterday, at Black Hat 2019, Mimecast Limited, a leading email and data security company, introduced Mimecast Threat Intelligence which offers a deeper understanding of the cyber threats faced by organizations. The cybersecurity landscape changes daily, and attackers are constantly changing their techniques to avoid detection. According to Mimecast’s recent State ... Read More
Winnti Malware: Chinese hacker group attacks major German corporations for years, German public media investigation reveals

Winnti Malware: Chinese hacker group attacks major German corporations for years, German public media investigation reveals

German public broadcasters, Bavarian Radio & Television Network (BR) and Norddeutscher Rundfunk (NDR), have published a joint investigation report on a hacker group spying on certain businesses since years. Security researchers, Hakan Tanriverdi, Svea Eckert, Jan Strozyk, Maximilian Zierer and Rebecca Ciesielski have contributed to this report. They shed light ... Read More

Xenotime, hacker group behind oil and natural gas sites are now targeting US power grids

Researchers from the security firm Dragos reported on Friday that a group of hackers behind two potentially fatal intrusions in industrial facilities have expanded its activities to investigate dozens of electricity grids in the US and other regions. The group, known as Xenotime, had gained attention in 2017 when researchers ... Read More
Canva faced security breach, 139 million users data hacked: ZDNet reports

Canva faced security breach, 139 million users data hacked: ZDNet reports

Last Friday, ZDNet reported about Canva’s data breach. Canva is a popular Sydney-based startup which offers a graphic design service. According to the hacker, who directly contacted ZDNet, data of roughly 139 million users has been compromised during the breach. Responsible for the data breach is a hacker known as ... Read More
EU parliament votes to amass the largest biometric database on earth

EU parliament votes to amass the largest biometric database on earth

The EU parliament voted last week to develop what is being described as the largest biometric database on earth. Once created, the database will connect the systems used by various border control, migration and law enforcement agencies into a truly gigantic searchable database for both EU and Non EU citizens ... Read More

WannaCry hero, Marcus Hutchins pleads guilty to malware charges; may face upto 10 years in prison

Marcus Hutchins, who authors the popular blog MalwareTech, and a British security researcher has pleaded guilty today to writing malware in the years prior to his prodigious career as a malware researcher. Marcus posted a statement on his website and on his Twitter feed too, “I regret these actions and ... Read More

Let’s Encrypt ACME Protocol is now standardized by the IETF

ACME (Automated Certificate Management Environment) is no longer just a Let’s Encrypt effort as it is now standardized by the Internet Engineering Task Force (IETF). The ACME protocol can be used by a Certificate Authority (CA) to automate the process of verification and certificate issuance. The open-source Let’s Encrypt project ... Read More

Flickr says Creative Commons photos won’t be subject to 1,000 picture limit

On November 1st, 2018 Flickr announced that they would be limiting free accounts to just 1,000 pictures. But it recently made an exception: that it would be deleting any pictures on accounts over that number, and any Creative Commons licensed photos uploaded before the November 1st, 2018 deadline would be ... Read More