Virtual Event Today: CodeSecCon - Learn to Secure Your Software > Join Event
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest News

Trend Micro today announced that is has open sourced the code to its popular free security tool, HijackThis. The tool scans systems to find settings that may have been modified by spyware, malware or other programs that have wiggled their way onto a system and caused problems.

Researchers at Symantec have uncovered a fake app store for Google Android that is hosting malware designed to bilk users out of big bucks.According to Symantec, mobile malware scammers have created the fake market to host various applications that are actually Trojans used for SMS fraud.

In response to the increase in attacks on industrial control systems that power utilities, industries and critical infrastructure systems, Norway-based Norman ASA is launching a product designed to protect SCADA (supervisory control and data acquisition) systems against cyber attacks from malware such as trojans, worms and viruses—ones like stuxnet.

FishNet Security today launched a new cloud-based threat monitoring and response service aimed at helping businesses log information security events across multiple sources, reduce data leakage, and proactively respond to emerging threats and meet regulatory requirements.

Both the BATS and NASDAQ exchanges were under constant assault early this week, thanks to a flood of packets sent their way by an unknown group or person. These recent attacks are just the latest in a string of attacks that have hit the UN, CIA, and others.

The Waledec botnet, which was taken down in 2010 by Microsoft, was responsible for more spam delivery than any other botnet in its class with a reach of about 1.5 billion emails a day. Earlier this month, researchers at Palo Alto Networks discovered a third variant of the botnet, and it was serving up more than just spam.According to Palo Alto Networks, this new version “includes the ability to sniff user credentials for FTP, POP3, SMTP, and steal .dat files...

CloudCracker, a new service from security researcher Moxie Marlinspike, which expands on the platform developed for WPACracker, offers penetration testers and network auditors a way to run hundreds of millions of words against a given password to test its strength.

Microsoft released fixes for 21 security vulnerabilities as part of this month’s Patch Tuesday.The vulnerabilities are covered in nine separate bulletins, including four that are rated ‘Critical.’ The most serious of the updates is MS12-010, opined Jim Walter, manager of the McAfee Threat Intelligence Service at McAfee Labs. Aimed at Internet Explorer, the update fixes four privately reported vulnerabilities.

If you are part of a security team that spends time carefully piecing together and reviewing corporate IT security policies, this may hurt your feelings: According to a new survey jointly commissioned by Xerox and McAfee, more than half of workers don’t always follow or are unaware of their company’s security policies.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.

Cloud Security

Cloud Security

A threat actor is claiming the exfiltration of millions of records from McDonald’s, TCS, Vodafone, and other large organizations.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.