Just one tiny line of script in your Xcode project - and you've been pwned!
Read moreNaked Security Live – HAFNIUM explained in plain English
March 15 2021Latest episode - watch now!
Read moreWebshells explained, with some (safe) examples you can try at home if you want to learn more.
Read moreOn Not Fixing Old Vulnerabilities
March 9 2021
How is this even possible?
…26% of companies Positive Technologies tested were vulnerable to WannaCry, which was a threat years ago, and some even vulnerable to Heartbleed....
Read more
Poison packages – “Supply Chain Risks” user hits Python community with 4000 fake modules
March 7 2021To this "researcher", even a job not worth doing was worth overdoing. Here's what you can learn from the incident...
Read moreNew SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452
March 4 2021Executive Summary In August 2020, a U.S.-based entity uploaded a new backdoor that we have named SUNSHUTTLE to a public malware repository. ...
Read moreNew SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452
March 4 2021Executive Summary In August 2020, a U.S.-based entity uploaded a new backdoor that we have named SUNSHUTTLE to a public malware repository. ...
Read moreWhen a search result looks too good to be true - it IS too good to be true!
Read moreMysterious Macintosh Malware
March 2 2021
This is weird:
Once an hour, infected Macs check a control server to see if there are any new commands the malware should run or binaries to execute. So...
Read more
Twelve-Year-Old Vulnerability Found in Windows Defender
February 24 2021
Researchers found, and Microsoft has patched, a vulnerability in Windows Defender that has been around for twelve years. There is no evidence that anyone has used the vulnerability...
Read more
Recent Comments