Author: admin

SecuritySophos

USPS ignoró un problema grave de seguridad durante más de un año

Credit to Author: Naked Security| Date: Mon, 26 Nov 2018 14:37:15 +0000

El servicio postal de EEUU (USPS) ignoró un problema de seguridad que afectaba a millones de sus usuarios registrados en la web por más de un año hasta que el investigador que lo descubrió se lo mostró al famoso bloguero Brian Krebs. Según Krebs, el investigador anónimo lo contactó hace una semana con motivo de [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/zSjaB-fL1no” height=”1″ width=”1″ alt=””/>

Read More
ComputerWorldIndependent

Innovative anti-phishing app comes to iPhones

Credit to Author: Jonny Evans| Date: Mon, 10 Dec 2018 08:01:00 -0800

We’re always told never to click on a link we receive in an email in case doing so takes us to some dodgy phishing site where our account details are violated, but what if our email app warned us before we clicked malicious links?

Can this app offer you protection?

MetaCert isn’t fully available yet, but it does seem to be a promising solution that provides email users in enterprise and consumer markets an additional line of defence against clicking on malicious links received in email messages.

The solution emerged from the developer’s earlier work building an API to help app developers add a layer of security to WebView.

To read this article in full, please click here

Read More
MalwareBytesSecurity

Something else is phishy: How to detect phishing attempts on mobile

Credit to Author: Jovi Umawing| Date: Mon, 10 Dec 2018 15:00:56 +0000

Phishing is more problematic on smartphones than on desktops. Not only that, approaches to handling phishing attacks on mobile are quite different because their techniques are also different. So, how can users sniff out a mobile phish? Let us count the ways.

Categories:

Tags:

(Read more…)

The post Something else is phishy: How to detect phishing attempts on mobile appeared first on Malwarebytes Labs.

Read More
ComputerWorldIndependent

Forbidden names, revisited

Credit to Author: Sharky| Date: Mon, 10 Dec 2018 03:00:00 -0800

Flashback a few decades to the glory days of online service CompuServe, when anyone could get an account — but not everyone could use their real names, according to a pilot fish in the know.

“You logged in with your account number, but to join a forum — a chatroom focused on a specific topic — you had to give a real name,” fish says. “The name on your billing record was the default.

“Of course there were fraudsters who used an official-sounding name to phish people for personal info and credit card data. So users were not allowed to have words like ‘billing’ as any part of their in-forum real name. This could only be overridden by the forum sysop. I was one.

To read this article in full, please click here

Read More
IndependentKrebs

Bomb Threat Hoaxer, DDos Boss Gets 3 Years

Credit to Author: BrianKrebs| Date: Sat, 08 Dec 2018 01:38:49 +0000

The alleged ringleader of a gang of cyber hooligans that made bomb threats against hundreds of schools and launched debilitating denial-of-service attacks against Web sites (including KrebsOnSecurity on multiple occasions) has been sentenced to three years in a U.K. prison, and faces the possibility of additional charges from U.S.-based law enforcement officials. 

Read More