Security

SecurityTrendMicro

Pwn2Own 2017 – Day Three Schedule and Results

Credit to Author: Dustin Childs (Zero Day Initiative Communications)| Date: Fri, 17 Mar 2017 00:07:09 +0000

The third and final day of the largest Pwn2Own shapes up with four entries and the awarding of Master of Pwn. It’s a tight race with multiple teams still in the running. Here’s the schedule for Day Three: 9:00am – 360 Security (@mj011sec) targeting Microsoft Edge with a SYSTEM-level escalation and a virtual machine escape…

Read More
SecuritySophos

US infrastructure is at ‘red alert’ for hacking, James Lyne warns on the Today Show

Credit to Author: Bill Brenner| Date: Thu, 16 Mar 2017 19:08:31 +0000

The recent WikiLeaks drop of CIA documents has raised awareness of the reality of cyber-threats and espionage, and how digital infrastructure in America and around the world is under threat thanks to hacking attacks and ransomware, James Lyne told Tom Costello on NBC’s Today show. In the two-part segment, James and Tom Costello talked about […]

Read More
FortinetSecurity

5 Network Security Challenges That Will Keep Financial Services CIOs On Alert in 2017

Credit to Author: Brian Forster | Date: Thu, 16 Mar 2017 09:04:50 -0700

The financial services industry was a primary target for cybercriminals in 2016, and due to the value of its data, it will remain in the crosshairs as we embark on 2017. As a result, financial services CIOs will be faced with security decisions and challenges that will likely keep them up at night. While this isn’t an exhaustive list of challenges CIOs will face in the coming year, we’ve outlined several challenges we believe nearly all financial services organizations will have to face in 2017. Let’s take a closer look. 1….

Read More
SecurityTrendMicro

The Results – Pwn2Own 2017 Day One

Credit to Author: Dustin Childs (Zero Day Initiative Communications)| Date: Thu, 16 Mar 2017 09:10:43 +0000

The first day of Pwn2Own 2017 has come to a close, and so far, we’ve awarded $233,000 USD and 45 points for Master of Pwn. Today saw five successful attempts, one partial success, two failures, and two entries withdrawn. Our day started with the 360 Security team successfully using a jpeg2000 heap overflow, a Windows…

Read More
MicrosoftSecurity

Ransomware operators are hiding malware deeper in installer packages

Credit to Author: msft-mmpc| Date: Thu, 16 Mar 2017 03:15:46 +0000

We are seeing a wave of new NSIS installers used in ransomware campaigns. These new installers pack significant updates, indicating a collective move by attackers to once again dodge AV detection by changing the way they package malicious code. These changes are observed in installers that drop ransomware like Cerber, Locky, and others. Cybercriminals have…

Read More