Researchers at Malwarebytes said the WinRAR product is not malicious after publishing a blog last week that it was vulnerable.
The Canadian Department of National Defence put a $825,000 contract up for bid to find a firm that will study how to hack an automobile and come up with a mitigating response.
The Department of Homeland Security (DHS) will be required to put in place a formal cybersecurity strategy, following passage earlier this week of a House bill.
Twin brothers Muneeb and Sohaib Akhter were sentenced to prison by the Eastern District of Virginia for an array of offenses, including conspiracy to commit wire fraud, conspiracy to access a protected computer without authorization, conspiracy to access a government computer without authorization, and obstruction of justice.
IT security company High-Tech Bridge issued a security advisory on Wednesday for two reflected cross-site scripting (XSS) vulnerabilities in the Calls to Action WordPress plugin.
A bypass in the multimedia and software platform Flash, which Adobe said it patched in its last security update, has reappeared.
U.S. Marshals will auction about 44,341 Bitcoins that were seized from Silk Road operator Ross Ulbricht.
A trio of Republican senators, including presidential candidate Marco Rubio, R-Fla., have introduced the North Korean Sanctions and Policy Enhancement Act of 2015 that would sanction the Hermit Kingdom for cyberattacks on the U.S..
Cisco has embraced an "enhanced and simplified" view of vulnerabilities in its products.
The National Institute of Standards and Technology (NIST) unveiled two projects designed to secure email.
Google issued an over-the-air security update for its Nexus devices on Tuesday, which included fixes for the recently discovered vulnerabilities in Android's Stagefright code.
Warren Buffet is not exactly launching the Geico gecko into the cyberinsurance space, but his Berkshire Hathaway Specialty Insurance division today unveiled two new polices targeted at this area.
Worldpay, a payment processing technology company, said it's researching using facial recognition in stores around the UK as a card fraud preventative measure.
HTC American President Jason Mackenzie tweeted that guaranteeing monthly Android security updates is "unrealistic."
South Korea's National Intelligence Service (NIS) is blaming North Korea for hacking into the Seoul Metro subway breaking into and infecting 210 employee computers between March and August in 2014.
Researchers hacked into the operating systems of two Virginia State Police cars to expose cyber vulnerabilities in the department's fleet.
Scottrade is notifying approximately 4.6 million clients that illegal activity occurred on its network and personal information may have been compromised.
Federal authorities raided the offices of a digital currency firm accused of swindling investors out of more than $32 million.
Ari Schwartz, senior director for cybersecurity, National Security Council, at the White House, stepped down this week, two years after becoming a trusted cyber adviser to the Obama administration.
A new malware may be defending machines against attackers and may even be providing fixes for infections.
Clicking the link in the spam emails results in an Android user downloading a sneaky mobile online banking trojan.
Owing to a slew of lawsuits filed by banks and credit unions, the expected cost to Home Depot for a cyber intrusion may reach into the billions.
Five Russian banks that experienced distributed denial of service (DDoS) attacks Sept. 26 had been warned in advance by the General Directorate of Security and Information Protection of the country's Central Bank.
Under a non-disclosure agreement with the FBI, the Metropolitan Police Department in Washington, D.C., will keep its StingRay surveillance use private.
T-Mobile confirmed in a letter that the personally identifiable information of about 15 million customers has been obtained through a hack at Experian, a T-Mobile vendors hired to perform credit checks.
The Trump Hotel Collection confirmed that malware had gained unauthorized access to customer payment card data at seven properties.
The popular blogging platform WordPress has been under attack the past three weeks with VisitorTracker malware code.
Private and public firms in the UK have teamed up to create a 3D video game featuring the Minecraft world to monitor and recruit cyber security talent.
As debate over the Cybersecurity Information Sharing Act (CISA) is set to reach the Senate floor perhaps as early as next week, some technology and privacy groups have amped up their positions.
Car dealerships may become the next soft spot targeted by hackers intent on infecting autos with malware.
Malwarbytes is pointing out a malvertising campaign that leverages popular website names to direct victims to call a number where they are scammed into buying unneeded services and giving up personal information.
The banking trojan Shifu is targeting 18 banks and wealth management firms in the U.K.
A man has been accused of planting spyware on his wife's cell phone two weeks prior to filing for divorce.
Researchers presented findings at Derbycon this past weekend that indicated vulnerabilities in thousands of medical systems.
Truckloads of HP servers were delivered to federal officials for a warrantless surveillance program codenamed "Stellar Wind."
Microsoft released a statement on Tuesday that addressed the feedback and privacy concerns of Windows 10 data collection.
After three years in prison, Gottfrid Svartholm, alias anakata, has been released from Sweden's Skanninge prison.
F-Secure has released a new ad blocker app for Apple's iOS 9 that it said will give consumers more control over the ads pushed to their devices saving them time by limiting bandwidth dedicated to unwanted ads.
Researchers at Malwarebytes detected another malvertising campaign targeting popular adult sites over the weekend, this time against PornHub and YouPorn.
A proposed bill could reduce identity theft by allowing companies to replace Social Security numbers with another identifier on tax forms.
A Middle Eastern cybergroup seeking higher levels of access to specific networks has turned its focus to IT security personnel.
Cybersecurity blogger Brian Krebs indicated a pattern of recently compromised credit cards being used at Hilton Worldwide entities, and the company confirmed an investigation into the matter.
The Big Blue Bus, part of the Santa Monica, Calif. bus transit system, has issued a warning of a possible data breach involving customers who use a transit software program called NextBus.
The OpenSSL Project said it has updated its security policy to include a "Critical" severity level.
An injection attack on WordPress sites inserted code into 2,000 WordPress web pages.
xHamster has been hit by another malvertising attack, and it may be part of campaign that struck other big sites earlier this year.
Case defendants cannot be required to turn over their phone passwords to the authorities, a court ruled earlier this week.
An anonymous source released the alleged phone number and home address of the Turing CEO who jacked up the price of life-saving AIDS and cancer drug.
A recently discovered flaw in iOS 9 could allow a person to view any Apple device's contacts and photos without entering the proper passcode.
With Pope Francis scheduled to visit New York City today, authorities are taking every precaution to increase security, cyber-space included.
Paul Kurtz, now founder and CEO of TruSTAR Technology, dropped by the SC Magazine offices to discuss these monumental data breaches and the government's cybersecurity efforts.
A Russian firm tasked to gain information on Tor users is paying more than the value of the contract to back out of the agreement.
Authorities in British Columbia say as many as 3.4 million education records going back to 1986 may be breached due to a misplaced back up hard drive.
A study by Kaspersky Lab has found that most consumers don't have a clue when it comes to safely navigating the internet.
A China-based mobile app promotion company reportedly created an adware attack that takes total control over victims' Android devices, FireEye found.
The number of fingerprints impacted in the second Office of Personnel Management (OPM) data breach has increased by 4.5 million.
Documents obtained under a FOIA request revealed a Florida deputy was eager to purchase Hacking Team surveillance equipment.
A former Morgan Stanley financial adviser who was fired for stealing the data of approximately 730,000 clients pleaded guilty in federal court on Monday.
The Dothan City, Ala., school board on Monday allocated $25,000 to purchase cyber liability insurance to cover the board in case a cyberattacker gains access to district information.
Bug bounty program provider HackerOne released its "Vulnerability Coordination Maturity Model" on Tuesday to help companies assess and handle vulnerabilities in their systems.
Falling for a phishing scam is embarrassing enough without having to learn the email came from your boss as part of a test of your cybersecurity knowledge, but that is what the chief information officer of the Department of Homeland is doing to his staff.
Adobe on Monday released security updates across multiple platforms that address vulnerabilities in Flash Player and AIR.
Zerodium is offering up to $3 million for vulnerabilities and a jail break of iOS 9.
Google announced that it will disable support for SSLv3 and RC4 citing a long history of problems in both products.
DoD is developing a automated score card to help identify vulnerabilities, prioritize patches and detect and respond to cyberattacks.
Computer issues temporarily delayed American Airline flights traveling in and out of Chicago, DFW and Miami on Thursday.
Twitter announced that all new links wrapped with its t.co wrapper will begin using the HTTPS URL scheme as of Oct. 1.
A class action suited filed against Microsoft Corporation alleges that the technology giant engaged in discrimination against females employees in technical and engineering roles..
Comcast settles charges of unauthorized disclosure of details on 75,000 who paid for unlisted VoIP telephone service.
Three flaws on Starbucks' website put customers' banking details at risk.
The Commack School District in New York reported Thursday that its high school student management system was accessed by an unauthorized individual, but the district has not yet said described the extent of the damage.
The Online Trust Allance's (OTA) has found 17 of the 24 presidential candidate websites are not making the grade when it comes to respecting Americans' privacy with some willing to sell their supporters PII to third parties.
VMware vCenter Server 6.0 and VMware vCenter Server 5.5 running on any system are affected.
Nine financial institutions have formed an international coalition, in conjunction with the financial technology firm R3, to create and deliver advanced distributed/shared ledger technologies to global financial markets.
A Tripwire executive expects politically oriented cyber attacks to increase going forward and that politicians will have to pay more attention to cybersecurity issues.
California State Sen. Joel Anderson was recognized by an eCommerce firm for his efforts to protect citizens' digital privacy rights after death.
Schneider Electric released updated firmware to patch a remotely exploitable vulnerability for its StruxureWare Building Expert building automation system.
The Kardashian and Jenner sisters launched websites and apps earlier this week, and one developer discovered an open API that exposed users' personal information.
Researchers at Malwarebytes spotted an email phishing scam on Wednesday that targets Amazon users in the UK.
Open-source certificate authority (CA) Let's Encrypt announced the release of its first certificate on Monday.
Dutch police, with the help of Kaspersky Lab, arrested two men in connection with a ransomware scheme that locked up thousands of devices.
Twitter is facing a $5 million class action lawsuit claiming its Direct Message link shortener algorithms violate federal and state privacy laws.
Vladimir Drinkman and Dmitriy Smilianets pleaded guilty to their roles in a global credit card hacking operation.
The U.S. Air Force (USAF) is looking to expand its traditional electronic countermeasures capability to include the ability to carve into an enemy's computer network from the air.
For the first time, a recipient of a National Security Letter (NSL) will be able to discuss the letter's contents after a federal district court ordered the FBI to lift its gag order.
A major bug has been detected in Apple's iOS through which attackers can overwrite files and insert a signed app on a targeted device.
Founder of the now defunct Megaupload website, Kim Dotcom, will face an extradition hearing after having lost his latest request to get it postponed.
A Nigerian man was sentenced to more than 12 years in a prison and ordered to pay $13 million in restitution for his role in an internet fraud scheme
The U.S. delegation to the United Nations General Assembly officially announced on Friday they will not be staying at the Waldorf-Astoria Hotel amid cybersecurity concerns.
WordPress 4.3.1 was made available on Tuesday, and users are strongly encouraged to upgrade since it comes with fixes for a few security issues.
Following the compromising of nearly all its databases and emails, and then the subsequent release of those company details, Hacking Team posted a job listing for a "hacker/developer."
House Oversight Committee Chairman Jason Chaffetz (R-Utah) blasted the Office of Personnel Management (OPM) on Monday for not following suggestions from the Inspector General (IG) to beef up OPM's internet security capability.
Google is facing charges of violating Russia's anti-monopoly laws over its insistence that OEMs bundle prominent Google apps onto Android smartphones.
A former FAU student was banned from campus last week after posting an alert on Yik Yak about a shooting threat.
Damballa reports that one Corebot-involved email address appears to indicate that some stolen data is being sold on a nefarious digital marketplace.
The Department of Justice closed down the music and entertainment file-sharing site ShareBeast.com and a sister site, albumjams.com.
A single image of a Transportation Security Administration (TSA) master key posted online last November by the Washington Post in a story on airport luggage has led to the key being duped by a 3D printer.
After nearly half a decade, GM finally got around to patching an exploit that left millions vulnerable to an attack that could seize control of a vehicle.
A hacker, going by iH8snow, demonstrated how to jailbreak iOS 9 in a YouTube video published Thursday night.
The Pentagon workforce has been notified of fraudulent use of credit cards belonging to Pentagon personnel.
Sign up to our newsletters
SC Magazine Articles
- Report indicates Uber looking into Lyft employee as possible culprite in data breach
- IP Expo Europe: Smart equals exploitable, and VW is a threat actor
- Representatives pen letter asking for OPM to stop housing security clearance info
- Senators demand answers on data breach from T-Mobile and Experian
- IP Expo Europe: The Internet of Identities can help manage myriad IoT devices