PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Google Developer Discovers a Critical Bug in Modern Web Browsers

mercredi 20 juin 2018 à 19:41
Google researcher has discovered a severe vulnerability in modern web browsers that could have allowed websites you visit to steal the sensitive content of your online accounts from other websites that you have logged-in the same browser. Discovered by Jake Archibald, developer advocate for Google Chrome, the vulnerability resides in the way browsers handle cross-origin requests to video and

Popular Flight Tracker Flightradar24 Suffers Data Breach

mercredi 20 juin 2018 à 15:21
One of the world's most popular flight tracking services Flightradar24, which shows real-time aircraft flight information on a map, has suffered a massive data breach that may have compromised email addresses and hashed passwords for more than 230,000 customers. Without revealing any information about the breach publically via their blog or social media accounts, Flightradar24 started sending

OpenBSD Disables Intel Hyper-Threading to Prevent Spectre-Class Attacks

mercredi 20 juin 2018 à 11:44
Security-oriented BSD operating system OpenBSD has decided to disable support for Intel's hyper-threading performance-boosting feature, citing security concerns over Spectre-style timing attacks. Introduced in 2002, Hyper-threading is Intel's implementation of Simultaneous Multi-Threading (SMT) that allows the operating system to use a virtual core for each physical core present in processors

Magento Hackers Using Simple Evasion Trick to Reinfect Sites With Malware

mercredi 20 juin 2018 à 09:22
Security researchers have been warning of a new trick that cybercriminals are leveraging to hide their malicious code designed to re-introduce the infection to steal confidential information from Magento based online e-commerce websites. So, if you have already cleaned up your hacked Magento website, there are chances your website is still leaking login credentials and credit card details of

Email Phishers Using A Simple Way to Bypass MS Office 365 Protection

mardi 19 juin 2018 à 22:02
Security researchers have been warning about a simple technique that cyber criminals and email scammers are using in the wild to bypass most AI-powered phishing detection mechanisms implemented by widely used email services and web security scanners. Dubbed ZeroFont, the technique involves inserting hidden words with a font size of zero within the actual content of a phishing email, keeping