Exploring Phreaking's Legacy and Its Relevance in Android Hacking
In the 1960s and 70s, technically savvy enthusiasts sought to game telecommunications systems to make free calls, keeping telecom engineers on their toes.
Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.
In the 1960s and 70s, technically savvy enthusiasts sought to game telecommunications systems to make free calls, keeping telecom engineers on their toes.
A security researcher has developed a method by which one can exploit a vulnerability in FitBit fitness trackers and subsequently deliver malware to the target device in 10 seconds.
How do you defend yourself against the unknown? That is crux of the zero-day vulnerability: a software vulnerability that, by definition, is unknown by the user of the software and often its developer as well.
Some websites running the e-commerce platform Magento appear to have been infected with code that directs victims to the Neutrino exploit kit. It's not exactly clear how the Magento sites were infected, wrote Denis Sinegubko, a senior malware researcher with Sucuri, a Delware-based security company.
USB sticks have long been a mechanism for delivering malware to unsuspecting computer users. A booby-trapped flash drive, for instance, was the means by which the US and Israel reportedly infected Iran's Natanz uranium enrichment facility with the Stuxnet worm. And, in case anyone thought USB stick attacks had lost their novelty, last year's Bad USB proof-of-concept exploit delivered a highly programmable attack platform that can't be detected by today's defenses.
Siri may be your personal assistant. But your voice is not the only one she listens to. As a group of French researchers have discovered, Siri also helpfully obeys the orders of any hacker who talks to her
A password-cracking expert has unveiled a computer cluster that can cycle through as many as 350 billion guesses per second. It's an almost unprecedented speed that can try every possible Windows passcode in the typical enterprise in less than six hours.
Forget about traditional PC malware: Infecting routers and other Internet-connected devices is the new hotness among malicious actors, given its effectiveness and relative ease. But there
So Twitter exploded earlier with calls of a remote code execution WinRAR vulnerability leaving half a BILLION users open for some hardcore exploitation.
OVER THE LAST summer, the security research community has proven like never before that cars are vulnerable to hackers
Piercing a key selling point of commercial cloud computing services, computer scientists have devised a hack that allows an attacker using Amazon's EC2 platform to steal the secret cryptographic keys of other users.
Security researchers have discovered a new malware program that infects automated teller machines (ATMs) and allows attackers to extract cash on command. The program is dubbed GreenDispenser and was detected in Mexico. However, it's only a matter of time until similar attacks are adopted by cybercriminals in other countries, researchers from security firm Proofpoint said in a blog post.
When hackers steal your password, you change it. When hackers steal your fingerprints, they
On May 19, 1984, before a live studio audience for the game show Press Your Luck, a squirrely-looking, gray-bearded 35-year-old named Michael Larson leapt from behind his podium and squealed with joy.
In December 2013, just days after a data breach exposed 40 million customer debit and credit card accounts, Target Corp. hired security experts at Verizon to probe its networks for weaknesses. The results of that confidential investigation
Attackers have hijacked thousands of websites running the WordPress content management system and are using them to infect unsuspecting visitors with potent malware exploits, researchers said Thursday.
A Russian hacker extradicted to the US earlier this year admitted his role in the largest hack in US history. The attack compromised more than 160 million credit card numbers, resulting in hundreds of millions of US dollars in losses.
This post is just for my own notes. I'm buying a new car (arrives in October) and I need to gather up notes on how to hack it.
Security researchers from Mandiant, which is the computer forensic arm of U.S. security research firm FireEye have detected a real-world attack that has installed rogue firmware on business routers in four countries. It possibly allows cybercriminals to harvest huge amounts of data without being detected by existing cybersecurity defenses.
To avoid detection, some hackers are ditching malware and living "off the land" -- using whatever tools are already available in the compromised systems, according to a new report from Dell SecureWorks. In fact, this has been the case for nearly all the intrusions analyzed by the Dell SecureWorks