Microsoft blinks: Security Essentials will continue to receive updates after Jan. 14

Credit to Author: Woody Leonhard| Date: Wed, 18 Dec 2019 05:57:00 -0800

Late last week, I talked about a discrepancy in Microsoft’s promised handling of Microsoft Security Essentials as Windows 7 reaches end of support. An internally inconsistent official announcement seemed to say that MSE signature file updates would stop — even for those who have paid for Extended Security Updates. 

Which is absurd. Why would Microsoft stop updating its antivirus program even for people who are paying to continue receiving Monthly Rollup patches?

To read this article in full, please click here

Read more

How bad can text security be? One company just showed us.

Credit to Author: Evan Schuman| Date: Wed, 18 Dec 2019 05:46:00 -0800

There is nothing more quintessentially mobile than text messages, the most commonly used communication method today. That’s why it was very unsettling that a security research house found — and the vendor at issue essentially confirmed — that a massive number of text messages were stored in plaintext, with no security at all. In short, the texts from what the security research firm estimated were “hundreds of millions of people” were open to any thief or stalker who wanted to look.

The company involved, an Austin-based business called TrueDialog, would likely be unknown to almost all of those users. TrueDialog is a marketing firm offering SMS products and services to other companies — a lot of companies. That will make it hard for consumers to even know if their texts were victimized. Text message users were able to text back, giving the impression of having two-way conversations with businesses.

To read this article in full, please click here

Read more

Doxed credit card data has two hours max before it’s nabbed

Credit to Author: Lisa Vaas| Date: Wed, 18 Dec 2019 12:17:43 +0000

That’s pretty slow for thieves’ bots &#38; scripts to grab it and test it, said a researcher who posted his card online.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/Kw0AyB4E8_0″ height=”1″ width=”1″ alt=””/>

Read more

Mozilla adds NextDNS to list of DNS-over-HTTPS providers

Credit to Author: John E Dunn| Date: Wed, 18 Dec 2019 12:07:38 +0000

Firefox users interested in turning on the browser’s DNS-over-HTTPS (DoH) privacy feature now have two providers to choose from.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/jIAyGMDzDjE” height=”1″ width=”1″ alt=””/>

Read more

Alleged bank vault robber posed with cash on Instagram, Facebook

Credit to Author: Lisa Vaas| Date: Wed, 18 Dec 2019 11:32:39 +0000

He allegedly stole over $88,000 from Wells Fargo’s vault, then posed with cash and “his” Mercedes-Benz in posts and an Instagram rap.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/p6aXmWhhdnc” height=”1″ width=”1″ alt=””/>

Read more

Google to choke off ‘less secure applications’

Credit to Author: Danny Bradbury| Date: Wed, 18 Dec 2019 10:50:20 +0000

If you’re entering a username and password to give an app access to a G Suite account, beware: you won’t be able to do it for much longer.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/cmm98FFm0vQ” height=”1″ width=”1″ alt=””/>

Read more

Don’t fall for this porn scam – even if your password’s in the subject!

Credit to Author: Paul Ducklin| Date: Tue, 17 Dec 2019 23:03:19 +0000

This “I am well aware” email is just another sextortion scam where crooks try to blackmail you with a video they don’t actually have.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/IYX-tv1HR4k” height=”1″ width=”1″ alt=””/>

Read more