A week in security (July 4 – July 10)

Credit to Author: Malwarebytes Labs| Date: Mon, 11 Jul 2022 10:55:23 +0000

The most important and interesting computer security stories from the last week.

The post A week in security (July 4 – July 10) appeared first on Malwarebytes Labs.

Read more

Slack fixes account-stealing bug

Credit to Author: Danny Bradbury| Date: Tue, 17 Mar 2020 12:33:43 +0000

Slack has fixed a bug that allowed attackers to hijack user accounts by tampering with their HTTP sessions.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/i-F9hS91EoQ” height=”1″ width=”1″ alt=””/>

Read more

HackerOne pays $20,000 bounty after breach of own systems

Credit to Author: John E Dunn| Date: Mon, 09 Dec 2019 12:08:39 +0000

In an embarrassing twist, bug bounty platform HackerOne has paid a $20,000 reward to a researcher who reported a security flaw inadvertently caused by one of its staff during… a bug submission.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/iDklXemCQZs” height=”1″ width=”1″ alt=””/>

Read more

Google throws bug bounty bucks at mega-popular third-party apps

Credit to Author: Lisa Vaas| Date: Mon, 02 Sep 2019 10:51:32 +0000

Google&#8217;s going to throw more bug bounty money at the problem of nasty apps in its Play Store, it announced on Thursday. In a post from the Android Security &#38; Privacy team&#8217;s Adam Bacchus, Sebastian Porst, and Patrick Mutchler , the company said that it&#8217;s throwing the security net over not just its own apps, but [&#8230;]<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/bPMJRaBtj94″ height=”1″ width=”1″ alt=””/>

Read more

Apple will hand out unlocked iPhones to vetted researchers

Credit to Author: Lisa Vaas| Date: Mon, 12 Aug 2019 11:44:22 +0000

It formalizes the reality: “pre-jailbroken” iPhones were already on the black market.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/SFMBPoyjIsk” height=”1″ width=”1″ alt=””/>

Read more

More than 2m AT&T phones illegally unlocked by bribed insiders

Credit to Author: Lisa Vaas| Date: Thu, 08 Aug 2019 12:28:54 +0000

The alleged, now indicted ringleader paid more than $1m in bribes to insiders who planted malware and hardware for remote unlocking.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/5KmgBCGFT2U” height=”1″ width=”1″ alt=””/>

Read more