Friday, 2 September 2016

SpaceX rocket explosion is setback for Facebook internet project

Facebook’s internet project has lost a satellite it was planning to use to provide broadband coverage to sub-Saharan Africa

from ComputerWeekly: IT security http://www.computerweekly.com/news/450303657/SpaceX-rocket-explosion-is-setback-for-Facebook-internet-project


from Tumblr http://zoehamilton671.tumblr.com/post/149833394495
via Zoe Hamilton

Thursday, 1 September 2016

68 million passwords were dumped online in recent Dropbox hack

02E97250 (300 x 200)

Earlier this week, Dropbox suffered a hack and had its users force reset passwords that it claims were stolen in a 2012 breach. The following message was given to the users.

Our security teams are always watching out for new threats to our users. As part of these ongoing efforts, we learned about an old set of Dropbox user credentials (email addresses plus hashed and salted passwords) that we believe were obtained in 2012.

Our analysis suggests that the credentials relate to an incident we disclosed around that time

If you haven’t logged in on Dropbox, you will have to change your passwords. Furthermore, if you started using Dropbox before mid 2012, you should also reset your password.

The hack was so big that a file was obtained sized around 5GB which contained the details of 68,680,741 accounts.

Read more https://nakedsecurity.sophos.com/2016/08/31/dropbox-hack-leads-to-68-million-passwords-dumped-online/

The post 68 million passwords were dumped online in recent Dropbox hack appeared first on Cyber Security Portal.



from Cyber Security Portal https://cybersecurityportal.com/68-million-passwords-dumped-online-recent-dropbox-hack/
via the Cyber Security Portal… The best place for all Cyber Security news & Updates.
Follow Us:
Twitter: https://twitter.com/JakeCiber
Youtube: https://www.youtube.com/channel/UCBWEkLXPXciwrLGSzCd0Nsw
Facebook: https://www.facebook.com/Cyber-Security-Portal-1541258179514076/
Google +: https://plus.google.com/108872497050256520329/about
from Tumblr http://zoehamilton671.tumblr.com/post/149805193855
via Zoe Hamilton

Mr Robot & A “Dream Device For Hackers”

MR-ROBOTHave you been watching Mr. Robot on USA? Great show and you can get on Amazon. Elliot is a great character and there are a lot of twists and turns. Some of it is cheezy, but hey what television shows don’t have some cheez to it!

#fsociety is always coming up with sneaky ways to penetrate and a main one has been via connected devices.

I love the term PWN Phone and Elliot’s “dream device for a pentester” is used to run a custom script to PWN another phone.  Want one? Check out https://store.pwnieexpress.com/product-category/sensors/

So PwNIE Express is actually giving away  Mr. ROBOT phone. You gotta check it out https://www.pwnieexpress.com/mr-robot-pwn-phone

All I can say is check out the company and how they feel about “hacking”, “testing”, etc….

There are so many exploits out there today and if you watch Mr. Robot you might just get some ideas 😉

QUIZ: What does Elliot do with it? Beuller…. Beuller… leave your answer in the comments below for a chance to win a PWN Phone….

You can’t not like the character of Elliot, but where will the show take us?

Which episode has been your favorite so far?

 

The post Mr Robot & A “Dream Device For Hackers” appeared first on Cyber Security Portal.



from Cyber Security Portal https://cybersecurityportal.com/mr-robot-dream-device-for-hackers/
via the Cyber Security Portal… The best place for all Cyber Security news & Updates.
Follow Us:
Twitter: https://twitter.com/JakeCiber
Youtube: https://www.youtube.com/channel/UCBWEkLXPXciwrLGSzCd0Nsw
Facebook: https://www.facebook.com/Cyber-Security-Portal-1541258179514076/
Google +: https://plus.google.com/108872497050256520329/about
from Tumblr http://zoehamilton671.tumblr.com/post/149800966810
via Zoe Hamilton

A new cloud attack can take full control of virtual machines with virtually no effort put in

ISS_5188_00768 (300 x 250)

The world of IT has just witnessed the most unsettling attack resulting from the rowhammer exploit. The exploit can flip individual bits in the memory of a computer.

The technique is so precise that it can allow a single machine to start stealing data from other machines that are hosted on the same cloud.

Until now, the Rowhammer exploit was considered a clumsy attack tool because it wasn’t really good enough to control where the data corrupting bits happened on a machine. Up till now, this attack was only considered a glitch until recently.

It is now capable of manipulating deduplication operations that are very common amongst cloud hosts to save memory.

Read more details http://arstechnica.com/security/2016/08/new-attack-steals-private-crypto-keys-by-corrupting-data-in-computer-memory/

The post A new cloud attack can take full control of virtual machines with virtually no effort put in appeared first on Cyber Security Portal.



from Cyber Security Portal https://cybersecurityportal.com/new-cloud-attack-can-take-full-control-virtual-machines-virtually-no-effort-put/
via the Cyber Security Portal… The best place for all Cyber Security news & Updates.
Follow Us:
Twitter: https://twitter.com/JakeCiber
Youtube: https://www.youtube.com/channel/UCBWEkLXPXciwrLGSzCd0Nsw
Facebook: https://www.facebook.com/Cyber-Security-Portal-1541258179514076/
Google +: https://plus.google.com/108872497050256520329/about
from Tumblr http://zoehamilton671.tumblr.com/post/149800148880
via Zoe Hamilton

More IoT botnets connected to DDoS attacks

Security researchers have found another botnet operation exploiting internet of things devices to carry out powerful distributed denial of service attacks, prompting calls for IoT device makers to improve security

from ComputerWeekly: IT security http://www.computerweekly.com/news/450303601/More-IoT-botnets-connected-to-DDoS-attacks


from Tumblr http://zoehamilton671.tumblr.com/post/149798240345
via Zoe Hamilton

Security Think Tank: Human factor is key to defeating evasive malware

How can businesses best prepare their cyber defences in light of the fact that attackers are increasingly using malware designed to evade detection and analysis?

from ComputerWeekly: IT security http://www.computerweekly.com/opinion/Security-Think-Tank-Human-factor-is-key-to-defeating-evasive-malware


from Tumblr http://zoehamilton671.tumblr.com/post/149798234470
via Zoe Hamilton

Lessons from the Dropbox breach

Dropbox is the latest major company to confirm a data breach, albeit four years old, but – as with all recent data breaches by cloud-based services – it highlights some key security lessons

from ComputerWeekly: IT security http://www.computerweekly.com/news/450303585/Lessons-from-the-Dropbox-breach


from Tumblr http://zoehamilton671.tumblr.com/post/149795477600
via Zoe Hamilton