A selection of this week’s more interesting vulnerability disclosures and cyber security news.
Some sad news this week that raises serious questions about automated vehicles.
Lots of other news such as Symantec vulnerabilities, a bit of a spat between Comodo and Let’s Encrypt which thankfully was resolved. Of course we have, as usual, plenty of data breaches:
- Global terror database World-Check leaked (The Register)
- Hack exposes 1,500 University of Cambridge student and employee passwords
- 25 Symantec products open to wormable attack by unopened e-mail or links (ArsTechnica)
- 25,000 malware-riddled CCTV cameras form network-crashing botnet (The Register)
- 400 million Foxit users need to catch up with patched-up reader (The Register)
- Botnet-powered ballot stuffing suspected in 2nd referendum petition (The Register)
- Cerber Strikes With Office 365 Zero-Day Attacks
- Chrome DRM bug makes it easy to download streaming video (ArsTechnica)
- Comodo Drops ‘Let’s Encrypt’ Trademark Applications (InfoRiskToday)
- If You Are Using Security Software From Symantec Or Norton You Should Upgrade Immediately (Forbes)
- Massive Nine-Vector DDoS Attack Tops 470 Gbps (SecurityWeek)
- Panda Security Privilege Escalation
- Sharp new satellite imagery makes Google Earth way better for stalking (Yahoo Security)
- MIRCOP Ransomware Claims to be Victim, Demands Payback (SecurityWeek)
- Flaw Allowed Removal of Any Video on Facebook (SecurityWeek)
- Chrome DRM Flaw Enables Movie Piracy
Weekly Cyber Security News 01/07/2016