Latest Articles

Cybercrooks use photo-sharing to plant malware in online auto ad scams, FBI warns

Cybercrooks use photo-sharing to plant malware in online auto ad scams, FBI warns

Beware the auto seller on Craigslist who says he'll send photos on request - he could well be a crook who sends files packed with malware, the FBI has warned.

Watch where you plug in, folks - researchers hack iPhones with a charger

Watch where you plug in, folks - researchers hack iPhones with a charger

Researchers from the Georgia Institute of Technology plan to discuss their attack, dubbed "Mactans", and how it succeeded in compromising the latest generation devices with the latest version of iOS at the Black Hat USA Conference in July.

SSCC 110 - Skype "surveillance," piracy, small biz and cybersecurity awareness [PODCAST]

sscc110-250

For your two-weekly listening pleasure, here's the latest episode of the Chet Chat.

Chet and Duck are back, and once again in fine form...

LinkedIn flips the two-factor authentication switch

LinkedIn flips the two-factor authentication switch

Just in time for the one-year anniversary of getting its socks knocked off in an attack that saw 6.5 million passwords swiped. Thanks: that's a good anniversary gift, LinkedIn.

Fake payment phishers busted in South Africa

It's more Cape of Storms than it is Cape of Good Hope for an alleged phishing gang reportedly busted in Cape Town in South Africa's Western Cape.

The gang supposedly used a mixture of email and SMS to lure their victims into giving away PII...

Not good enough, Oracle - promises to secure Java are too little, too late

coffee-cup_thumb

In a big fat blog post, Oracle has promised to work harder to make Java more secure. But given the flood of high-profile, heavily-exploited vulnerabilities that have bobbed to the surface, can Oracle save this piece of software from drowning in bad vibes?

Megaupload's Kim Dotcom gets back some of his seized property, and receives right to see evidence against him

Megaupload's Kim Dotcom gets back some of his seized property, and receives right to see evidence against him

Kim Dotcom has won back the right to see all the evidence against him - before, rather than after, his possible extradition to the US to answer charges of racketeering, money laundering, online piracy and copyright infringement.

Monday review - the hot 15 stories of the week

Monday review

It's weekly roundup time. Here's all the great stuff we've written in the past seven days.

Farewell Camino - pioneering Mac browser falls behind on security, reaches end of road

Camino, the first browser that was purposefully made for Apple's OS X, has officially reached the end of the road.

The developers cited the pain of security updates as a key reason to wind up the project.

Android malware, Liberty Reserve, CSAW, Legal ransomware - 60 Sec Security [VIDEO]

2013-06-01-csaw-250

Watch our 60 Second Security videos and arm yourself with anecdotes you can use when your friends or colleagues ask you, "Do I really need to worry about things like privacy and security?"

Facebook kicks out rape jokes and gender hate speech

Facebook kicks out rape jokes and gender hate speech

Facebook is reviewing its attitude to pages which contain violent or hateful speech - it's giving them a fly-kick right to the curb.

Android malware in pictures - a blow-by-blow account of mobile scareware

Fake anti-virus is mostly for Windows, with OS X a long way back in second place. But other operating systems aren't exempt from the depredations of cybercriminals.

Paul Ducklin shows you round some recently-discovered Android scareware...

Sorry? Is a US report recommending ransomware to target copyright thieves?

Sorry? Is a US report recommending ransomware to target copyright thieves?

Should suspected copyright abusers really have their computers attacked with malware in a bid to retrieve stolen data?

Harvard dean who authorized secret search of faculty email to step down

Harvard dean who authorized secret search of faculty email to step down

The Harvard University dean who approved a secret search of faculty email to track down a media leak about student cheating will step down on July 1, the dean announced on Tuesday.

Digital currency Liberty Reserve shut down by US governement

shutterstock_MoneyLaundry250

This week US authorities shut down Liberty Reserve, an online currency favored by cybercriminals. Will enforcement actions have any real impact on the underground economy?

PayPal refuses to pay bug-finding teen

PayPal refuses to pay bug-finding teen

A 17-year-old German student says he found a bug on PayPal's site but the company won't fork over the reward money. PayPal said someone had already found the bug but they also cited an age guideline that isn't actually included in its bug bounty program guidelines.

Australian government announces its National Cloud Computing Strategy

The Australian government has officially published its National Cloud Computing Strategy.

Sophos was involved in the committee that created this document...so we'd like to know what *you* think of it now it's out!

Face recognition API for Google Glass to be released this week

Face recognition API for Google Glass to be released this week

An API that will enable developers to program facial recognition into Google Glass apps is due to be released this week by Lambda Labs, a San Francisco startup. A co- founder says that the company will offer opt-out for face recognition, but is that enough to safeguard privacy?

Certificate pinning - first for websites, now for software?

certchain-250

You may have heard of certificate pinning. Microsoft is looking at applying the technology to signed software.

Have a listen as Patrick Gray, host of the renowned Risky Business security podcast, discusses the issue with Naked Security's Paul Ducklin.

Phishers try flattery with Facebook Page owners

Phishers try phlattery with Facebook fan page owners

Facebook phishers are targeting Page owners with a bogus message supposedly sent from Facebook Security. They've had such a trying time with stolen Pages, the posers say, that they simply must delete them all. Except yours! Yours has High Quality Content - initial capitalization and all!