Tag Archives: Uncategorized

Mastodon fixes critical “TootRoot” vulnerability allowing node hijacking

reader comments 12 with The maintainers of the open source software that powers the Mastodon social network published a security update on Thursday that patches a critical vulnerability making it possible for hackers to backdoor the servers that push content to individual users. Mastodon is based on a federated model. The federation comprises thousands of… Read More »

Messenger billed as better than Signal is riddled with vulnerabilities

Getty Images reader comments 60 with 0 posters participating Share this story Academic researchers have discovered serious vulnerabilities in the core of Threema, an instant messenger that its Switzerland-based developer says provides a level of security and privacy “no other chat service” can offer. Despite the unusually strong claims and two independent security audits Threema… Read More »

Kremlin-backed hackers targeted a “large” petroleum refinery in a NATO nation

Enlarge / Fawley Oil Refinery on a bright day. Getty Images reader comments 43 with 0 posters participating Share this story One of the Kremlin’s most active hacking groups targeting Ukraine recently tried to hack a large petroleum refining company located in a NATO country. The attack is a sign that the group is expanding… Read More »

Prosecutors charge 6 people for allegedly waging massive DDoS attacks

Getty Images reader comments 16 with 0 posters participating Share this story Federal prosecutors on Wednesday charged six people for allegedly operating websites that launched millions of powerful distributed denial-of-service attacks on a wide array of victims on behalf of millions of paying customers. The sites promoted themselves as booter or stressor services designed to… Read More »

Microsoft links Russia’s military to cyberattacks in Poland and Ukraine

Getty Images reader comments 0 with 0 posters participating Share this story Microsoft on Thursday fingered Russia’s military intelligence arm as the likely culprit behind ransomware attacks last month that targeted Polish and Ukrainian transportation and logistics organizations. If the assessment by members of the Microsoft Security Threat Intelligence Center (MSTIC) is correct, it could… Read More »

Passkeys—Microsoft, Apple, and Google’s password killer—are finally here

Gertty Images reader comments 159 with 93 posters participating, including story author Share this story For years, Big Tech has insisted that the death of the password is right around the corner. For years, those assurances have been little more than empty promises. The password alternatives—such as pushes, OAUTH single-sign ons, and trusted platform modules—introduced… Read More »

Linux 6.0 arrives with support for newer chips, core fixes, and oddities

Enlarge / And there was much rejoicing, as a new Linux kernel version had arrived before its founder ran out of fingers and toes for counting. Getty Images reader comments 45 with 31 posters participating, including story author Share this story A stable version of Linux 6.0 is out, with 15,000 non-merge commits and a… Read More »

Post-quantum encryption contender is taken out by single-core PC and 1 hour

Enlarge (credit: Getty Images) In the US government’s ongoing campaign to protect data in the age of quantum computers, a new and powerful attack that used a single traditional computer to completely break a fourth-round candidate highlights the risks involved in standardizing the next generation of encryption algorithms. Last month, the US Department of Commerce’s… Read More »