FBI used Metasploit for illegal, warrantless snooping on Tor users

Operation Tornado turned out to a successful one for FBI with arrests of over 14 individuals. Wow, the credibility of TOR developers sure seems in question then. (Or, maybe not.) Daniel December 17, 2014 1:06 PM@ Tim, @Bob S. I see both sides of this. @jggimi Yes, but that isnt the real point of the article either. The real point is in the last paragraph. (For the 2013 attack, that was browsing with an old version....

December 18, 2014 · 2 min · 255 words · Sarah Dorsey

Syrian Electronic Army hacks International Business Times (IBT) for alleged false coverage of Syria

Next time, we will delete all [of]your website. SEA had used the identity of IBTimes chief editor, Peter S. Goodman to pull up the site. source: www.techworm.net

December 18, 2014 · 1 min · 27 words · Richard Bird

Viber vs ESET, ESET’s NOD32 flags Viber for ‘potential threat’ and shows why

Viber doesnt think so! Eset put up a image of the Viber installations source code showing details of silent downloads and statistics. Further the installer source code put up by ESET states a certain HTTPDownloadInSilent push request. Eset seems to be on wrong side regarding sending app statistics silently. All tech companies do that, even browsers do that with cookies which are similar silent statistics. Which side are you on?...

December 18, 2014 · 1 min · 72 words · Albert Henson

Anonymous Linked journalist Barrett Brown to be sentenced on January 22nd

One of the first people to raise his voice against the government will be sentenced soon. His sentencing has been delayed to January 22nd of next year. Case Files The actions of the United States government against this man has been termed fierce by many. Well, his is a story worth laurels that has gone untold. The findings, probably shocked Brown himself. At the time, his warnings seemed very much realistic....

December 17, 2014 · 1 min · 154 words · Rodney Frazier

Google fixes critical flaw in the Blogger which allowed Hijacker to post to any blogspot blog

The critical flaw was found out by an Egyptian security expert Mazen Gamal Mesbah (@MazenGamal). source: www.techworm.net

December 17, 2014 · 1 min · 17 words · Barbara Torres MD

Grinch Root Access Vulnerability Impacts All Linux Platforms

This flaw can be used across Linux powered computers, servers and even android devices. We uncovered a bug that impacts all Linux platforms, including mobile devices, and were calling it grinch. Exploitation of the logging system This isnt the first major vulnerability to be uncovered in Linux. Further digging led them to grinch. For directly executed tools, Polkit provides a setuid-root helper program called pkexec. Whichever method the attacker uses, the goal is to gain root access to the system....

December 17, 2014 · 1 min · 152 words · Jacob Ortega

ICANN hacked and its Centralized Zone Data Service (CZDS) compromised

In short it is the keeper of the Internet Protocol identifiers. As more and more generic TLDs are added to internet, the work of CZDS has gone up. As a result of the attack, the email credentials of several ICANN staff members were compromised. Those credentials were then used to compromise other ICANN systems, including the CZDS. ICANN has urged all the users to change their passwords to new ones....

December 17, 2014 · 1 min · 128 words · Brittany Cook

TorrentLocker Ransomware variation targets Japanese users

This is the first reported instance of a ransomware specifically targeting users in Japan. Symantec researchers say that this ransomware is a localized variant of TorLocker. Symantec researchers have also confirmed that there are multiple variants of this particular Japanese ransomware. The malware uses the Rijndael algorithm for file encryption. This particular ransom ware also works the same way with the addition that all instructions are written in Japanese. TorLocker has been used in ransomware attacks around the world....

December 17, 2014 · 1 min · 190 words · Donald Hurst

Anonymous announce revenge of TPB raids with cyberattacks against big corporations through #OpPirateBay

The paste was signed of with their now famous signature tagline, We are Anonymous. We do not forgive. We do not forget. We are reproducing the entire paste for our readers with some spelling corrections. __- ===================== +++ #OpPirateBay +++ ===================== __ Greetings Citizens of the World, We Are Anonymous. Freedom of information is an idea that has carried the human race through centuries. By publicly sharing information, ideas are shared, and can be fixed....

December 16, 2014 · 2 min · 418 words · Jamie Smith

Ars Technica Hacked, Popular Technology Website Falls Prey to Hackers

The deface page contained a black background color page with white text color reading, Ars Security. Hacking or Hijacking? followed by a smiley We’re aware of the issue with our site and are working on it. source: www.techworm.net

December 16, 2014 · 1 min · 38 words · Brittney Gordon

At long last The Pirate Bay responds to raids and the future of TPB

But unfortunately for them, the Swedish authorities and police didnt think so. The maximum downtime suffered by TPB was 3 days due to a raid. Not this time, though. So the all important question was what will happen to TPB. Tech and torrent forums were agog with this question with none answers forthcoming. Mr 10100100000 nonchalantly added we couldnt care less really. We have however taken this opportunity to give ourselves a break, Mr 10100100000 said....

December 16, 2014 · 1 min · 184 words · Jeremy Kim

Delta Airlines Mobile Boarding Pass can be Accessed by others

She immediately emailed the Delta security team about this flaw and got a stereotype feedback from them. Shocked Dr.Grant took to web and posted herboarding passes and the flaw. Dr.Grant noticed that by changing the number in the boarding pass url she could view someone elses boarding pass. Similarly someone somewhere may view her boarding pass and abuse it with mala fide intent. With 9/11 like scenarios and yesterdays Lindt Cafe siege can the Airline be so careless?...

December 16, 2014 · 1 min · 89 words · Mark Hanson

OphionLocker, A New Ransomware uses Elliptic Curve for Encryption, Tor for Communication & Malvertising for Propagation

This algebraic form of encryption is based on solving the discrete logarithm of a random elliptic curve element. However the price for decryptor tool can change as per the geolocation of the victim. If the malware detects a virtual environment, it will not ask for any payment to be made. Virtual environments are generally used by security researchers against malwares such as this one. OphionLocker is deadlier then previous ransomware avatars because it doesnt need internet connectivity or user interaction to begin encryption....

December 16, 2014 · 1 min · 130 words · Beverly Smith