“A new penetration testing tool published at the start of the year by a security researcher can automate phishing attacks with an ease never seen before and can even blow through login operations for accounts protected by two-factor authentication (2FA).”
Cybersecurity 101: Two-factor authentication can save you from hackers
“If you find passwords annoying, you might not like two-factor authentication much. But security experts say it’s one of the best ways to protect your online accounts. Simply put, two-factor authentication adds a second step in your usual log-in process.”
Microsoft patches Internet Explorer to stop PC takeover attacks
“Microsoft has urged people to update Internet Explorer after finding a major flaw.The browser’s memory corruption vulnerability lets attackers remotely execute code as if they were the computer’s user, essentially giving them control of the computer, Microsoft wrote in a Wednesday security notice.”
Worst passwords list is out, but this time we’re not scolding users
“Oh, those incorrigible password abusers. After all these years of being shamed (if they cared or were paying attention), they’re still using “123456” as a password. This year, according to SplashData’s annual worst password list, that stale cracker came in at No. 1.”
Worst passwords list is out, but this time we’re not scolding users
“Oh, those incorrigible password abusers. After all these years of being shamed (if they cared or were paying attention), they’re still using “123456” as a password. This year, according to SplashData’s annual worst password list, that stale cracker came in at No. 1.”
Signal says it can’t allow government access to users’ chats
“Last week, the Australian government passed the country’s controversial Access and Assistance Bill 2018 into law, legislation that allows government agencies to demand access to encrypted communications. Companies that don’t comply with the new law could face fines of up to AU$10 million ($7.”
Instagram security lapse exposed some user passwords to the public, company says
“A flaw in Instagram’s “Download Your Data” tool inadvertently exposed some user passwords, a report from The Information claims. In some instances, user passwords may have been exposed to public view. Instagram is said to have informed affected users via an email.”
Now it’s easier to protect your browsing privacy on iOS devices with 1.1.1.1 app
“The gold standard for privacy protection on the Internet is to use a VPN service. This encrypts all traffic so your ISP has no way to know which sites you’re visiting or what you’re doing there. But trustworthy VPNs cost money.”
You Can’t Trust BitLocker to Encrypt Your SSD on Windows 10
“Some SSDs advertise support for “hardware encryption.” If you enable BitLocker on Windows, Microsoft trusts your SSD and doesn’t do anything. But researchers have found that many SSDs are doing a terrible job, which means BitLocker isn’t providing secure encryption.”
Forensics firm urges police not to look at screens of iPhones with Face ID
“While U.S. police are now sometimes forcing suspects with Face ID-ready iPhones to unlock their devices, Apple’s technology is simultaneously making that a risky proposition, one security firm is warning agencies.”