Help Net Security newsletters: Daily and weekly news, cybersecurity jobs, open source projects, breaking news – subscribe here!

Please turn on your JavaScript for this page to function normally.
Phishers mimic OpenID to steal credentials

New spam email campaigns are taking advantage of the users’ vague familiarity with the OpenID authentication method to phish their login credentials for a number of …

Walmart gift card scam targets smartphone users

Online survey scams are most often propagated through social network and sharing websites, but occasionally users are “assaulted” directly through their …

1,000+ WordPress sites compromised through automatic update feature

More than 1,000 WordPress blogs have been modified to redirect visitors to sites serving malware, affiliate and pay-per-click redirectors, and low quality PPC search result …

New hacking group hits government websites, leaks stolen data

A hacker group that named itself “The Unknowns” has recently boasted on Pastebin of having compromised a number of government, business and educational websites, …

The difficulties in sizing up botnets

The main metric with which security researchers identify how effective and disruptive specific botnets are is the number of computers they consists of. Estimating their size …

RedKit exploit kit spotted in the wild

A new exploit kit that Trustwave researchers have spotted being used in the wild is aiming to enter a market that is practically monopolized by the widely famous BlackHole and …

“Free additional storage” phishing emails doing rounds

Symantec researchers warn about a variety of fake emails supposedly coming from popular email and online storage services, offering “storage quota upgrades”. A …

Android drive-by download malware served by hacked websites

A number of legitimate but compromised websites have been spotted serving Android malware to unsuspecting visitors, warns Lookout. The downloading of the malware, which poses …

Poison Ivy RAT served by compromised Israeli website

The official website of the Israeli Institute for National Security Studies has been compromised and has been found serving a variant of the Poison Ivy remote administration …

Joint attack by banking Trojan and ransomware

The Citadel malware – a banking Trojan that is based on Zeus Trojan’s source code and whose creators have adopted a Software-as-a-Service approach when it comes to …

Fake PayPal payment notification leads to malware

PayPal might have passed the torch of the most phished brand to China’s Taobao.com, but that doesn’t mean that phishers and other scammers have stopped delivering …

Flashback botnet is a cash cow

We have all heard about the Flashback malware targeting machines running OS X and enslaving them into a botnet, but not a lot of attention has been given to the ultimate goal …

Don't miss

Cybersecurity news
Daily newsletter sent Monday-Friday
Weekly newsletter sent on Mondays
Editor's choice newsletter sent twice a month
Periodical newsletter released when there is breaking news
Weekly newsletter listing new cybersecurity job positions
Monthly newsletter focusing on open source cybersecurity tools