Unencrypted cookies make WordPress accounts vulnerable over open networks

Wednesday, May 28th, 2014

People accessing the Internet over open WiFi networks are now vulnerable to having their WordPress webpage hijacked even with two-step authentication enabled. This new vulnerability was found by Yan Zhu, a staff technologist with the Electronic Frontier Foundation. Zhu found that when accessing WordPress, the site sends a cookie in plain text ...

Spotify: Important Notice to Our Users

Tuesday, May 27th, 2014

We’ve become aware of some unauthorized access to our systems and internal company data and we wanted to let you know the steps we’re taking in response. As soon as we were aware of this issue we immediately launched an investigation. Information security and data protection are of great importance ...

Avast takes community forum offline after data breach

Tuesday, May 27th, 2014

Prague-based antivirus company Avast said Monday it took its community forum offline after a data breach, but payment information was not compromised. Usernames and nicknames, email addresses and encrypted passwords were obtained in an attack over the weekend, wrote Avast CEO Vince Steckler on a company blog. The attack affected less than 400,000 ...

Microsoft will patch IE zero day but doesn’t give timeline

Friday, May 23rd, 2014

Microsoft said Thursday it plans eventually to patch a vulnerability in Internet Explorer 8 that it's known about for seven months, but it didn't say when. A security research group within Hewlett-Packard called the Zero Day Initiative (ZDI) released details of the flaw on Wednesday after giving Microsoft months to address ...

eBay To Ask Users To Change Passwords

Wednesday, May 21st, 2014

eBay Inc. (Nasdaq: EBAY) said beginning later today it will be asking eBay users to change their passwords because of a cyberattack that compromised a database containing encrypted passwords and other non-financial data. After conducting extensive tests on its networks, the company said it has no evidence of the compromise ...