SecurIT360 Blog

In-depth IT and cybersecurity news and education

Computer & Network Security>Microsoft|Computer & Network Security>Patches

Windows 8.1, Server 2012 R2 no longer receiving updates

Microsoft has said the Windows 8.1 and Server 2012 R2 will no longer receive updates unless they have the April 2014 updates installed.  In other

Computer & Network Security>Java

Critical Oracle Update – Fixes 104 Vulnerabilities

Oracle announced a critical update for a number of products including Java.   According to Oracle, “Due to the threat posed by a successful attack, Oracle strongly

Computer & Network Security|Compliance>Encryption|Information Security|Research

Leave no stone un-turned when patching Heartbleed

Most people are now up to speed about the existence of Heartbleed, but new information is coming out that the focus has only been on

Computer & Network Security|Compliance>Encryption|Information Security

Heartbleed: What You Need To Know

Summary Heartbleed is a serious vulnerability that can allow attackers to intercept secure communications.  Email, Websites, VPNs, and other trusted security technologies are at risk

Computer & Network Security|Compliance>Encryption|Information Security|Research

The Heartbleed Bug

The Heartbleed Bug is a recently discovered critical vulnerability found in widely used open-source implementations of the SSL/TLS protocols, OpenSSL .  SSL/TLS is used to

Information Security>Data Breach|Research

Data Breach?

UPDATED 4/15 A colleague was notified today by his bank, BBVA Compass, that his account was likely involved in a breach and that shortly his

Computer & Network Security>Microsoft|Computer & Network Security>Microsoft Security Bulletin|Computer & Network Security>Patches|Computer & Network Security>Zero-day

Microsoft Word Zero Day – Confirmed Attacks

Microsoft released a zero-day advisory for Microsoft Word.  According to Microsoft, “At this time, we are aware of limited, targeted attacks directed at Microsoft Word

Computer & Network Security|Social Engineering>Phishing

Highly effective social engineering using Google Drive

Researchers at Symantec have identified an attack on Google Documents users using highly effective social engineering methods. This attack is so successful because the redirect

Research

News Brief – 03/13/14

Critical crypto flaw in Facebook’s WhatsApp for Android exposes chats Tread carefully when allowing apps access to features on your phone like access to the