Author: dschmidthawk

  • MS Office Built-in Feature Allows Malware Execution Without Macros Enabled

    This exploit uses the users’ common sense against themselves. Security researchers at Cisco’s Talos threat research group have discovered one such attack campaign spreading malware-equipped Microsoft Word documents that perform code execution on the targeted device without requiring Macros enabled or memory corruption. This Macro-less code execution in MSWord technique, described in detail on Monday by a…

  • Apple Allows Uber to Use a Powerful Feature that Lets it Record iPhone Screen

    What could possibly go wrong when your privacy and phone are given “selectively” without your knowledge or ability to intervene?  What happens when Uber is hijacked?  Or Uber uses this access unscrupulously? Security researcher Will Strafach recently revealed that Apple selectively grants (what’s known as an “entitlement“) Uber a powerful ability to use the newly…

  • Hackers pounce on 3 vulnerable WordPress plugins – Naked Security

    Remember the old saying about bad things coming in threes? Flaw hunters Wordfence would probably agree with the sentiment after uncovering some nasty zero-day flaws in a trio of WordPress plugins. Not a great start, then, but much worse is that the vulnerabilities were already being exploited when the company discovered them by chance during recent…

  • It’s 3 Billion! Yes, Every Single Yahoo Account Was Hacked In 2013 Data Breach

    Anyone still using Yahoo is either really uninformed or masochistic (or maybe employed by Equifax?)… The largest known hack of user data in the history just got tripled in size. Yahoo, the internet company that’s acquired by Verizon this year, now believes the total number of accounts compromised in the August 2013 data breach, which was disclosed…

  • Over 711 Million Email Addresses Exposed From SpamBot Server

    Don’t despair, here is a link to a site that will tell you whether your email account has been breached.  https://haveibeenpwned.com/  I am very careful and I was breached in 4 areas: Adobe breach 2012 (changed in 2014); LinkedIn in 2013 (changed in 2013); and 2 other sites that sold the 2 old breaches.  If…

  • Warning: Two Dangerous Ransomware Are Back – Protect Your Computers

    They’re baaaack, bigger and stronger. Learn how to protect yourself from the latest iterations of ransomware… Currently, there is no decryptor available to decrypt data locked by Mamba and Locky as well, so users are strongly advised to follow prevention measures in order to protect themselves. Beware of Phishing emails: Always be suspicious of uninvited documents…

  • How to Recover from a Ransomware Attack – AARP

    You should have the information you need to prevent (as much as possible) a Ransomware attack, but if you are still locked out of your files, here are some tips to help you recover.  Remember, prevention is the best solution here, including backups of all your files.  I’ve listed the steps, but you’ll need to…

  • 39 Essential Google Search Operators Every SEO Ought to Know

    Some you probably know, but what about excluding multiple words or phrases?  What about finding words near each other?  Read the article to learn how this is done! In SEO, it’s often the little things that matter. After you’ve learned the basics, you can’t stop. You need to push yourself and learn more and more.…

  • WikiLeaks Reveals ‘Athena’ CIA Spying Program Targeting All Versions of Windows

    More CIA spying tools… WikiLeaks has published a new batch of the ongoing Vault 7 leak, detailing a spyware framework – which “provides remote beacon and loader capabilities on target computers” – allegedly being used by the CIA that works against every version of Microsoft’s Windows operating systems, from Windows XP to Windows 10. Dubbed…

  • WannaCry Ransomware Decryption Tool Released; Unlock Files Without Paying Ransom

    If you were infected by WannaCry, they have released a decryption tool to unlock your files without paying the ransom. If your PC has been infected by WannaCry – the ransomware that wreaked havoc across the world last Friday – you might be lucky to get your locked files back without paying the ransom of…