Archives: Projects

Home » Projects » Page 465
Project

Latest attack on PyPI users shows crooks are only getting better

Enlarge (credit: Getty Images) More than 400 malicious packages were recently uploaded to PyPI (Python Package Index), the official code repository for the Python programming language, in the latest indication that the targeting of software developers using this form of attack isn’t a passing fad. All 451 packages found recently by security firm Phylum contained...

Project

Microsoft will forcibly remove Internet Explorer from most Windows 10 PCs today

Enlarge (credit: Microsoft) Internet Explorer 11 was never Windows 10’s primary browser—that would be the old, pre-Chromium version of Microsoft Edge. But IE did continue to ship with Windows 10 for compatibility reasons, and IE11 remained installed and accessible in most versions of Windows 10 even after security updates for the browser ended in June...

Project

~11,000 sites have been infected with malware that’s good at avoiding detection

Enlarge (credit: CHUYN / Getty Images) Nearly 11,000 websites in recent months have been infected with a backdoor that redirects visitors to sites that rack up fraudulent views of ads provided by Google Adsense, researchers said. All 10,890 infected sites, found by security firm Sucuri, run the WordPress content management system and have an obfuscated...

Project

Apple releases iOS 16.3.1 and other updates with fix for “actively exploited” bug

Enlarge (credit: Apple) Apple is releasing minor updates to all of its major software platforms today to address one high-priority security vulnerability and to fix a handful of other device- and service-specific issues. The iOS 16.3.1, iPadOS 16.3.1, and macOS 13.2.1 updates all patch an “actively exploited” arbitrary code execution vulnerability in WebKit/Safari, and a...

Project

This week’s Reddit breach shows company’s security is (still) woefully inadequate

Enlarge (credit: Getty Images) Popular discussion website Reddit proved this week that its security still isn’t up to snuff when it disclosed yet another security breach that was the result of an attack that successfully phished an employee’s login credentials. In a post published Thursday, Reddit Chief Technical Officer Chris “KeyserSosa” Slowe said that after...