Malware

Merchants of Doh! Cameras, DVRs, NAS Fall Down on Security

In-brief: In just the last week, remotely exploitable security holes cropped up in hundreds of models of IP enabled security cameras and recorders as well as a popular line of network attached storage (NAS) devices. The culprit? Shoddy firmware and lax oversight by vendors. When will it end??

Consumer Reports Publishes Draft Cyber Standard

In-brief: Consumer Reports released a draft standard for security digital devices, calling on manufacturers to secure their products and give consumers the right to repair them. 

Updated: The CloudPets Incident is Everything That’s Wrong with Consumer Internet of Things

In-brief: the apparent leak of data on owners of CloudPets connected stuffed animals underscores lax security and privacy practices that are common among connected products firms. (Updated with comment from Troy Hunt. PFR 2/28/2017.)

AT&T: Mirai’s Rise Seen in IoT Vulnerability Scans

In brief: In a new report, Internet provider AT&T said that scans for vulnerable IoT devices spiked in the first half of 2016, months before the Mirai botnet, made up largely of IoT devices, launched denial of service attacks on DYN and other targets.

Locked and Loaded: Huge Botnet Updated for DDoS

In-brief: Researchers at Anubis Networks claim that Necurs, one of the world’s largest botnets, has added a feature for launching denial of service attacks.