Lucian ConstantinRomania Correspondent, IDG News Service

Lucian Constantin writes about information security, privacy, and data protection for the IDG News Service.

Synology patches serious security flaws in its network-attached storage devices

One vulnerability could let attackers compromise NAS boxes and data stored on them

PCWorld News

Attackers use email spam to infect point-of-sale terminals with new malware

They're likely counting on some employees misusing such terminals to browse the Web or check their personal email at work

Asus RT-AC87U

Large-scale attack hijacks your router through your browser

Researchers found a Web attack tool designed specifically to exploit vulnerabilities in routers and hijack their DNS settings

android phone apps

Android's Factory Reset tool still leaves sensitive data on your phone

Researchers recovered access credentials, emails, text messages and other sensitive information from wiped Android phones.

Netgear CES new products

Netgear and ZyXEL confirm NetUSB flaw, are working on fixes

The vulnerability could allow attackers to take over affected routers. And Netgear won't have a fix until the third quarter!

PCWorld News

Android stock browser vulnerable to URL spoofing

It's recommended that users install Chrome or another browser

apple watch on wrist 2

First software update for Apple Watch includes critical security fixes

The update patches 13 vulnerabilities and updates the trusted root SSL certificates.

netgear nighthawk

Critical vulnerability in NetUSB driver exposes millions of routers to hacking

Tens of routers and other embedded devices from various manufacturers likely have the flaw, security researchers said.

ios8safari primary

URL-spoofing bug in Apple's Safari could enable hard to detect phishing attacks

A researcher developed code that can trick Safari into showing a different URL in its address bar than the one currently loaded.

ransomware man pointing gun out of computer security

In desperation, many ransomware victims plead with attackers

TeslaCrypt creators negotiated with victims, earned over $76,000 in two months, electronic documents reveal.

PCWorld News

Sally Beauty confirms second payment card breach

There's enough evidence to confirm an intrusion, but the scope of the breach is not yet clear

PCWorld News

Asian nations increasingly hit by espionage groups

Multiple groups of attackers are focusing on government and military targets in Asia and the Pacific region, researchers fine

PCWorld News

Critical VM escape vulnerability impacts business systems, data centers

The vulnerability, dubbed Venom, affects systems usings the QEMU, Xen and KVM virtualization platforms

Microsoft's Patch Tuesday fixes 46 flaws in Windows, IE, Office, and more

Companies should prioritize three security bulletins that are rated critical.

PCWorld News

Russian cyber group seen preparing to attack banks

APT28 set up phishing domain names for an upcoming attack against banks in the U.S, UAE and other countries