Author

 Graham Cluley

Profile of Graham Cluley

News & Commentary Posts: 77
Articles by Graham Cluley

Worker Who Planted Malware Time Bomb At Fannie Mae Faces Prison

10/7/2010
As belts tighten and the credit crunch continues to hit around the world, more and more companies will be making the difficult decision to make staff and contractors redundant. But what happens when a disaffected former employee decides to leave your company a parting gift - in the form of data-destroying malware?

Post a Comment

TechCrunch Hacked

1/26/2010
The immensely popular blog TechCrunch has been compromised by hackers who posted an offensive message on its home page.

Post a Comment

West African 419 Scammers Exploit Dilbert

7/29/2009
The Dilbert comic strip is loved around the world for its satirical look at life in the corporate office. But now identity thieves and scammers are exploiting the popular Dilbert.com Website in their hunt for potential victims.

Post a Comment

Erin Andrews Video: Get A Life Or Get A Virus

7/20/2009
It was early Sunday morning British time when I first heard the name "Erin Andrews." I didn't have a clue who she was -- I don't follow the American sports scene -- but one thing was certain: She was creating an enormous buzz on the Internet.

Post a Comment

Suspected Child Porn Hub Taken Offline

6/4/2009
Internet service provider Pricewert -- which trades under names such as 3FN and APS Telecom -- has been shut down and disconnected from cyberspace following allegations it was knowingly involved in major spam attacks, phishing campaigns, malware distribution, and child abuse.

Post a Comment

Why Twitter Security Needs To Grow Up

5/1/2009
Twitter is growing at phenomenal speed -- but this week's breach by a French hacker who accessed the accounts of Britney Spears, Barack Obama, and others proves it's time for the service to show a more mature attitude to security.

Post a Comment

Write A Twitter Worm, Get A Job?

4/18/2009
The teenage author of the Mikeyy and StalkDaily worms that hit Twitter users hard one weekend ago appears to have struck lucky. As a result of his infamy, he has a brand new job.

Post a Comment

StalkDaily Attack Hits Twitter Users

4/11/2009
If anyone was in any doubt that social networks are the new battleground for cybercriminals, then just log in to Twitter right now. The hugely popular micro-blogging network is overrun with warnings about messages referring to a website called StalkDaily.com, said to be spreading through compromised Twitter accounts.

Post a Comment

Will They Ever Catch Conficker's Authors?

3/31/2009
While the world is holding its breath, wondering whether the Conficker worm is going to do anything dramatic on April 1st (I'm placing money that no computers are reported to have melted by the end of the day, and the Internet won't have turned to blancmange), perhaps a more important question is: Are we ever going to catch the pond life who wrote it?

Post a Comment
'PowerSnitch' Hacks Androids via Power Banks
Kelly Jackson Higgins, Executive Editor at Dark Reading,  12/8/2018
Windows 10 Security Questions Prove Easy for Attackers to Exploit
Kelly Sheridan, Staff Editor, Dark Reading,  12/5/2018
Starwood Breach Reaction Focuses on 4-Year Dwell
Curtis Franklin Jr., Senior Editor at Dark Reading,  12/5/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: I guess this answers the question: who's watching the watchers?
Current Issue
10 Best Practices That Could Reshape Your IT Security Department
This Dark Reading Tech Digest, explores ten best practices that could reshape IT security departments.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-20050
PUBLISHED: 2018-12-10
Mishandling of an empty string on the Jooan JA-Q1H Wi-Fi camera with firmware 21.0.0.91 allows remote attackers to cause a denial of service (crash and reboot) via the ONVIF GetStreamUri method and GetVideoEncoderConfigurationOptions method.
CVE-2018-20051
PUBLISHED: 2018-12-10
Mishandling of '>' on the Jooan JA-Q1H Wi-Fi camera with firmware 21.0.0.91 allows remote attackers to cause a denial of service (crash and reboot) via certain ONVIF methods such as CreateUsers, SetImagingSettings, GetStreamUri, and so on.
CVE-2018-20029
PUBLISHED: 2018-12-10
The nxfs.sys driver in the DokanFS library 0.6.0 in NoMachine before 6.4.6 on Windows 10 allows local users to cause a denial of service (BSOD) because uninitialized memory can be read.
CVE-2018-1279
PUBLISHED: 2018-12-10
Pivotal RabbitMQ for PCF, all versions, uses a deterministically generated cookie that is shared between all machines when configured in a multi-tenant cluster. A remote attacker who can gain information about the network topology can guess this cookie and, if they have access to the right ports on ...
CVE-2018-15800
PUBLISHED: 2018-12-10
Cloud Foundry Bits Service, versions prior to 2.18.0, includes an information disclosure vulnerability. A remote malicious user may execute a timing attack to brute-force the signing key, allowing them complete read and write access to the the Bits Service storage.