Analysis of Stardust period tracking app, the top free app on the US App Store on June 25, shows it shares users' phone numbers with analytics company Mixpanel
This Privacy Policy explains how Stardust App LLC. Tweets: @motherboard : Menstrual tracking app Stardust is one of Apple's top three most-downloaded free apps right now. It's also one of few apps tha...
Report: since January, a group has been hijacking Tor exit relay nodes to perform SSL stripping attacks, peaking in May when the group ran 23.95% of all nodes
namely multiple bitcoin mixer services. They replaced bitcoin addresses in HTTP traffic to redirect transactions to their wallets instead of the user provided bitcoin address.” https://twitter.com/......
Cloudflare expands its government warrant canaries, claiming it's never handed over its SSL keys or customers' SSL keys, as many firms abandon their canaries
Zack Whittaker / TechCrunch :
Starting today, Chrome will display a full-page warning when an HTTPS website hasn't logged its SSL certificate in a public Certificate Transparency log
Catalin Cimpanu / BleepingComputer.com :
Inside VTech hack: poorly encrypted passwords, security Q&As in plain text, kid data matched to parent addresses, no SSL, outdated software on many sites, more
When children are breached - inside the massive VTech hack — I suspect we're all getting a little bit too conditioned to data breaches lately.
US Department of Homeland Security urges Lenovo customers to remove Superfish software, citing the risk of SSL spoofing
Jim Finkle / Reuters :
Microsoft posts critical patch for huge Windows vulnerability that affects all modern machines
Remember Heartbleed? You know, the exploit in SSL that was so bad it got its own brand? Microsoft may have an issue of similar scale on its hands with a critical patch issued via Windows Update toda...
Facebook now available through Tor browsers at an onion address, SSL still enabled
Why Facebook Just Launched Its Own ‘Dark Web’ Site — Facebook has never had much of a reputation for letting users hide their identities online. But now the world's least anonymous website has just...
Apple to drop SSL 3.0 support for push notifications on Oct. 29 due to POODLE vulnerability
In response to a recently discovered vulnerability with SSL version 3.0, Apple on Wednesday announced through its developer website that it will be removing support for the protocol on its Apple Push ...
Google discloses SSL 3.0 vulnerability POODLE, recommends clients and servers support TLS_FALLBACK_SCSV to prevent protocol downgrade attacks, says Chrome does
This POODLE bites: exploiting the SSL 3.0 fallback — Today we are publishing details of a vulnerability in the design of SSL version 3.0.