News
  • "Turla’s ‘Crutch’ Backdoor Leverages Dropbox in Espionage Attacks"
    Researchers have found a previously undocumented backdoor, and document stealer, which is being used by the Russian-speaking Turla advanced persistent threat espionage group.  The researchers are calling the malware "Crutch."  The malware can…
  • "Which Security Practices Lead to Best Security Outcomes?"
    According to a recent Cisco report,  a proactive technology refresh and a well-integrated technology stack are two security practices most likely than others to help organizations create a security culture, manage top risk, prevent security…
  • "New Graph-Based Statistical Method Detects Threats To Vehicular Communications Networks"
    Researchers at the University of Maryland, Baltimore County (UMBC) and the University of Michigan-Dearborn worked together to develop a technique for detecting breaches in the security of vehicular communications networks. The Controller Area Network (…
  • "Half of Docker Hub Images Feature Critical Flaws"
    Researchers at Prevasio scanned all four million images hosted at Docker Hub, the world’s most popular repository service for Linux-based containers. They found that over half of the publicly available Docker Hub container images contain at least one…
  • HoTSoS 2021: Meet the Program Committee Members!
    Meet the HoTSoS 2021 Team: Program Committee Members The HoTSoS Symposium is growing every year, and with it, we have decided to expand our Program Committee this year. For the next few weeks we will be creating news items introducing different Chairs…
  • HoTSoS 2021: Social Media Chair
    Meet the HoTSoS 2021 Team: Social Media Chair HoTSoS is just around the corner again, and introductions to the 2021 Program Committee are in order. First up on the docket is John Symons (KU)! John will be serving as our Social Media Chair and we…
  • "Google Researcher Demonstrates iPhone Exploit With Wi-Fi Takeover"
    A security researcher with Google's Project Zero discovered a vulnerability that could have allowed hackers to take over a person's iPhone without having to trick victims into clicking any malicious links or downloading malware. The exploitation of this…
  • HoTSoS 2021: Works-in-Progress Co-Chairs
    Meet the HoTSoS 2021 Team: Works-in-Progress Co-Chairs Kurt Kelville (MIT) and Aron Laszka (University of Houston) are our Works-in-Progress Co-Chairs for the 2021 Symposium. Happy to have these two on the Program Committee Team! About the…
  • "Malicious NPM Packages Used to Install njRAT Remote Access Trojan"
    The open-source security firm Sonatype found malicious NPM packages that install the njRAT remote access trojan. NPM, short for Node Package Manager, is a packet manager for the JavaScript programming language. Using njRAT, a threat actor can get full…
  • "Driven by Ransomware, Cyber Claims Rise in Number & Value"
    The insurance company Allianz recently released a report highlighting cyberattacks and security incidents as the top business risk for companies and the rise in cyber insurance claims. According to the firm's "Trend in Cyber Risk" report, the number of…
  • "Electronic Medical Records Cracked Open by OpenClinic Bugs"
    Researchers at Bishop Fox have discovered four vulnerabilities in the OpenClinic application used for sharing electronic medical records.  Its latest version is 0.8.2 and was released in 2016.  According to researchers, the four bugs involve…
  • HoTSoS 2021: Poster Co-Chairs
    Meet the HoTSoS 2021 Team: Poster Co-Chairs Welcome our "Poster Co-Chairs" for the upcoming HoTSoS Symposium Khir Henderson (Morgan State University) and Aleecia McDonald (CMU)! About the Chairs