Java Crypto Bug Allows Forging of Signatures, Certificates
A critical bug in Java's implementation of ECDSA (CVE-2022-21449) can allow an attacker to forge a signature or certificate to...
He is one of the co-founders of Threatpost and previously wrote for TechTarget and eWeek, when magazines were still a thing that existed. Dennis enjoys finding the stories behind the headlines and digging into the motivations and thinking of both defenders and attackers. His work has appeared in The Boston Globe, The Improper Bostonian, Harvard Business School’s Working Knowledge, and most of his kids’ English papers.
A critical bug in Java's implementation of ECDSA (CVE-2022-21449) can allow an attacker to forge a signature or certificate to...
The U.S. government and military is looking to attract and retain more talented cyber operators to keep pace with the evolving...
The U.S. has indicted four Russians it alleges are affiliated with the FSB and GRU units responsible for the Triton and...
Google is incorporating a new biometric API into Android P to support the use of strong biometrics.
Three mobile carriers said they will no longer sell customer location data to aggregators.
Lawmakers are planning to introduce a privacy "bill of rights" that will include some elements of the new GDPR regulation.
A convenient feature in macOS called QuickLook can leak information about files that users preview, even in encrypted containers.
A bug from the 1990s allows attackers to spoof signatures on some encrypted emails in GnuPG and other tools.