Multiple Passcode Bypass Vulnerabilities Discovered in iOS 9

Threat: Multiple Passcode Bypass Vulnerabilities Discovered in iOS 9 Solution: Disable the Siri module and Events Calendar without passcode, along with the public Control Panel with the timer and world clock. Users should also activate the weather app to prevent the redirect. URL: http://www.securityweek.com/multiple-passcode-bypass-vulnerabilities-discovered-ios-9 This is a pretty big vulnerability that requires very little technical […]

DROWN attack places more than 11 million websites at risk.

Threat: DROWN attack places more than 11 million websites at risk. Solution: OpenSSL 1.0.2 users should upgrade to OpenSSL 1.0.2g and OpenSSL 1.0.1 should upgrade to OpenSSL 1.0.1s. If you are using another version of OpenSSL, you should move to the newer versions. You should also ensure SSLv2 is disabled, as well as make sure […]

Pirated App Store client for iOS found on Apple’s App Store

Threat: Pirated App Store client for iOS found on Apple’s App Store Solution: Do not install software from unapproved third party app stores as the applications are riskware and some of the applications installed may contain malware. URL: https://www.helpnetsecurity.com/2016/02/22/pirated-app-store-client-ios-found-apples-app-store/ An app called “Happy Daily English” available in the Appale App Store has been revealed to […]