Stolen D-Link Certificate Used to Digitally Sign Spying Malware

Malware campaign misusing stolen valid digital certificates from Taiwanese tech-companies to sign their malware and making them look like legitimate applications. Digital certificates issued by a trusted certificate authority are used to cryptographically sign computer applications and software and are trusted by your computer for execution of those programs without any warning messages. The Stuxnet…

Thousands of Mobile Apps Expose Their Unprotected Firebase Hosted Databases

Mobile security researchers have discovered unprotected Firebase databases of thousands of iOS and Android mobile applications exposed over 100 million data records. Google's Firebase service does not secure user data by default, requiring developers to explicitly implement user authentication on all database rows and tables to protect their databases from unauthorized access. Researchers scanned over…

