Researchers show the WPAD protocol can be used to steal user data despite HTTPS or VPN connections
Many of the flaws could allow for remote code execution attacks through websites and malicious documents
Qualcomm has released patches for the flaws, but Google included only three of them in its Android security updates so far
Researcher shows that variations in voltage and execution times can expose the correct access codes for electronic safe locks
The technique, which doesn't break the original file's signature, can allow malware to bypass antivirus detection
The company will pay between $25,000 and $200,000 for exploits
Lack of authentication and encryption allow attackers to easily steal payment card data and PIN numbers from point-of-sale systems.
The new device generates an electromagnetic field that tricks card readers
The number of malicious URLs in Brazil surged by 83 percent from April to June
Its free availability makes it likely that it will be used in attacks soon, researchers say