The China-based Suckfly group has used nine stolen digital certificates to sign its malicious programs since 2014
Symantec's Encryption Everywhere program will offer basic SSL/TLS certificates to domain owners for free
Attackers are using Word documents with malicious macros and PowerShell to infect computers with fileless malware, researchers warn
A patch released by Oracle in 2013 can be easily bypassed to attack the latest Java versions, security researchers said
KeRanger is based on Linux.Encoder, a flawed ransomware threat that targets Linux Web servers, researchers say
The app contains questions for assessing Web application security, infrastructure security, data center security and privacy
For some new gTLDs the ratio of malicious domains is almost 80 percent, Spamhaus says
Here are some tips to help protect your sensitive data
Nexus 3000 Series and 3500 Platform switches contain a root account with a static password that can be accessed remotely
Following FREAK and Logjam, DROWN is the third attack resulting from encryption algorithms that were deliberately weakened by the government