The vulnerability could allow malicious apps or hackers to gain root access from a limited account
Rogue or compromised OpenSSH servers can read private SSH keys from the memory of unpatched clients
The Trojan is distributed through drive-by-download attacks that use multiple stages and non-malicious apps
The malware is based on publicly released, proof-of-concept code
The company published 9 security bulletins covering patches for 24 vulnerabilities
Google plans to ban only SHA-1-signed certificates that were issued after Jan. 1 by public certificate authorities
Security researchers are worried that critical vulnerabilities in antivirus products are too easy to find and exploit
The gang installed the malware program through the CD-ROM unit present in ATMs made by NCR
The updates are done over unencrypted connections, so are potentially vulnerable to hijacking
Researchers showed authentication and impersonation attacks against protocols that still support MD5 in some of their components