Zack Whittaker

Zack Whittaker is the security editor for ZDNet. You can securely reach him on Signal and WhatsApp at 646-755-8849, and his PGP fingerprint for email is: 4D0E 92F2 E36A EC51 DAAE 5D97 CB8C 15FA EB6C EEA5.

Charlie Osborne

Charlie Osborne is a cybersecurity journalist and photographer who writes for ZDNet and CNET from London. PGP Key: AF40821B | Research/security tips email: cingred@protonmail.com.

Jennifer Leggio

Jennifer Leggio has been in the security industry for 17 years as a marketer, advisor, and writer. Her focus is on security culture, including disclosure, community issues, equality in security, disruptive trends, and even marketing best practices. PGP Key: 3A708289 | She prefers other contact on Twitter via @mediaphyter.

Latest Posts

Koobface worm joins the Twittersphere

Koobface worm joins the Twittersphere

Cybercriminals are experimenting with a new feature introduced in one of the latest Koobface variants - the ability of the worm to hijack the Twitter accounts of infected users and post tweets in an attempt to infect their followers.According to researchers from TrendMicro, once the infected user attempts to log into Twitter, Koobface hijacks the session and posts a tweet on behalf of the user.

July 7, 2009 by in Social Enterprise

Manchester City Council pays $2.4m in Conficker clean up costs

Manchester City Council pays $2.4m in Conficker clean up costs

How severe can the impact of the Conficker worm be on a single city council that has apparently not implemented basic security solutions in place?Pretty severe according to a recently released a report entitled "Service interruption resulting from ICT disruption in February 2009" which details the financial costs of a Conficker incident affecting Manchester City Council's network - 1.

July 2, 2009 by in Security

Michael Jackson's death themed malware campaigns spreading

Michael Jackson's death themed malware campaigns spreading

The sudden death of Michael Jackson quickly opened a window of opportunity for cybercriminals to capitalize on.With a malicious spam campaign, blackhat SEO search results poisoning which is serving scareware within the first 100 search results for Michael Jackson's death, and an opportunistic participant in Zango adware's network using typosquatting, malicious activity is prone to increase during the next couple of days.

June 26, 2009 by in Social Enterprise

Secunia: Average insecure program per PC rate remains high

Secunia: Average insecure program per PC rate remains high

With the time frame for an exploit to become an inseparable part of a web malware exploitation kit shrinking, and with the average Internet user's over-confidence in an antivirus scanner's ability to detect and block exploits (Secunia: popular security suites failing to block exploits) it shouldn't come as a surprise that Secunia's recently released WorldMap shows a relatively high rate for insecure programs found on a single PC.

June 25, 2009 by in Hardware

Guy Kawasaki's Twitter account hijacked, pushes Windows and Mac malware

Guy Kawasaki's Twitter account hijacked, pushes Windows and Mac malware

The Twitter account belonging to venture capitalist and Mac evangelist Guy Kawasaki was hijacked yesterday and used to push malware to some 140,000 Twitter users. The attack (screenshot above) included a link to what purported to be a "sex tape video free download" linked to Gossip Girls star Leighton Meester but, after a series of clicks, the end result was a malicious Trojan.

June 24, 2009 by in Security

Mozilla tackles XSS vulnerabilities with new technology

Mozilla tackles XSS vulnerabilities with new technology

Mozilla's security engineers are working on new technology that promises to mitigate a large class of Web application vulnerabilities, especially the cross-site scripting (XSS) plague against modern Web browsers.The project, called Content Security Policy, is designed to shut down XSS attacks by providing a mechanism for sites to explicitly tell the browser which content is legitimate.

June 22, 2009 by in Security

Newsletters

You have been successfully signed up. To sign up for more newsletters or to manage your account, visit the Newsletter Subscription Center.
See All
See All

Top Stories