Tech

Microsoft digitally signs malicious rootkit driver

Enlarge (credit: Getty Images) Microsoft gave its digital imprimatur to a rootkit that decrypted encrypted communications and sent them to attacker-controlled servers, the company and outside researchers said. The blunder allowed the malware to be installed on Windows machines without users receiving a security warning or having to take additional steps. For the past 13 […]

Tech

Hackers can mess with HTTPS connections by sending data to your email server

Enlarge (credit: Getty Images) When you visit an HTTPS-protected website, your browser doesn’t exchange data with the webserver until it has ensured that the site’s digital certificate is valid. That prevents hackers with the ability to monitor or modify data passing between you and the site from obtaining authentication cookies or executing malicious code on […]

Tech

OpenSSL fixes high-severity flaw that allows hackers to crash servers

Enlarge (credit: Getty Images) OpenSSL, the most widely software library for implementing website and email encryption, has patched a high-severity vulnerability that makes it easy for hackers to completely shut down huge numbers of servers. OpenSSL provides time-tested cryptographic functions that implement the Transport Layer Security protocol, the predecessor to Secure Sockets Layer that encrypts […]