Developsec: Developing Security Awareness

Newscast - Sept. 23, 2015

Informações:

Synopsis

James breaks down a few news stories from the previous week.  The following stories were discussed, including some brief points.$1 million bounty for iOS 9 hack http://www.wired.com/2015/09/spy-agency-contractor-puts-1m-bounty-iphone-hack/Zerodium announced 1 million dollar bounty for hack that can take over an iOS device remotely, via web page, vulnerable app or text messageTerms of offer demand that bug not be reported to Apple or publicly disclosedNot uncommon for iOS bugs to fetch big moneyRare malware outbreak hits some Apple apps http://www.usatoday.com/story/tech/2015/09/21/apple-china-hack-app-store-malware--xcode-ghost/72572190/Some developers used fake versions of XCode to create applicationsDesigned to steal user passwordsReportedly little danger to US iphone users unless using Chinese social media apps.Important to use software from trusted sources.Comcast to Pay $33 million over Privacy Breach http://www.huffingtonpost.com/entry/comcast-to-pay-over-privacy-breach_55fb30d7e4b0fde8b0cd9fe475,000 na