A Flash Exploit (CVE-2015-5119) From the Hacking Team Leak

July 08, 2015

***Update July 12, 2015--It was recently discovered that Hacking Team possessed ...

AppDetectivePRO and DbProtect Knowledgebase Update 4.51

July 07, 2015 | SpiderLabs Researcher

This month's update for our AppDetectivePRO and DbProtect Knowledgebase is now ...

Malvertisement – A Nuclear EK Tale

July 06, 2015 | Anat (Fox) Davidi

Over the past couple of years delivering malware via advertisements, or ...

Attacking Ruby Gem Security with CVE-2015-3900

June 23, 2015 | Jonathan Claudius

A Ruby gem is a standard packaging format used for Ruby libraries and ...

SpiderLabs Radio for the Week of June 15, 2015

June 22, 2015

In this week's episode:

Trustwave 2015 Global Security Report Available Now

June 09, 2015 | Trustwave SpiderLabs

Microsoft Patch Tuesday, June 2015

June 09, 2015

It's that time of the month again, Patch Tuesday for June! With only eight ...

SpiderLabs Radio for the Week of June 1, 2015

June 08, 2015

In this week's episode:

New Episode of Punkey PoS Malware Airs

June 08, 2015 | Eric Merritt

Reruns from the 1980s are all the rage these days, and like the sitcom it's ...

AppDetectivePRO and DbProtect Knowledgebase Update 4.50

June 04, 2015 | SpiderLabs Researcher

This month's update for our AppDetectivePRO and DbProtect Knowledgebase is now ...

Changes in Oracle Database 12c password hashes

June 02, 2015 | Martin Rakhmanov

Oracle has made improvements to user password hashes within Oracle Database ...

SpiderLabs Radio for the Week of May 25, 2015

May 29, 2015

In this week's episode:

Adventures in Social Engineering: The Evil Reference

May 29, 2015

I recently completed a social engineering gig targeting four bank locations. ...

Malicious Macros Evades Detection by Using Unusual File Format

May 27, 2015 | Rodel Mendrez

A couple of months ago we observed an influx of XML spam attachments that were ...

[Honeypot Alert] Fritz!Box – Remote Command Execution Exploit Attempt

May 26, 2015

Our web honeypots picked up some exploit attempts for a remote command ...

SpiderLabs Radio for the Week of May 11, 2015

May 15, 2015

In this week's episode:

Microsoft Patch Tuesday, May 2015

May 12, 2015

May's Patch Tuesday is upon us and with it comes three Critical and eleven ...

AppDetectivePRO and DbProtect Knowledgebase Update 4.49

May 12, 2015 | SpiderLabs Researcher

This month's update for our AppDetectivePRO and DbProtect Knowledgebase is now ...

SpiderLabs Radio for the Week of May 4, 2015

May 08, 2015

SpiderLabs Radio will be on hiatus this week so our host can catch up on the ...

SpiderLabs Radio for the Week of April 27, 2015

May 01, 2015

In this week`s episode:

Bedep trojan malware spread by the Angler exploit kit gets political

April 30, 2015 | Rami Kogan

We recently observed what seems to be a group of cybercriminals helping spread ...

SAP Adaptive Server Enterprise Vulnerabilities discussed @RSAC

April 28, 2015

Last week I gave a talk at RSA USA 2015 on SAP Adaptive Server Enterprise ...

Open Challenge: Ruby YAML.load(YOUR_STRING_HERE) == RCE?

April 27, 2015 | Jonathan Claudius

For some, the challenge may already be quite clear by the title of this post, ...

SpiderLabs Radio for the Week of April 20, 2015

April 26, 2015

In this week's episode it's all things RSA Conference. I'll be discussing two ...

CVE-2014-6284 - 'Probe' login access vulnerability in SAP ASE

April 23, 2015

The SpiderLabs team at Trustwave published a new advisory today which details ...

Cryptowall and phishing delivered through JavaScript Attachments

April 20, 2015 | Brian Bebeau

While most emails with malicious attachments seem to be zipped Windows ...

SpiderLabs Radio for the Week of April 13, 2015

April 17, 2015

In this week's episode:

New POS Malware Emerges - Punkey

April 15, 2015 | Eric Merritt

During a recent United States Secret Service investigation, Trustwave ...