8 New HTTP/2 Implementation Flaws Expose Websites to DoS Attacks

Various implementations of HTTP/2, the latest version of the HTTP network protocol, have been found vulnerable to multiple security vulnerabilities affecting the most popular web server software, including Apache, Microsoft’s IIS, and NGINX. Launched in May 2015, HTTP/2 has been designed for better security and improved online experience by speeding up page loads. Today, over hundreds of…

Reigning in S3 Security Amid Magecart Campaign

If you’re up on the latest in cybersecurity, you’ve heard of Magecart, a sort of cybercrime “group of groups” that digitally skims credit card data from compromised ecommerce sites. Widely publicized breaches from companies like British Airways, Newegg, and Ticketmaster are considered to be the work of Magecart, which remains at large, although security researchers…

Verizon is selling Tumblr – TechCrunch

The Daily Crunch is TechCrunch’s roundup of our biggest and most important stories. If you’d like to get this delivered to your inbox every day at around 9am Pacific, you can subscribe here. 1. Verizon is selling Tumblr to WordPress.com parent, Automattic It’s been six years since Yahoo acquired the popular blogging platform for more…