Software Vulnerabilities April 21, 2015 CVE-2015-1097: Deobfuscating iOS Kernel Pointers With an IBM X-Force-Discovered Vulnerability 4 min read - IBM's X-Force Application Security Research Team has discovered a memory disclosure vulnerability in iOS IOKit IOMobileFrameBuffer.
X-Force April 16, 2015 The Path Forward With Threat Intelligence and Sharing 3 min read - Threat intelligence sharing is becoming imperative for improving organizations' security, but it needs the right collaborative approach to be successful.
Intelligence & Analytics April 1, 2015 The Power of Community Defense: Using a Combination of Threat Intelligence, Information Sharing and Open Standards 2 min read - Using community defense, organizations can band together to promote increased information sharing to alert others about potentially dangerous threats.
Software Vulnerabilities March 25, 2015 Made for Headlines: Do Designer Vulnerabilities Compromise Security? 3 min read - As vulnerabilities are now branded with catchy names and logos, security researchers should be careful not to compromise the responsible disclosure process
X-Force March 19, 2015 Security Snowflakes: Interactive IBM X-Force Feature Visualizes Data Breach Records 4 min read - IBM X-Force recently released an interactive data breach chart that helps visualize the different types of data breaches that have been reported over time.
X-Force March 16, 2015 Are Cracks in the Digital Foundation of the Internet Crumbling the Core? 4 min read - Today, IBM released the first 2015 X-Force Threat Intelligence Quarterly, along with the announcement of the X-Force Interactive Security Incident website.
Software Vulnerabilities March 11, 2015 DroppedIn: Remotely Exploitable Vulnerability in the Dropbox SDK for Android 8 min read - IBM X-Force has discovered a vulnerability in Dropbox SDK for Android that lets attackers connect mobile apps to Dropbox accounts that they control.
Advanced Threats March 10, 2015 Understanding Regin’s Plugin Framework: Part 2 7 min read - In the second part of this two-part series, IBM's Mark Yason discusses in more depth the Regin plugin framework hosted in the dispatcher module.
Advanced Threats February 10, 2015 Reviving the Regin Dispatcher Module: Part 1 6 min read - After reviving the Regin dispatcher module, Mark Yason ended up with a malware sample that was suitable for both static and dynamic analysis.
Mainframe February 3, 2015 Infrastructure Protection for the Threats of Today and Tomorrow 3 min read - The Infrastructure Protection track at InterConnect will feature insights from the IBM X-Force Research and Development team and customer success stories.