Technical

Reliably compromising Ubuntu desktops by attacking the crash reporter
https://donncha.is/2016/12/compromising-ubuntu-desktop/

Project Wycheproof
https://security.googleblog.com/2016/12/project-wycheproof.html
https://github.com/google/wycheproof

Methbot
http://www.whiteops.com/methbot
http://w-ops.com/methbot_wp

Announcing Request for Nominations for Public-Key Post-Quantum Cryptographic Algorithms
https://www.federalregister.gov/documents/2016/12/20/2016-30615/announcing-request-for-nominations-for-public-key-post-quantum-cryptographic-algorithms
https://www.gpo.gov/fdsys/pkg/FR-2016-12-20/pdf/2016-30615.pdf

Koolova Ransomware Decrypts for Free if you Read Two Articles about Ransomware
https://www.bleepingcomputer.com/news/security/koolova-ransomware-decrypts-for-free-if-you-read-two-articles-about-ransomware/

Top 50 Products By Total Number Of “Distinct” Vulnerabilities in 2016
http://www.cvedetails.com/top-50-products.php?year=2016

Avast cyber security predictions for 2017
https://blog.avast.com/avast-cyber-security-predictions-for-2017

FireCrypt Ransomware Comes With a DDoS Component
https://www.bleepingcomputer.com/news/security/firecrypt-ransomware-comes-with-a-ddos-component/

Tech support scam page triggers denial-of-service attack on Macs
https://blog.malwarebytes.com/101/mac-the-basics/2017/01/tech-support-scam-page-attempts-denial-of-service-via-mail-app/

MongoDB Apocalypse: Professional Ransomware Group Gets Involved, Infections Reach 28K Servers
https://www.bleepingcomputer.com/news/security/mongodb-apocalypse-professional-ransomware-group-gets-involved-infections-reach-28k-servers/

Browser Autofill Phishing
https://github.com/anttiviljami/browser-autofill-phishing

Misconfigured server reveals Cerber ransomware targets users in Europe and North America
https://blog.avast.com/misconfigured-server-reveals-cerber-ransomware-targets-users-in-europe-and-north-america

WhatsApp vulnerability allows snooping on encrypted messages
https://www.theguardian.com/technology/2017/jan/13/whatsapp-backdoor-allows-snooping-on-encrypted-messages
https://tobi.rocks/2017/01/whatsapp-vulnerability-bug-or-backdoor/
https://whispersystems.org/blog/there-is-no-whatsapp-backdoor/

bBrowser Fingerprinting via OS and Hardware Level Features[/b]
https://drive.google.com/file/d/0B4s900Byvv1ibW5uc1NiU2g3R3c/view

CryptoSearch Finds Files Encrypted by Ransomware, Moves Them to New Location
https://www.bleepingcomputer.com/news/security/cryptosearch-finds-files-encrypted-by-ransomware-moves-them-to-new-location/
https://download.bleepingcomputer.com/demonslay335/CryptoSearch.zip

Who is Anna-Senpai, the Mirai Worm Author?
https://krebsonsecurity.com/2017/01/who-is-anna-senpai-the-mirai-worm-author/

Already on probation, Symantec issues more illegit HTTPS certificates
http://arstechnica.com/security/2017/01/already-on-probation-symantec-issues-more-illegit-https-certificates/
https://www.mail-archive.com/dev-security-policy@lists.mozilla.org/msg05455.html

Re-Hacking The Samsung Smartcam
https://blog.exploitee.rs/2017/re-hacking-the-samsung-smartcam/

Meet TorWorld, an Upcoming Tor-as-a-Service Portal
https://www.bleepingcomputer.com/news/security/meet-torworld-an-upcoming-tor-as-a-service-portal/
https://torworld.org/

VirLocker’s comeback; including recovery instructions
https://blog.malwarebytes.com/threat-analysis/2017/01/virlockers-comeback-including-recovery-instructions/