News
  • "Researchers Uncover Ways to Break the Encryption of 'MEGA' Cloud Storage Service"
    Researchers at ETH Zurich found a number of critical security vulnerabilities in the MEGA cloud storage service that could allow malicious actors to break the confidentiality and integrity of user data. The researchers explain how MEGA's system does not…
  • "Google Patches 14 Vulnerabilities With Release of Chrome 103"
    Google recently released Chrome 103 to the stable channel with patches for 14 vulnerabilities, including nine reported by external researchers.  The most severe vulnerability is CVE-2022-2156, which is described as a critical-severity use-after-free…
  • "Web3 Wallets Targeted by Chinese Hackers; 'SeaFlower' Using Cloned Websites to Trick Crypto Traders"
    A Chinese hacking group has been observed using a low-tech but effective method to steal money from Web3 wallets, which involves distributing altered versions with holes programmed into them. The hackers cloned legitimate wallet distribution sites,…
  • "Japanese City Loses Memory Drive With Information on All 460,000 Residents"
    The city of Amagasaki in western Japan recently discovered that it had lost a USB flash drive containing the personal information of its roughly 460,000 residents.  The lost data included the residents' names, addresses, and dates of birth, as well…
  • "Five Ransomware Strains Have Been Linked to Bronze Starlight Activities"
    In an effort to conceal their genuine espionage activities, a group of cyberattackers with probable state support adopted a new loader to disseminate five different types of ransomware. Secureworks' cybersecurity experts released new research on HUI…
  • "Apple Game Center is Affected by Critical Parse Server Vulnerability"
    A Parse Server software flaw has led to the discovery of an authentication bypass affecting Apple Game Center. The open-source Parse Server project, which is available on GitHub, offers push notification functionality for iOS, macOS, Android, and tvOS.…
  • "US Subsidiary of Automotive Hose Maker Nichirin Hit by Ransomware"
    Recently a US subsidiary of Nichirin, a Japanese company that makes hoses for the automotive industry, was hit by ransomware.  The attack was aimed at Nirchirin-Flex USA and was discovered on June 14th.  Other Nichirin subsidiaries do not…
  • "Sniffing Out Your Identity With Breath Biometrics"
    In collaboration with the University of Tokyo, researchers from Kyushu University's Institute for Materials Chemistry and Engineering have developed an olfactory sensor for biometric authentication using breath. The artificial 'nose' they developed can…
  • "A Simple Tool To Make Websites More Secure and Curb Hacking"
    An international team of researchers has created a scanning tool to reduce the vulnerability of websites to hacking and cyberattacks. The black box security assessment prototype, which was tested by engineers in Australia, Pakistan, and the UAE,…
  • "Chinese Hackers Target Script Kiddies With Info-stealer Trojan"
    Researchers at Check Point have discovered a new campaign associated with the Chinese "Tropic Trooper" hacking group, which employs a novel loader known as Nimbda and a new variant of the Yahoyah Trojan. The Trojan is included in a greyware tool called '…
  • "Cloud Email Threats Soar 101% in a Year"
    The number of email-borne cyber threats blocked by Trend Micro surged by triple digits last year, highlighting the continued risk from conventional attack vectors.  Trend Micro stopped over 33.6 million such threats reaching customers via cloud-…
  • "Less Than Half of Organizations Have Open Source Security Policy"
    Security researchers at the Linux Foundation have discovered that over two-fifths (41%) of organizations do not have confidence in their open source security, with only 49% claiming to even have a policy.  The study was co-sponsored by Snyk, and…