News
-
"High-Severity Flaws Uncovered in Atlassian Products and ISC BIND Server"Atlassian and the Internet Systems Consortium (ISC) have disclosed multiple security vulnerabilities in their products that could be exploited for Denial-of-Service (DoS) and Remote Code Execution (RCE).
-
"Hotel Hackers Redirect Guests to Fake Booking Website to Steal Cards"Researchers have found a multi-step information-stealing campaign in which hackers infiltrate the systems of hotels, booking sites, and travel agencies, and then use their access to take customers' financial data.
-
"Ransomware Cyber Insurance Claims up by 27%"According to Coalition, the frequency of cyber insurance claims rose by 12 percent in the first half of 2023. Early in 2023, Coalition discovered that the frequency and severity of business claims increased across all revenue bands.
-
"Mysterious 'Sandman' APT Targets Telecom Sector With Novel Backdoor"The list of Advanced Persistent Threat (APT) actors against which telecommunications companies must secure their data and networks now includes an additional sophisticated adversary.
-
SoS Reviews & Outreach SubscriptionThe SoS Reviews and Outreach highlights some of the exciting research, news, and events that impact our technical community.
-
"The Urgent Need for Memory Safety in Software Products"The secure-by-design white paper from the US Cybersecurity and Infrastructure Security Agency (CISA) outlines three fundamental principles for software manufacturers: accept responsibility for customer security outcomes, embrace radical transpare
-
"FBI, CISA Issue Joint Warning on 'Snatch' Ransomware-as-a-Service"Cybersecurity advisories issued by the FBI and the US Cybersecurity and Infrastructure Security Agency (CISA) indicate that a specific threat warrants the immediate attention of organizations in the line of fire.
-
The Science of Security 5 Hard ProblemsThe Science of Security 5 Hard ProblemsThe Principal Investigators (PIs) of the Science of Security Lablets in collaboration with NSA Research, developed the 5 Hard Problems as a measure to establish the beginnings of a common language and gau
-
"Fake WinRAR PoC Spread VenomRAT Malware"Unknown threat actors have published a fake proof-of-concept (PoC) exploit for CVE-2023-4047, a recently patched Remote Code Execution (RCE) flaw in WinRAR, in order to spread the VenomRAT malware.
-
"Data Breach Reveals Distressing Info: People Who Order Pineapple on Pizza"Pizza Hut Australia recently announced that 190,000 customer's data had been accessed. The information unauthorized entities accessed included customers' names, delivery addresses, email addresses, phone numbers, and order histories.