News
-
"Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking"Synack Red Team Members discovered several vulnerabilities in the ScrutisWeb ATM fleet monitoring software made by French company Iagona that could be exploited to remotely hack ATMs. The vendor patched the vulnerabilities in July 2023 with the…
-
"Hackers Rig Casino Card-Shuffling Machines for 'Full Control' Cheating"Joseph Tartaro, a researcher and consultant for the security company IOActive, along with IOActive colleagues Enrique Nissim and Ethan Shackelford, presented the findings of their months-long investigation into the Deckmate, the most widely used…
-
"Alberta Dental Services Security Breach Exposes 1.47M Records"Alberta Dental Service Corporation (ADSC) has recently revealed that nearly 1.47 million individuals have been affected by a data breach that occurred between May 7 and July 9, 2023. ADSC administers dental benefits through various programs, and…
-
"Nine Flaws in CyberPower and Dataprobe Solutions Expose Data Centers to Hacking"Multiple vulnerabilities affecting CyberPower's PowerPanel Enterprise Data Center Infrastructure Management (DCIM) platform and Dataprobe's iBoot Power Distribution Unit (PDU) were discovered by researchers at the Trellix Advanced Research Center. An…
-
"As Phishing Gets Even Sneakier, Browser Security Needs to Step Up"Phishing attacks are becoming increasingly sophisticated, requiring more advanced detection methods. Din Serussi, manager of the incident response group at Perception Point, explained that this is because modern forms of phishing are more difficult to…
-
"Macs Are Getting Compromised to Act as Proxy Exit Nodes"AdLoad malware has been targeting macOS systems for over five years. It is now delivering a new payload that, unbeknown to the owners, enlisted their systems in a residential proxy botnet. Many devices are infected, according to threat intelligence…
-
"Ford Says Cars With Wi-Fi Vulnerability Still Safe to Drive"Ford warns of a buffer overflow vulnerability in the SYNC3 infotainment system used in many Ford and Lincoln vehicles, which could enable Remote Code Execution (RCE), but claims that vehicle safety is unaffected. SYNC3 is a modern infotainment system…
-
"Next-Gen OSDP Was Supposed to Make It Harder to Break in to Secure Facilities. It Failed."Researchers have uncovered a set of vulnerabilities that compromise a next-generation protocol designed to prevent the hacking of access control systems used at secure facilities on US military bases and buildings owned by federal, state, and local…
-
"Zoom ZTP & AudioCodes Phones Flaws Uncovered, Exposing Users to Eavesdropping"Multiple security flaws in AudioCodes desk phones and Zoom's Zero Touch Provisioning (ZTP) could be exploited by an adversary to conduct remote attacks. Using the vulnerabilities discovered in AudioCodes desk phones and Zoom's ZTP feature, an external…
-
"Authorities Take Down Lolek Bulletproof Hosting Provider"Police have recently taken down a Lolek bulletproof hosting service criminals used to launch cyberattacks worldwide. The takedown was part of a coordinated effort between the Polish Central Cybercrime Bureau and the US Department of Justice (DoJ),…
-
"SwRI Micropatch Algorithm Improves Ground-To-Spacecraft Software Update Efficiency"Southwest Research Institute (SwRI) has developed an algorithm to remotely update and fix spacecraft software using less time and data than other techniques. Not only does the tool improve the overall efficiency of satellite software transmissions, but…
-
"A Puzzling Approach to Encryption"An advancement in data security is discussed in the International Journal of Information and Computer Security. The Japanese puzzle known as Sudoku promises a cryptographic system for text information, which works even in situations where there is…