Grace Hopper Celebration of Women in Computing Conference

"Grace Hopper Celebration is the world’s largest tech conference for women and nonbinary people. It’s run by us, AnitaB.org, a nonprofit that works toward a future where technology is built by and for the people and societies who use it. Our organization started because of a trailblazing computer scientist named Anita Borg. Since the first GHC in 1994, we’ve continued the work to connect, inspire, and guide nonbinary people and women in tech, and we invite you to join us in-person OR virtually to see what it’s all about!"

22nd ACM/IEEE International Symposium on Formal Methods and Models for System Design

"MEMOCODE brings together researchers and practitioners interested in formal methods for system design and development, to exchange ideas, research results and lessons learned. The symposium focuses on the foundations and applications of formal methods in the development of hardware, firmware, middleware, and application software for systems, ranging from single embedded devices to highly networked cyber-physical systems and the Internet of Things."

Topics of interest include, but are not limited to security.

"LiteSpeed Cache Plugin Vulnerability Exposes Millions of WordPress Sites to Attacks"

"LiteSpeed Cache Plugin Vulnerability Exposes Millions of WordPress Sites to Attacks"

According to security researchers at Patchstack, a vulnerability in the popular LiteSpeed Cache plugin for WordPress could allow attackers to retrieve user cookies and potentially take over websites.  The issue, tracked as CVE-2024-44000, exists because the plugin may include the HTTP response header for set-cookie in the debug log file after a login request.  The researchers noted that because the debug log file is publicly accessible, an unauthenticated attacker could access the information exposed in the file and extract any user cookies stored in it.

Submitted by Adam Ekwall on

"Rapid Growth of Password Reset Attacks Boosts Fraud and Account Takeovers"

"Rapid Growth of Password Reset Attacks Boosts Fraud and Account Takeovers"

According to security researchers at LexisNexis Risk Solutions, as many as one in four password reset attempts from desktop browsers are fraud.  The researchers found that there are 70,000 password reset attacks in the UK every week, with fraudsters aiming to take over individuals’ online accounts.  This includes changing users’ passwords and phone numbers and locking them out of services.  These “detail change” attacks rose by 232% in 2023.  Criminal hackers then use the personal information from accounts for further fraud.

Submitted by Adam Ekwall on
Subscribe to