News
-
"Netflow in the Era of EDR and Cloud: Helicopter Parenting for Your Network"As opportunities for network data collection increase and usage patterns change, "network parenting" methods must evolve. People continue to make mistakes despite well-defined security policies, technical safeguards, and extensive user education, and…
-
"Intel Insiders Go Undercover Revealing Fresh Details Into NoName Hacktivist Operations"In an exclusive Black Hat interview with Cybernews, two Radware threat researchers posing as pro-Russian sympathizers disclose new information about the inner workings of the cyberterrorist group NoName057(16). These security gurus have proven firsthand…
-
"US Cyber Safety Board to Review Cloud Attacks"The US government recently announced that the DHS's Cyber Safety Review Board (CSRB) is going to conduct a review on malicious attacks targeting cloud environments. The initiative will focus on providing recommendations for government, industry,…
-
"Google Chrome to Shield Encryption Keys From Promised Quantum Computers"Google has deployed a hybrid Key Encapsulation Mechanism (KEM) to protect symmetric encryption secret sharing while establishing secure Transport Layer Security (TLS) network connections. Devon O'Brien, the technical program manager for Chrome security,…
-
"Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking"Synack Red Team Members discovered several vulnerabilities in the ScrutisWeb ATM fleet monitoring software made by French company Iagona that could be exploited to remotely hack ATMs. The vendor patched the vulnerabilities in July 2023 with the…
-
"Hackers Rig Casino Card-Shuffling Machines for 'Full Control' Cheating"Joseph Tartaro, a researcher and consultant for the security company IOActive, along with IOActive colleagues Enrique Nissim and Ethan Shackelford, presented the findings of their months-long investigation into the Deckmate, the most widely used…
-
"Alberta Dental Services Security Breach Exposes 1.47M Records"Alberta Dental Service Corporation (ADSC) has recently revealed that nearly 1.47 million individuals have been affected by a data breach that occurred between May 7 and July 9, 2023. ADSC administers dental benefits through various programs, and…
-
"Nine Flaws in CyberPower and Dataprobe Solutions Expose Data Centers to Hacking"Multiple vulnerabilities affecting CyberPower's PowerPanel Enterprise Data Center Infrastructure Management (DCIM) platform and Dataprobe's iBoot Power Distribution Unit (PDU) were discovered by researchers at the Trellix Advanced Research Center. An…
-
"As Phishing Gets Even Sneakier, Browser Security Needs to Step Up"Phishing attacks are becoming increasingly sophisticated, requiring more advanced detection methods. Din Serussi, manager of the incident response group at Perception Point, explained that this is because modern forms of phishing are more difficult to…
-
"Macs Are Getting Compromised to Act as Proxy Exit Nodes"AdLoad malware has been targeting macOS systems for over five years. It is now delivering a new payload that, unbeknown to the owners, enlisted their systems in a residential proxy botnet. Many devices are infected, according to threat intelligence…
-
"Ford Says Cars With Wi-Fi Vulnerability Still Safe to Drive"Ford warns of a buffer overflow vulnerability in the SYNC3 infotainment system used in many Ford and Lincoln vehicles, which could enable Remote Code Execution (RCE), but claims that vehicle safety is unaffected. SYNC3 is a modern infotainment system…
-
"Next-Gen OSDP Was Supposed to Make It Harder to Break in to Secure Facilities. It Failed."Researchers have uncovered a set of vulnerabilities that compromise a next-generation protocol designed to prevent the hacking of access control systems used at secure facilities on US military bases and buildings owned by federal, state, and local…