News
-
"Planting Ideas in a Computer's Head"Researchers at ETH Zurich have discovered a new attack on AMD computer chips in which the attacker secretly plants an "idea" within the computer. It was possible to leak data from anywhere in the computer's memory using this attack. The team led by Kaveh…
-
"CyLab Faculty, Students to Present at the 32nd USENIX Security Symposium"Carnegie Mellon University (CMU) faculty and students are presenting their research at the 32nd USENIX Security Symposium. The event brings together experts focused on highlighting the latest advancements in the security and privacy of computer systems…
-
"Microsoft Patches 80+ Flaws Including Two Zero-Days"Microsoft recently released updates for 87 vulnerabilities, including two that are being actively exploited in the wild. The first zero-day was publicly disclosed last month when Microsoft initially announced a series of zero-day vulnerabilities in…
-
"Dr. Hisham Kholidy Receives $1.1 Million Contract from Air Force Research Lab to Improve Security Across 5G Open Architecture"Dr. Hisham A. Kholidy, associate professor and chair of the Network and Computer Security Department at SUNY Polytechnic Institute, has been awarded a nearly $1.1 million contract by the Air Force Research Laboratory (AFRL) for a 36-month project aimed…
-
"Intel Addresses 80 Firmware, Software Vulnerabilities"Intel recently released a total of 46 new security advisories to inform customers about 80 vulnerabilities affecting the company's firmware and software. The most serious of the flaws, based on their CVSS score, are 18 high-severity issues allowing…
-
"NIST Researchers Explore Best Practices for Talking to Kids About Online Privacy"It is essential for parents to encourage their children to use online technology safely. According to recent research conducted by scientists at the National Institute of Standards and Technology (NIST), parents should talk to their children about online…
-
"UK Electoral Commission Breach Exposes Voter Data of 40 Million Britons"The UK Electoral Commission has disclosed a "complex" cyberattack on its systems that went undetected for more than a year, allowing threat actors access to 40 million people's voter data spanning years. According to the regulator, the incident was…
-
"Interpol Takes Down 16shop Phishing-as-a-Service Platform"The 16shop Phishing-as-a-Service (PhaaS) platform has been taken down in a joint operation involving Interpol and cybersecurity companies. PhaaS platforms provide cybercriminals with a one-stop shop for launching phishing attacks. These platforms usually…
-
"Raft of TETRA Zero-Day Vulnerabilities Endanger Industrial Communications"Following the discovery of vulnerabilities in the Terrestrial Trunked Radio (TETRA) communications protocol, which is used by Industrial Control Systems (ICS) worldwide, researchers have uncovered multiple additional zero-day vulnerabilities in a…
-
"Downfall Attacks Can Gather Passwords, Encryption Keys From Intel Processors"Various Intel Core processors and the devices that use them are vulnerable to "Downfall," a new class of attacks stemming from CVE-2022-40982, which enables attackers to access and steal sensitive data such as passwords, encryption keys, and private data…
-
"Virtual Reality Headsets Are Vulnerable to Hackers"According to computer scientists at the University of California, Riverside (UCR), the headset hardware and virtual keyboard interfaces associated with Augmented Reality (AR) and Virtual Reality (VR) present new opportunities for hackers. The metaverse…
-
"CyLab Research to Be Presented at 2023 SOUPS"Carnegie Mellon University (CMU) faculty and students are presenting their research at the 2023 Symposium on Usable Privacy and Security (SOUPS). The event, founded by CyLab Director Lorrie Cranor and first hosted by CMU in 2005, continues bringing…