News
-
"New CISA Advisories Warn of ICS Vulnerabilities"The US Department of Homeland Security's (DHS) Cybersecurity and Infrastructure Security Agency (CISA) has issued advisories warning of ICS vulnerabilities in the Horner Automation Cscape software and the Mitsubishi Electric GOT. The control system…
-
"One In Six Android Phones In Developing Markets Infected"The mobile technology provider Upstream released a new report exploring the state of the mobile market during the COVID-19 pandemic and delving into the challenges that are expected to be experienced in 2021 regarding fraud and malware. The report…
-
"Malware and Ransomware Gangs Have Found This New Way to Cover Their Tracks"The cybersecurity firm Sophos reports a significant increase in malware using the Transport Layer Security (TLS) to hide malware communications. Although HTTPS helps prevent man-in-the-middle (MITM) attacks, attempts at impersonating trusted websites,…
-
"The Riskiest Smart City Technologies"A new study by researchers at the University of California, Berkeley, found that smart traffic signals, surveillance systems, and emergency alerts are the riskiest smart city technology solutions. The researchers surveyed 76 cybersecurity experts, asking…
-
"Stallone Classic a Password Favorite"Security researchers at Specops went through more than 800 million breached passwords to determine which big-screen hits were used the most in passwords. The selection was a subset of a list of 2 billion passwords that have appeared in breached lists.…
-
"Costco Issues Scam Warning"Costco Wholesale Corporation is warning its customers to be wary of more than a dozen digital scams. On its website, they published screenshots of 14 "prominent fraudulent emails, texts, and posts" in which cyber-criminals are impersonating Costco…
-
"Threat Actors Exploiting 3 SonicWall Email Security Vulnerabilities"Users of SonicWall Hosted Email Security (HES) are urged to apply patches for three zero-day vulnerabilities found in the software. This platform provides inbound and outbound security protection and helps combat email-borne threats. The first zero-day…
-
"Attackers Are Exploiting Zero-Day in Pulse Secure VPNs to Breach Orgs"Researchers at FireEye Mandiant have warned of the exploitation of one zero-day vulnerability and several old flaws in widely deployed Pulse Connect Secure (PCS) Virtual Private Network (VPN) devices to compromise defense, government, and financial…
-
"Hundreds of Networks Reportedly Hacked In Codecov Supply-Chain Attack"Additional details have been shared about the recent Codecov system breach, which is now being compared to the SolarWinds hack. Codecov is a San Francisco-based company that offers code coverage and software testing tools. The scope of this system breach…
-
"FIDO Announces New Security Standard for IoT Devices"The FIDO Alliance has developed a new security standard for Internet of Things (IoT) devices. The open industry association said the move would help address the security, cost, and complexity challenges involved in deploying IoT devices at scale, thereby…
-
"Dating Service Suffers Data Breach"Men's social networking website and online dating application Manhunt has suffered a data breach. The 20-year-old site was compromised in a cyber-attack that took place in February 2021. The breach was discovered on March 2nd, and an…
-
"FBI Operation Removes Backdoors from Hacked Exchange Servers in the US"The US Department of Justice (DOJ) recently revealed that the FBI carried out a court-approved operation to remove malicious web shells from compromised Microsoft Exchange email servers across the US. These web shells are used for backdoor access to the…