News
-
"Most Financial Services Have Suffered COVID-Linked Cyber-Attacks"Researchers at password security firm Keeper Security commissioned the Ponemon Institue to poll over 370 UK IT security leaders who work at financial services firms as part of a larger global study and found that this past year 70% of financial services…
-
"FBI Warns of Increase in Vishing Attacks"The FBI is warning that hackers are increasingly using voice phishing, also known as vishing, to target remote workers as a way to harvest VPN and other credentials to gain initial access to corporate networks. After gaining access to the network,…
-
"Flaws in Widely Used Dnsmasq Software Leave Millions of Linux-Based Devices Exposed"Security experts from the Internet of Things (IoT) security firm JSOF have released details about a set of seven vulnerabilities collectively called DNSpooq that impact Dnsmasq, a DNS transfer client used for many Linux-based systems such as routers and…
-
"'Chimera' Threat Group Abuses Microsoft & Google Cloud Services"Researchers with NCC Group and Fox-IT have detailed a new threat group called Chimera. According to the researchers, this group targets Microsoft and Google cloud services to achieve goals aligned with the Chinese government's interests. Chimera tries to…
-
"Highway Safety Agency Wants Car Makers to Know What's in Their Software"The National Highway Traffic Safety Administration (NHTSA) released a new draft of voluntary cybersecurity best practices with a focus on secure software use in vehicles. The updated draft incorporates comments gathered from a 2016 best practices…
-
"'Scam-as-a-Service' Scheme Spreads"Researchers at the global threat hunting and adversary-centric cyber intelligence company Group-IB discovered a Russian-speaking scam-as-a-service operation called Classiscam. This operation, which started two years ago, now involves 40…
-
"Researchers Estimate Ryuk Ransomware Operations to Be Worth $150 Million"Researchers from HYAS and Advanced Inteligence LLC looked at transactions for known Bitcoin addresses associated with Ryuk ransomware and have concluded that the Ryuk ransomware criminal enterprise is worth more than $150,000,000. Ryuk ransomware…
-
"NSA: DNS-over-HTTPS Provides 'False Sense of Security'"DNS-over-HTTPS (DoH) continues to grow in popularity among enterprises to improve privacy and integrity. The privacy protocol is supposed to help prevent eavesdropping and the manipulation of DNS traffic. However, the US National Security Agency (NSA) is…
-
"Google Boots 164 Apps from Play Marketplace for Shady Ad Practices"Researchers at WhiteOps discovered 164 apps that mimic legitimate apps to garner downloads to trick the user into seeing a whole bunch of unexpected ads. The bad apps that were discovered didn’t cover their tracks once they were downloaded onto a…
-
"Researchers Explore How to Share Data and Keep Privacy"Researchers from the Australian National University (ANU) and the University of Duisburg-Essen in German published a new book titled Linking Sensitive Data, which discusses how data sharing and the preservation of people's privacy can be improved.…
-
"What the Automotive Industry Needs to Learn from Nissan's Cybersecurity Error"Nissan North America source code was leaked online because of the misconfiguration of a company Git server left exposed with default credentials. The Git repository contained the source code of Nissan NA Mobile apps, Dealer Business Systems, client…
-
"Hackers Compromise Mimecast Certificate For Microsoft Authentication"The email security vendor Mimecast has announced that hackers compromised a Mimecast-issued certificate used to authenticate several of the company's products to Microsoft 365 Exchange Web Services. The certificate, discovered to be compromised, is used…