News
-
"Fresh Card Skimmer Attacks Multiple E-Commerce Platforms"Researchers with the Dutch security firm Sansec recently discovered a payment card skimmer targeting multiple content management systems that support many e-commerce sites' online checkout pages. According to a report released by the researchers, the new…
-
"Finnish Lawmakers' Emails Hacked in Suspected Espionage Incident"Email accounts belonging to Finnish lawmakers were accessed by hackers during a cyberattack on the Finnish Parliament's IT system. A statement released by Tero Muurman, the inspector at the National Bureau of Investigation, revealed that the malicious…
-
"Misconfigured AWS Bucket Exposes Hundreds of Social Influencers"Researchers at vpnMentor have discovered that a misconfigured cloud storage bucket has exposed hundreds of social media influencers' personal details, potentially putting them at risk of fraud and harassment. The misconfigured AWS S3 bucket was…
-
"Critical Flaws in Kepware Products Can Facilitate Attacks on Industrial Firms"The U.S. Homeland Security Department's Cybersecurity & Infrastructure Security Agency (CISA) recently published advisories about vulnerabilities in Kepware products discovered by researchers at the industrial cybersecurity firm Claroty. One of the…
-
"Remote Desktop Bugs: Patches That Took Priority in a Pandemic Year"Microsoft released patches for a record number of common vulnerabilities and exposures in 2020, many of which impacted the Microsoft Remote Desktop Protocol (RDP). The Remote Desktop service proved essential during the COVID-19 pandemic as many…
-
"SolarWinds Hackers 'Impacting' State and Local Governments"The U.S. Homeland Security Department's Cybersecurity & Infrastructure Security Agency (CISA) issued a warning about the significant impact of the recent SolarWinds Orion software supply chain hacking attack. The attack on SolarWinds' Orion IT…
-
"NIST Releases Draft Guidance for IoT Cybersecurity"The National Institute of Standards (NIST) has released a draft version of Special Publication (SP) 800-213 and a number of supporting documents developed to provide cybersecurity guidance to manufacturers of Internet of Things (IoT) devices. The draft…
-
"Fake Amazon Gift Cards Deliver Dridex Trojan"Researchers at security firm Cybereason have found that cybercriminals are targeting online shoppers in the U.S. and Western Europe with fake Amazon gift cards that deliver the Dridex banking Trojan. Since the phishing campaign began earlier this…
-
"Law Enforcement Take Down Three Bulletproof VPN Providers"Law enforcement agencies from the US, Germany, France, Switzerland, and the Netherlands have seized this week the web domains and server infrastructure of three VPN services that provided a haven for cybercriminals. The three services were active…
-
"FBI Warns of Ongoing COVID-19 Vaccine Related Fraud Schemes"A warning was recently issued by the Federal Bureau of Investigation (FBI), the Department of Health and Human Services Office of Inspector General (HHS-OIG), and the Centers for Medicare & Medicaid Services (CMS) about scammers' continued efforts to…
-
"Rethinking Software and Risk to Protect the Public Sector"The current approach to cybersecurity in the public sector appears to be ineffective, as indicated by the continued growth in the sophistication and frequency of cyberattacks, in addition to the increase in spending on cybersecurity. More than $173…
-
"IBM Launches Experimental Homomorphic Data Encryption Environment for the Enterprise"IBM Security has launched a new service that lets companies experiment with Fully Homomorphic Encryption (FHE). This encryption scheme enables computers to perform operations on encrypted data without having to decrypt it, further enhancing the privacy…