News
-
"Ransomware Attack Cripples Vancouver Public Transportation Agency"A ransomware attack against TransLink, the public transportation agency for Vancouver, Canada, occurred on December 1st. Vancouver residents could not use their Compass metro cards or pay for new tickets via the agency's Compass ticketing kiosks.…
-
"The Internet's Most Notorious Botnet Has an Alarming New Trick"A team of researchers from the security firms AdvIntel and Eclypsium has announced that a new component of the TrickBot trojan now gives hackers the ability to plant a backdoor in a computer's Unified Extensible Firmware Interface (UEFI). Planting…
-
"Phishing Ploy Targets COVID-19 Vaccine Distribution Effort"IBM security researchers detected a phishing campaign aimed at collecting vital information about the World Health Organization's efforts surrounding the distribution of the COVID-19 vaccine to developing countries. The threat actors behind the campaign…
-
"Turla’s ‘Crutch’ Backdoor Leverages Dropbox in Espionage Attacks"Researchers have found a previously undocumented backdoor, and document stealer, which is being used by the Russian-speaking Turla advanced persistent threat espionage group. The researchers are calling the malware "Crutch." The malware can…
-
"Which Security Practices Lead to Best Security Outcomes?"According to a recent Cisco report, a proactive technology refresh and a well-integrated technology stack are two security practices most likely than others to help organizations create a security culture, manage top risk, prevent security…
-
"New Graph-Based Statistical Method Detects Threats To Vehicular Communications Networks"Researchers at the University of Maryland, Baltimore County (UMBC) and the University of Michigan-Dearborn worked together to develop a technique for detecting breaches in the security of vehicular communications networks. The Controller Area Network (…
-
"Half of Docker Hub Images Feature Critical Flaws"Researchers at Prevasio scanned all four million images hosted at Docker Hub, the world’s most popular repository service for Linux-based containers. They found that over half of the publicly available Docker Hub container images contain at least one…
-
HoTSoS 2021: Meet the Program Committee Members!Meet the HoTSoS 2021 Team: Program Committee Members The HoTSoS Symposium is growing every year, and with it, we have decided to expand our Program Committee this year. For the next few weeks we will be creating news items introducing different Chairs…
-
HoTSoS 2021: Social Media ChairMeet the HoTSoS 2021 Team: Social Media Chair HoTSoS is just around the corner again, and introductions to the 2021 Program Committee are in order. First up on the docket is John Symons (KU)! John will be serving as our Social Media Chair and we…
-
"Google Researcher Demonstrates iPhone Exploit With Wi-Fi Takeover"A security researcher with Google's Project Zero discovered a vulnerability that could have allowed hackers to take over a person's iPhone without having to trick victims into clicking any malicious links or downloading malware. The exploitation of this…
-
HoTSoS 2021: Works-in-Progress Co-ChairsMeet the HoTSoS 2021 Team: Works-in-Progress Co-Chairs Kurt Kelville (MIT) and Aron Laszka (University of Houston) are our Works-in-Progress Co-Chairs for the 2021 Symposium. Happy to have these two on the Program Committee Team! About the…
-
"Malicious NPM Packages Used to Install njRAT Remote Access Trojan"The open-source security firm Sonatype found malicious NPM packages that install the njRAT remote access trojan. NPM, short for Node Package Manager, is a packet manager for the JavaScript programming language. Using njRAT, a threat actor can get full…