News
  • Spotlight on Lablet Research #8 - Uncertainty in Security Analysis
    Spotlight on Lablet Research #8 - Project: Uncertainty in Security Analysis Lablet: University of Illinois at Urbana-Champaign
  • "Attackers Have Created a Specialized Economy Around Email Account Takeover"
    Barracuda Networks released a report on how cybercriminals are gaining access to email accounts, how they use compromised accounts, and how organizations can protect their accounts against attacks. The report also highlights a specialized economy…
  • Pub Crawl #40
    ​Pub Crawl summarizes, by hard problems, sets of publications that have been peer reviewed and presented at SoS conferences or referenced in current work. The topics are chosen for their usefulness for current researchers.
  • "Email Security Features Fail to Prevent Phishable 'From' Addresses"
    A team of researchers discovered 18 different ways to undermine the authentication that is supposed to be provided by the three email technologies - Domain Keys Identified Mail (DKIM), Sender Policy Framework (SPF), and Domain-based Message…
  • "Garmin Hit by Major Outage in Potential Ransomware Attack"
    Since yesterday, Garmin’s website, app, and call centers have been offline due to a significant outage.  In a memo by Garmin to employees, they stated that they were attacked by a virus.  Researchers believe it might be a ransomware attack.…
  • "27% of Consumers Hit With Pandemic-Themed Phishing Scams"
    Researchers at TransUnion surveyed 7,384 adults in Canada, Colombia, Hong Kong, South Africa, the U.K., and the U.S. between June 30 and July 6, 2020, to better understand the top global online COVID-19 scams targeting consumers.  Of the…
  • "'Meow' Attacks Wipe More Than 1,000 Exposed Databases"
    More than 1,000 unsecured databases running on various software, including ElasticSearch, MongoDB, and other platforms, have been hit by "meow" attacks. These attacks delete data from a database and replace files with the word "meow." The motive and…
  • "FBI Alert Warns of Increase in Disruptive DDoS Attacks"
    The Federal Bureau of Investigation (FBI) has warned of the increase in distributed denial-of-service (DDoS) attacks against U.S. organizations. According to the FBI, threat actors have been trying to use built-in network protocols to increase the size…
  • "Reports Finds IoT Devices Host Social Media Apps, FDA-Recalled Platforms"
    Researchers analyzed more than 5 million Internet of Things (IoT), Internet of Medical Things (IoMT), and unmanaged devices used in healthcare, life sciences, manufacturing, and retail sectors between June 2019 and June 2020. Diagnostic medical imaging…
  • "ASUS Home Router Bugs Open Consumers to Snooping Attacks"
    Researchers at Trustwave have discovered two flaws in ASUS routers that allow man-in-the-middle attacks that would give an attacker access to all data flowing through the router.  The bugs are found in the RT-AC1900P whole-home Wi-Fi model, within…
  • "64% Majority of Organizations Lack Confidence in Security Posture"
    A joint research report, titled "2020 State of Enterprise Security Posture," from cybersecurity firms Balbix and Cybersecurity Insiders finds that most organizations lack confidence in their security posture. According to the report, cybersecurity teams…
  • "Organizations With Poor Privacy Practices 80% More Likely to Suffer Data Breach"
    Researchers at Osano found that organizations with inadequate data privacy practices are 80 percent more likely to suffer a data breach than those with the highest-ranked privacy practices. Companies with the lowest privacy scores lost 600% more records…