News
-
"Encryption Vulnerabilities Allow Hackers to Take Control of Schneider Electric PLCs"Schneider Electric has released advisories about four vulnerabilities found in Modicon M221 Programmable Logic Controllers (PLCs). These vulnerabilities were discovered by researchers at Claroty and Trustwave. According to blog posts published by the…
-
"ML Tool Identifies Domains Created to Promote Fake News"Researchers at UCL and other institutions have collaborated to develop a machine learning tool that identifies new domains created to promote false information so that they can be stopped before fake news can be spread through social media and online…
-
"Honour Among Thieves: The Study of a Cybercrime Marketplace in Action"Researchers at the Cambridge Cybercrime Center conducted a study on an underground cybercrime forum. They collected and examined data on illicit trades from HackForums, the largest and most popular online cybercrime community. Online underground forums…
-
"Cyber Skills Gap Shrinks, but Lack of Talent Remains Major Risk Factor"According to the International Information System Security Certification Consortium ((ISC)2), there has been a year-over-year reduction in the global cybersecurity workforce gap. The gap has shrunk from 4 million to 3.1 million. The (ISC)2 annual…
-
"Microsoft Advises Users to Stop Using SMS- And Voice-Based MFA"Multi-factor authentication (MFA) is better than relying just on a password for security. The rate of compromise of accounts using any type of MFA was less than 0.1% last year. Researchers at Microsoft are advising people to avoid using…
-
"Cybercriminal Offers Email Implant Software That Dodges Traditional Security Platforms"The cybersecurity firm Gemini Advisory recently released information about a tool called the Email Appender advertised by a hacker on a dark web forum. According to Gemini Advisory, this tool raises the success rate of malware attacks as it allows…
-
"Double Patterns Could Advance Android Device Security"Researchers at George Washington University have discovered that the security of Android devices can be significantly enhanced using two unlock patterns rather than the current single-pattern method. According to the researchers, using multiple patterns…
-
"PLATYPUS Reveals New Vulnerabilities Discovered in Intel Processors"A team of security researchers is conducting a project called PLATYPUS. They are presenting a new method for enabling power-side channel attacks. These attacks exploit power fluctuations to gain access to cryptographic keys and other sensitive…
-
"Minecraft Apps on Google Play Fleece Players Out of Big Money"Researchers at Avast have discovered, 7 mobile apps on Google Play that are meant to fool users into spending hundreds of dollars per month by offering skins, wallpapers, and game mods for Minecraft and other games at super-premium prices. The apps…
-
"Ragnar Locker Ransomware Gang Takes Out Facebook Ads in Key New Tactic"Researchers have discovered that following a ransomware attack against Italian liquor conglomerate Campari on November 3rd, the Ragnar Locker group has created Facebook ads threatening to release stolen data to add additional pressure on its latest high-…
-
The science on password security vs usabilityResearchers at Carnegie Mellon University’s CyLab Security and Privacy Institute have developed a science-based policy for creating passwords that balances security and usability.
-
Take my word for it: Privacy and COVID alert apps can coexistBY LORRIE CRANOR, OPINION CONTRIBUTOR — 11/10/20 09:30 AM EST Since the COVID-19 pandemic began, technologists across the country have rushed to develop digital apps for contact tracing and exposure notifications. New York, New…