News
-
"CISA Warns of Phishing Emails Delivering KONNI Malware"The Cybersecurity and Infrastructure Security Agency (CISA) has published an alert to provide information on attacks delivering the KONNI remote access Trojan (RAT). Phishing emails are being sent delivering Microsoft Word documents that contain…
-
"Critical Flaws in WordPress Quiz Plugin Allow Site Takeover"Researchers at Wordfence have discovered two critical flaws in a WordPress plugin called Quiz and Survey Master, which is actively installed on over 30,000 websites. The two critical flaws that were discovered include an arbitrary file-upload…
-
"Army Researchers Earn Patent for Secure Communications Invention"Army researchers were awarded a patent for their invention of a practical method that could be used to improve the security of communications between Army wireless devices. The technique enables simultaneous, covert verification of wireless…
-
"Flaw in Find My Mobile App Exposed Samsung Users to Hacking Attacks"Security researchers at Char49 found vulnerabilities in version 6.9.25 of Samsung's Find My Mobile (FMM) service. The FMM application is intended to help users locate their Samsung devices if they lose them. The exploitation of these vulnerabilities…
-
"Medical Software Database Exposes Personal Data of 3.1M Patients"A security researcher discovered the online exposure of a medical software company's database containing personal information belonging to more than 3.1 million patients. The unsecured database appears to belong to Adit, a developer of online booking and…
-
"Alexa Vulnerability Is a Reminder to Delete Your Voice History"A recently fixed vulnerability in Amazon's voice assistant Alexa is a reminder that users should delete their Alexa voice history regularly. The vulnerability discovered by Check Point researchers could have allowed hackers to view a user's voice chat…
-
"Surge in Cyber Attacks Targeting Open Source Software Projects"Researchers at Sonatype have found that there has been a massive 430 percent surge in next generation cyberattacks aimed at actively infiltrating open source software supply chains. There were 929 next generation software supply chain attacks…
-
"Hackers Exploited Tor Exit Relays to Generate Bitcoin"A researcher claims that hackers took control over a part of the endpoint infrastructure used by the anonymizing internet browser Tor to route traffic. According to the researcher, attackers manipulated Tor traffic and mined cryptocurrency using Tor exit…
-
"Researchers Trick Facial Recognition Systems"McAfee researchers were able to trick a facial recognition system into misclassifying one person as another person using Generative Adversarial Networks (GANs). GANs are neural networks that can create data similar to the data it is fed. In the study,…
-
"Security Gap Allows Eavesdropping on Mobile Phone Calls"Researchers from the Horst Gortz Institute for IT Security (HGI) at Ruhr-Universitat Bochum have shown that it is possible to decrypt the contents of telephone calls made via the LTE mobile network, 4G, which are supposed to be tap-proof. The decryption…
-
"Organizations Knowingly Ship Vulnerable Code Despite Using AppSec tools"Researchers at Veracode, while conducting a survey, found that nearly half of organizations regularly and knowingly ship vulnerable code despite using AppSec tools. Among the top reasons cited by the organizations for pushing vulnerable code, were…
-
"Using Automated Security Protocols Reduce the Cost of Data Breaches, Report Says"According to IBM's annual "Cost of a Data Breach" report released in July, the average losses incurred by the public sector worldwide per data breach is the lowest average cost compared to 17 other industries. Researchers examined the costs of data…