News
-
"Revealed: Advanced Java-Based Ransomware PonyFinal"Microsoft is warning organizations about new Java-based ransomware, called "PonyFinal." The tech giant considers PonyFinal to be human-operated ransomware because it is not a variant distributed in an automated manner. According to Microsoft's Security…
-
"41% of Organizations Have Not Taken Any Steps to Expand Secure Access For The Remote Workforce"Organizations are struggling to adjust to the new normal caused by the COVID-19 pandemic. In a new survey by Bitglass, researchers discovered that 41 percent of the respondents said that their organizations had not taken any steps to expand secure…
-
"New Android Malware Channels Malicious Activity Through Accessibility Services"Security researchers at ESET have discovered a new strain of Android malware, called "DEFENSOR ID." The malware performs malicious activities through the abuse of a device's Accessibility Services. These services enable the malware to execute 17 commands…
-
"IoT Labels Will Help Consumers Figure out Which Devices Are Spying on Them"When we want to know how many calories are in a certain portion of food or drink, we look at nutrition labels. However, if we want to know about the security and privacy practices behind a new Internet of Things (IoT) device, this information is not…
-
"Tel Aviv University and IDC Herzliya Researchers Thwart Large-Scale Cyberattack Threat"Researchers at Tel Aviv University and the Interdisciplinary Center (IDC) of Herzliya say that vulnerabilities in the Domain Name System (DNS) could have been used to execute a much more massive attack than that of the infamous Mirai botnet. A study…
-
"NSA Warns About Sandworm APT Exploiting Exim Flaw"The NSA has warned in a security advisory published on Thursday that the Russian APT group Sandworm has been exploiting a critical Exim flaw (CVE-2019-10149) to compromise mail servers since August 2019. When this flaw is successfully exploited,…
-
"Vulnerability Disclosures Drop in Q1 for First Time in a Decade"An analysis recently published by Risk Based Security reveals a decrease in the number of vulnerabilities reported in the first quarter of 2020 by 20%. Although the decline in reported vulnerabilities occurred in the same quarter as the surge of remote…
-
"External Attacks on Cloud Accounts Grew 630 Percent From January to April"In a new survey by Macafee, researchers found that overall enterprise adoption of cloud services spiked by 50 percent between January and April, including manufacturing and financial services that typically rely on legacy on-premises applications and…
-
"External Threats Outpace Insider-Related Breaches in Healthcare"According to the latest Verizon Data Breach Investigations Report (DBIR), the healthcare sector faced an increase in attacks last year with external threats exceeding the number of incidents caused by insiders. Verizon's DBIR highlights findings…
-
"Qatar: 'Huge' Security Weakness in COVID-19 Contact-Tracing App"Amnesty International discovered critical vulnerabilities in Qatar's mandatory coronavirus contact-tracing app, which have now been fixed. The app is intended to help slow down the spread of COVID-19 by alerting users when they are near someone who has…
-
"Florida Tech Student Finds Privacy Flaws in Connected Security and Doorbell Cameras"Florida Tech computer science student Blake Janes discovered systematic design flaws in internet-connected doorbells and security cameras manufactured by Ring, Nest, SimpliSafe, and eight other manufacturers. Janes found that a shared account can still…
-
"A New Android bug, Strandhogg 2.0, Lets Malware Pose as Real Apps and Steal User Data"Researchers at a security firm called Promon, have discovered a new vulnerability, called Strandhogg 2.0. This vulnerability affects all devices running Android 9.0 and earlier. This vulnerability lets malware imitate legitimate apps to steal…