News
-
"Shopping Platform PandaBuy Data Leak Impacts 1.3 Million Users"Have I Been Pwned (HIBP) recently announced that data belonging to more than 1.3 million customers of the PandaBuy online shopping platform has been leaked, allegedly after two threat actors exploited multiple vulnerabilities to breach systems.
-
"Supply Chain Attack: Major Linux Distributions Impacted by XZ Utils Backdoor"A supply chain attack involving backdoored versions of the XZ Utils data compression library has impacted major Linux distributions.
-
"Cybersecurity Attacks Have the Potential to Infiltrate Medical Devices and Cripple Health Care, Northeastern Expert Warns"Kevin Fu, a Northeastern University professor of electrical and computer engineering and White House cybersecurity adviser, emphasized that the cyberattack on Change Healthcare should be a wake-up call for the healthcare industry to focus on securing i
-
"AT&T Says Data on 73 Million Customers Leaked on Dark Web"AT&T recently announced that data on roughly 73 million current and former customers was exposed on the dark web, including social security numbers and other personal information.
-
"Pervasive LLM Hallucinations Expand Code Developer Attack Surface"According to recent research published by the Large Language Model (LLM) security vendor Lasso Security, the use of LLMs by software developers provides a greater opportunity for attackers to distribute malicious packages to development environments th
-
"2 Wireless Protocols Expose Mobile Users to Spying — The FCC Wants to Fix That"The Federal Communications Commission (FCC) is asking Communications Service Providers (CSPs) to give an update on how they are refurbishing their networks to prevent cybercriminals and spies from exploiting vulnerabilities in the Signaling System No.
-
"Why Our Data Might Need Protection From the Future"Jonathan Katz, a computer science professor at the University of Maryland and expert in quantum-secure cryptography, explains Apple's recent post-quantum security move.
-
"Decade-Old Linux 'Wall' Bug Helps Make Fake Sudo Prompts, Steal Passwords"According to security researcher Skyler Ferrante, a vulnerability dubbed "WallEscape" in the wall command of the util-linux package included with the Linux operating system could enable an unprivileged attacker to steal passwords or change the victim's
-
"Privacy in an AI Era: How Do We Protect Our Personal Information?"The Artificial Intelligence (AI) era, which includes Large Language Models (LLMs) and chatbots, raises new privacy concerns. There are concerns about whether personal information is included in a model's training data.
-
"'Uninvited Guests' Wins National Security Agency Award"A team of researchers from Stony Brook University won the National Security Agency's (NSA) 11th Annual Best Scientific Cybersecurity Paper award for their paper titled "Uninvited Guests: Analyzing the Identity and Behavior of Certificate Transpar
-
"AI Abuse and Misinformation Campaigns Threaten Financial Institutions"According to the Financial Services Information Sharing and Analysis Center (FS-ISAC), generative Artificial Intelligence (AI) provides significant business and cybersecurity benefits to financial companies, but cyber threats related to the technology
-
"Dormakaba Locks Used in Millions of Hotel Rooms Could Be Cracked in Seconds"Security flaws discovered in Dormakaba's Saflok electronic RFID locks used in hotels could be exploited by malicious actors to forge keycards and sneak into locked rooms.