News
-
"CMS Subcontractor Breach Potentially Exposes Sensitive Data of 254,000 Customers"According to the Centers for Medicare and Medicaid Services (CMS), personal data, including bank routing and account information for 254,000 people, may have been compromised during a ransomware attack on an agency subcontractor. CMS stated that the…
-
"Microsoft Reclassifies Windows Flaw After IBM Researcher Proves Remote Code Execution"Microsoft has recently reclassified a Windows vulnerability after an IBM security researcher demonstrated that it can be exploited for remote code execution. In September, Microsoft announced that Windows and Windows Server updates patched CVE-2022…
-
"OECD Signs Landmark Privacy Agreement"The OECD recently published a new transnational agreement that it claims will help to safeguard user privacy when data is accessed for national security and law enforcement purposes. The "OECD Declaration on Government Access to Personal Data Held by…
-
"IMDEA Software Creates a Tool Capable of Tracking Cybercrime Financial Transactions in Bitcoin"Researchers at IMDEA Software, Gibran Gómez, Pedro Moreno-Sánchez, and Juan Caballero, have developed an open-source automated tool to track the financial links of malicious entities abusing Bitcoin technology, which has been tested on 30 malware…
-
"Two-Thirds of Security Pros Have Burnt Out in Past Year"Security researchers at Promon have discovered that two-thirds of cybersecurity professionals have suffered burnout over the past year due to work-related stress. The researchers polled over 300 information security pros at this year’s Black Hat…
-
"Hackers Leak Personal Info Allegedly Stolen From 5.7M Gemini Users"Customers of the Gemini cryptocurrency exchange have been targeted in phishing operations after a threat actor obtained their personal information from a third-party vendor. The news comes after various posts on hacker sites attempted to sell a database…
-
"GitHub Brings Free Secret Scanning to All Public Repos"Developers know that hardcoding security credentials into source code is a poor idea, but it still happens, and the repercussions can be disastrous. Previously, GitHub only made its secret scanning service available to paying enterprise users who…
-
"Minecraft Servers Under Attack: Microsoft Warns About Cross-Platform DDoS Botnet"Microsoft has identified a cross-platform botnet aimed primarily at performing Distributed Denial-of-Service (DDoS) attacks against private Minecraft servers. The MCCrash botnet is distinguished by a novel spreading method that allows it to spread to…
-
"NIST Retires SHA-1 Cryptographic Algorithm"According to security specialists at the National Institute of Standards and Technology (NIST), the SHA-1 algorithm, one of the first widely used techniques for securing electronic information, has reached the end of its useful life. The agency is now…
-
"Executives Take More Cybersecurity Risks Than Office Workers"Ivanti collaborated with cybersecurity experts and polled 6,500 executive leaders, cybersecurity professionals, and office workers to better understand current cybersecurity threat perception and how businesses are preparing for future threats. According…
-
"Blackmailing MoneyMonger Malware Hides in Flutter Mobile Apps"MoneyMonger, an Android malware campaign, was discovered hidden in money-lending apps created with Flutter. According to research conducted by the Zimperium zLabs team, the malware leverages multiple levels of social engineering to exploit its victims…
-
"Rust Software Security: A Current State Assessment"Rust is an increasingly popular programming language. Although its user base remains small, it is considered a good language. For seven consecutive years, according to the Stack Overflow Developer Survey 2022, Rust has been the most-loved programming…