News
-
"A Multi-Party Data Breach Creates 26x the Financial Damage of Single-Party Breach"New research by Cyentia Institute and RiskRecon explores how a multi-party data breach affects many organizations. The study delved into 897 multi-party breaches that involved three or more interrelated companies. According to the study, 897 multi-party…
-
"Apps for Popular Smart Home Devices Contain Security Flaws, New Research Finds"A new study conducted by cybersecurity researchers at Florida Tech found that the smartphone companion applications of 16 popular smart home devices have critical cryptographic flaws. The exploitation of these flaws allows attackers to intercept and…
-
"Google Says Threat Actors Using New Code Signing Tricks to Evade Detection"Google’s Threat Analysis Group found that threat actors have recently used a new trick of code signing to avoid detection on Windows systems and have notified Microsoft of their findings. OpenSUpdater operations had used legitimate code-signing…
-
"You Can Now Sign-in to Your Microsoft Accounts Without a Password"In an effort to strengthen security for Microsoft users, the company is now rolling out a way to access Microsoft accounts such as Microsoft 365, Teams, Outlook, OneDrive, and Family Safety without passwords. The feature is available after linking users…
-
"Inside Genesis: The Market Created by Cybercriminals To Make Millions Selling Your Digital Identity"Cyber criminals are flocking to the GENESIS marketplace, a one-stop shop for login credentials, cookies, device fingerprints, website vulnerabilities and other sensitive data on Hackers’ wish list. The invite-only market has become an important tool for…
-
"FBI and CISA Issue Conti Warning"An alert has been issued by the Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) over Conti ransomware. In the warning, posted on September 22, the agencies observed the increased use of Conti in…
-
"Exchange/Outlook Autodiscover Bug Spills 100K+ Email Passwords"Guardicore security researchers have discovered a severe design bug in Microsoft Exchange’s autodiscover. This protocol lets users easily configure applications such as Microsoft Outlook with just email addresses and passwords. The…
-
"Preventing Abuse in Encrypted Communication"It remains a significant challenge to mitigate the abuse of encrypted social media communication on WhatsApp, Signal, and other platforms while ensuring user privacy. This challenge is present across technological, legal, and social realms. A…
-
"US Eye-Care Providers Report Data Breaches"The protected health information of hundreds of thousands of Americans has been exposed in two separate security incidents at eye-care providers in the United States. Simon Eye Management reported a data breach to the Department of Health and Human…
-
"Cybersecurity Vulnerability Could Affect Millions of Hikvision Cameras"On Sunday, video surveillance giant Hikvision posted a security advisory on its website warning customers of a cyber vulnerability that could impact millions of cameras and NVRs deployed globally. Security researchers at Watchful IP discovered the…
-
"FamousSparrow Hacking Group Targets Governments, Engineers Worldwide"A new hacking group, dubbed FamousSparrow by ESET researchers, has targeted entities worldwide to spy on them. The group is believed to have been active since at least 2019, with links to attacks against governments, international organizations,…
-
"100M IoT Devices Exposed By Zero-Day Bug"Researchers at Guardara have discovered a flaw in a widely used internet-of-things (IoT) infrastructure code that left more than 100 million devices across 10,000 enterprises vulnerable to attacks. Researchers at Guardara used their technology to…