News
-
"An Email 'Autodiscover' Bug Is Helping to Leak Thousands of Windows Passwords"New research shows that shipping companies, power plants, and investment banks are inadvertently leaking thousands of their employees' email passwords due to a design flaw in the Microsoft Autodiscover protocol. Autodiscover is a protocol used to…
-
"Cybercriminals Use Pandemic to Attack Schools and Colleges"Schools and colleges have been hit significantly hard by cyberattacks during the COVID-19 pandemic. In 2020, the average ransomware attack cost educational institutions $2.73 million, including costs of downtime, repairs, and lost opportunities. From…
-
"Who Is BlackMatter?"Researchers have been piecing together information surrounding BlackMatter, the group behind the recent ransomware attack that targeted the Iowa-based farm services provider New Cooperative. The group claims to use the best tools and methods of…
-
"85% of UK's Top Universities at Risk of Email Fraud"During a new study, security researchers at Proofpoint found that more than four-fifths (85%) of the UK’s top 20 universities are putting their students, staff, and suppliers at risk of email fraud. The researchers found that just 15% of the…
-
"Healthcare Ransomware Attacks Lead to Increased Patient Mortality"A study commissioned by Censinet and conducted by the Ponemon Institute surveyed 597 healthcare organizations, including regional health systems, community hospitals, and integrated delivery networks. One in four of the respondents reported an increase…
-
"Data of 106 Million Visitors to Thailand Breached"Security researchers at Comparitech found an unprotected Elasticsearch database on August 22, 2021. Inside the 200GB digital index were records dating back ten years containing the personal details of more than 106 million international travelers who…
-
"Flaws in Nagios Network Management Products Can Pose Risk to Many Companies"Researchers at the industrial cybersecurity firm Claroty found 11 vulnerabilities in widely-used network management products from Nagios during a research project on the use of network management systems in Information Technology (IT), Operational…
-
"Half of Web Owners Don't Know if Their Site Has Been Attacked"Researchers at PermiterX discovered that nearly half of US website owners have so little insight into third-party code that they can’t say definitively if their site has suffered a cyber breach. The web app security vendor polled 501 organizations across…
-
"Widely-Used Hikvision Security Cameras Vulnerable To Remote Hijacking"A security researcher has discovered a vulnerability in Hikvision surveillance cameras that make them susceptible to remote hijacking without the attacker needing to have a username and password. The attack can be launched using the standard HTTP and…
-
"Hacker Makes Off With $12 Million in Latest DeFi Breach"The decentralized finance (DeFi) system pNetwork that allows communication between different blockchains recently announced that it had been hacked for 277 pBTC (its bridged version of bitcoin), with losses worth more than $12 million at current value.…
-
"Malicious Email Surge Predicted for Q4"Corporate end-users should be on high alert for phishing attacks in the final quarter of the year as this is when most malicious emails are likely to land, according to new research from Tessian. The email security vendor analyzed four billion…
-
"Hacked Sites Push TeamViewer Using Fake Expired Certificate Alert"Windows IIS servers are being used to add expired certificate notification pages prompting visitors to download a fake installer. All Windows versions since Windows 2000, XP, and Server 2003 include the Microsoft Windows web server software, Internet…