News
-
"Compromised Passwords Used on 44 Million Microsoft Accounts"In a news study, Microsoft has found that 44 million Microsoft Azure AD and Microsoft Services accounts are vulnerable to account hijacking due to users using compromised passwords. Microsoft forced users to change their passwords if they found that the…
-
"Honeypots: Best Bet for IoT Security?"The electronics manufacturer, Panasonic, recently discussed how it improved the security of its Internet of Things (IoT) devices. The company is using specially crafted honeypot sites to trick cybercriminals into executing attacks against what appear to…
-
"Fingerprint Login Should Be a Secure Defense for Our Data, But Most of Us Don't Use It Properly"The implementation of biometrics-based security in Apple's iOS such as fingerprint authentication is supposed to add an extra layer to the protection of users' sensitive information. However, this feature is still being improperly used by most people. A…
-
"Cookie Leak Allows White-Hat Researcher to Access HackerOne Vulnerability Reports"HackerOne, a company that hosts bug bounty programs for organizations, recently disclosed an incident in which a human error led to the access of company vulnerability reports by a white-hat hacker known as haxta4ok00. One of HackerOne's security…
-
"New Ransomware Attacks Target Your NAS Devices, Backup Storage"Security researchers have observed an increase in ransomware attacks targeting network-attached storage (NAS) and backup storage devices. Ransomware continues to be a major threat to enterprises, hospitals, and utilities. NAS systems are devices…
-
"Hackers Find Ways Around a Years-Old Microsoft Outlook Fix"Email remains a weakness in security as highlighted by the ongoing exploitation of a flaw in Microsoft Outlook that was disclosed and patched in October 2017. The U.S. Cyber Command issued a warning about the exploitation of the vulnerability in…
-
"Web Payment Card Skimmers Add Anti-Forensics Capabilities"Researchers from Visa's Payment Fraud Disruption (PFD) team have found a new JavaScript-based payment card skimmer, dubbed Pipka, which has affected 16 e-commerce websites. Web skimming refers to the injection of malicious scripts into online merchant…
-
"FBI Issues Smart TV Cybersecurity Warning"The FBI recently issued a warning to consumers about the threat posed by unsecured smart TVs to their security and privacy. According to a statement released by the Oregon branch of the FBI, cybercriminals can abuse an inadequately secured TV connected…
-
"Hackers Could Disrupt Elections by Altering Websites"Florida's Secretary of State, Laurel Lee, recently discussed the insecurity of state and county elections websites with the governor's Cybersecurity Task Force. She stressed the importance of bolstering the security of these websites against hackers as…
-
"Facebook and Twitter Warn of Malicious SDK Harvesting Personal Data From its Accounts"Researchers discovered that some third-party apps on Facebook and Twitter have quietly scraped personal information from people's accounts without their consent. Some third-party iOS and Android apps use "malicious" software development kits (SDKs). The…
-
"How Smartphones Can Verify Your Identity"PXL Vision, a spin-off from the ETH Zurich, one of the leading international universities for technology and the natural sciences, offers a more secure and easier solution for verifying the identity of a person. Identity verification is essential in…
-
"Microsoft Looks to Rust Language to Beat Memory Vulnerabilities"Microsoft has been working on a project called Project Verona. This project is an ambitious plan to stop common vulnerabilities hiding in old Windows code by using an implementation of the open-source Rust programming language. Traditionally Microsoft…