13 Feb

QNAP vulnerability disclosure ends up an utter shambles

Network-attached storage (NAS) specialist QNAP has disclosed and released fixes for two new vulnerabilities, one of them a zero-day discovered in early November. The Taiwanese

Author rabih
13 Feb

Crooks hook hundreds of exec accounts after phishing in Azure C-suite pond

The number of senior business executives stymied by an ongoing phishing campaign continues to rise with cybercriminals registering hundreds of cloud account takeovers (ATOs) since

Author rabih
13 Feb

Love Bytes – How AI is shaping Modern Love

AI has made the dating scene. In a big way. Nealy one in four Americans say they’ve spiced up their online dating photos and content

Author rabih
13 Feb

Deepfakes in the global election year of 2024: A weapon of mass deception?

Digital Security As fabricated images, videos and audio clips of real people go mainstream, the prospect of a firehose of AI-powered disinformation is a cause

Author rabih
13 Feb

Meta says risk of account theft after phone number recycling isn’t its problem to solve

Meta has acknowledged that phone number reuse that allows takeovers of its accounts “is a concern,” but the ad biz insists the issue doesn’t qualify

Author rabih
13 Feb

Infosys subsidiary named as source of Bank of America data leak

Indian tech services giant Infosys has been named as the source of a data leak suffered by the Bank of America. Infosys disclosed the breach

Author rabih
13 Feb

Korean eggheads crack Rhysida ransomware and release free decryptor tool

Some smart folks have found a way to automatically unscramble documents encrypted by the Rhysida ransomware, and used that know-how to produce and release a

Author rabih
12 Feb

FCC gets tough: Telcos must now tell you when your personal info is stolen

The FCC’s updated reporting requirements mean telcos in America will have just seven days to officially disclose that a criminal has broken into their systems.

Author rabih
12 Feb

Dutch insurers demand nudes from breast cancer patients despite ban

Dutch health insurers are reportedly forcing breast cancer patients to submit photos of their breasts prior to reconstructive surgery despite a government ban on precisely

Author rabih
12 Feb

Jet engine dealer to major airlines discloses ‘unauthorized activity’

Willis Lease Finance Corporation has admitted to US regulators that it fell prey to a “cybersecurity incident” after data purportedly stolen from the biz was

Author rabih
12 Feb

Europe’s largest caravan club admits wide array of personal data potentially accessed

The Caravan and Motorhome Club (CAMC) and the experts it drafted to help clean up the mess caused by a January cyberattack still can’t figure

Author rabih
12 Feb

Mon Dieu! Nearly half the French population have data nabbed in massive breach

Infosec In Brief Nearly half the citizens of France have had their data exposed in a massive security breach at two third-party healthcare payment servicers,

Author rabih
11 Feb

Celebrating International Day of Women and Girls in Science

Advice and Insights from some of McAfee’s brightest STEM leaders This International Day of Women and Girls in Science, #TeamMcAfee is proud to join forces

Author rabih
10 Feb

Meet VexTrio, a network of 70K hijacked websites crooks use to sling malware, fraud

More than 70,000 presumably legit websites have been hijacked and drafted into a network that crooks use to distribute malware, serve phishing pages, and share

Author rabih
09 Feb

France Gets Hit with Its Largest Data Breach Ever — What You Need to Know

Two massive data breaches in France have impacted roughly half the nation’s population. The data of an estimated 33 million people has been compromised, making

Author rabih
09 Feb

Ivanti discloses fifth vulnerability, doesn’t credit researchers who found it

In disclosing yet another vulnerability in its Connect Secure, Policy Secure, and ZTA gateways, Ivanti has confused the third-party researchers who discovered it. Researchers at

Author rabih
09 Feb

Double trouble for Fortinet as it issues critical FortiSIEM vulns

Updated Fortinet’s FortiSIEM product is vulnerable to two maximum-severity security vulnerabilities that allow for remote code execution, or at least according to two freshly published

Author rabih
09 Feb

Fortinet’s week to forget: Critical vulns, disclosure screw-ups, and that toothbrush DDoS attack claim

We’ve had to write the word “Fortinet” so often lately that we’re considering making a macro just to make our lives a little easier after

Author rabih
Load moreLoadingAll items loaded