07 Feb

Iran’s cyber operations in Israel a potential prelude to US election interference

Iran’s anti-Israel cyber operations are providing a window into the techniques the country may deploy in the run-up to the 2024 US Presidential elections, Microsoft

Author rabih
07 Feb

Double trouble replay for Fortinet as it reissues critical FortiSIEM vulns

Updated Fortinet’s FortiSIEM product is vulnerable to two maximum-severity security vulnerabilities that allow for remote code execution, and it recently told the world about this

Author rabih
07 Feb

Raspberry Pi Pico cracks BitLocker in under a minute

We’re very familiar with the many projects in which Raspberry Pi hardware is used, from giving old computers a new lease of life through to

Author rabih
07 Feb

JetBrains urges swift patching of latest critical TeamCity flaw

JetBrains is encouraging all users of TeamCity (on-prem) to upgrade to the latest version following the disclosure of a critical vulnerability in the CI/CD tool.

Author rabih
07 Feb

The spyware business is booming despite government crackdowns

The commercial spyware economy – despite government and big tech’s efforts to crack down – appears to be booming. In addition to the major players

Author rabih
07 Feb

DEF CON is canceled! No, really this time – but the show will go on

It’s an annual meme that DEF CON infosec conference has been canceled, but this time it actually happened. The world’s largest hacking conference, held since

Author rabih
06 Feb

Mozilla adds paid-for data-deletion tier to Monitor, its privacy-breach radar

Mozilla on Tuesday expanded its free privacy-monitoring service with a paid-for tier called Mozilla Monitor Plus that will try to get data brokers to delete

Author rabih
06 Feb

Verizon says 63K employees’ info fell into the wrong hands – an insider this time

Verizon is notifying more than 63,000 people, mostly current employees, that an insider, accidentally or otherwise, had inappropriate access to their personal data. The privacy

Author rabih
06 Feb

Verizon says 63K employees’ info fell into wrong hands – an insider in this case

Verizon is notifying more than 63,000 people, mostly current employees, that an insider, accidentally or otherwise, had inappropriate access to their personal data. The privacy

Author rabih
06 Feb

Chinese Coathanger malware hung out to dry by Dutch defense department

Dutch authorities are lifting the curtain on an attempted cyberattack last year at its Ministry of Defense (MoD), blaming Chinese state-sponsored attackers for the espionage-focused

Author rabih
06 Feb

EquiLend back in the saddle as ransom payment rumors swirl

Global securities finance tech company EquiLend’s systems are now back online after announcing a disruptive ransomware attack nearly two weeks ago. EquiLend was founded in

Author rabih
06 Feb

Safer Internet Day: Telling What’s Real from What’s Fake Online

On Safer Internet Day, we ask an important question: how can you tell what’s real and what’s fake online?   There’s plenty of fakery out there,

Author rabih
06 Feb

Double trouble for Fortinet customers as pair of critical vulns found in FortiSIEM

Fortinet’s FortiSIEM product is vulnerable to two new maximum-severity security vulnerabilities that allow for remote code execution. Both CVE-2024-23108 and CVE-2024-23109 have been assigned provisional

Author rabih
06 Feb

Left to their own devices: Security for employees using personal devices for work

Business Security As personal devices within corporate networks make for a potentially combustible mix, a cavalier approach to BYOD security won’t cut it Christian Ali

Author rabih
06 Feb

New kids on the ransomware block in 2023: Akira and 8Base lead dozens of newbies

At least 25 new ransomware gangs emerged in 2023, with Akira and 8Base proving the most “successful,” research reveals. The gangs were the two “success”

Author rabih
05 Feb

Google throws $1m at Rust Foundation to build C++ bridges

Google on Monday donated $1 million to the Rust Foundation specifically to improve interoperability between the language and C++. C++, a popular general purpose programming

Author rabih
05 Feb

Ivanti devices hit by wave of exploits for latest security hole

Various miscreants are attempting to exploit the latest Ivanti flaw, a server-side request forgery (SSRF) vulnerability tracked as CVE-2024-21893 that can be used to hijack

Author rabih
05 Feb

More mass exploits hit the same buggy Ivanti devices

All manner of miscreants are piling onto the latest Ivanti flaw, a server-side request forgery (SSRF) vulnerability tracked as CVE-2024-21893, according to threat hunters tracking

Author rabih
Load moreLoadingAll items loaded