15 Jun

Unpatched Exchange server, stolen RDP logins… How miscreants get BlackCat ransomware on your network

Two of the more prolific cybercriminal groups, which in the past have deployed such high-profile ransomware families as Conti, Ryuk, REvil and Hive, have started

Author rabih
15 Jun

Microsoft fixes under-attack Windows zero-day Follina

Patch Tuesday Microsoft claims to have finally fixed the Follina zero-day flaw in Windows as part of its June Patch Tuesday batch, which included security

Author rabih
15 Jun

McAfee’s Digital Wellness Delivers Online Protection As An Employee Benefit

The topic most top of mind today for HR professionals is keeping and acquiring great talent.  One of the most important elements of doing both

Author rabih
15 Jun

Former US state agency CIO, IT exec plead guilty to bribery and extortion scheme

A former Maryland Cabinet-level official and a former IT executive have pleaded guilty to involvement in a bribery and extortion scheme related to technology contracts

Author rabih
14 Jun

Cloudflare says it thwarted record-breaking HTTPS DDoS flood

Cloudflare said it this month staved off another record-breaking HTTPS-based distributed denial-of-service attack, this one significantly larger than the previous largest DDoS attack that occurred

Author rabih
14 Jun

Man gets two years in prison for selling 200,000 DDoS hits

A 33-year-old Illinois man has been sentenced to two years in prison for running websites that paying customers used to launch more than 200,000 distributed

Author rabih
14 Jun

Azure issues not adequately fixed for months, complain bug hunters

Two security vendors – Orca Security and Tenable – have accused Microsoft of unnecessarily putting customers’ data and cloud environments at risk by taking far

Author rabih
14 Jun

UK health privacy watchdog still in talks over who is accessing country’s COVID data store

More than two years after England launched a COVID data store, keeping details of National Health Service (NHS) patients, the country’s National Data Guardian (NDG)

Author rabih
14 Jun

Inside the RSAC expo: Buzzword bingo and the bear in the room

RSA Conference Your humble vulture never liked conference expos – even before finding myself on the show floor during a global pandemic. Expo halls are

Author rabih
14 Jun

Chinese-sponsored gang Gallium upgrades to sneaky PingPull RAT

The Gallium group, believed to be a Chinese state-sponsored team, is going on the warpath with an upgraded remote access trojan (RAT) that threat hunters

Author rabih
13 Jun

HelloXD ransomware bulked up with better encryption, nastier payload

Windows and Linux systems are coming under attack by new variants of the HelloXD ransomware that includes stronger encryption, improved obfuscation and an additional payload

Author rabih
11 Jun

OMIGOD: Cloud providers still using secret middleware

RSA Conference in brief Researchers from Wiz, who previously found a series of four serious flaws in Azure’s Open Management Infrastructure (OMI) agent dubbed “OMIGOD,”

Author rabih
10 Jun

World Economic Forum wants a global map of online crime

RSA Conference An ambitious project spearheaded by the World Economic Forum (WEF) is working to develop a map of the cybercrime ecosystem using open source

Author rabih
10 Jun

Threat and risk specialists signal post-COVID conference season is back on

RSA Conference For the first time in over two years the streets of San Francisco have been filled by attendees at the RSA Conference and

Author rabih
10 Jun

Symbiote Linux malware spotted, and infections are ‘very hard to detect’

Intezer security researcher Joakim Kennedy and the BlackBerry Threat Research and Intelligence Team have analyzed an unusual piece of Linux malware they say is unlike

Author rabih
10 Jun

RSA – APIs, your organization’s dedicated backdoors

API-based data transfer is so rapid, there’s but little time to stop very bad things happening quickly In the rush to integrate, these lightly defended

Author rabih
10 Jun

Apple M1 chip contains hardware vulnerability that bypasses memory defense

Apple’s M1 chip has been found to contain a hardware vulnerability that can be abused to disable one of its defense mechanisms against memory corruption

Author rabih
10 Jun

Emotet malware gang re-emerges with Chrome-based credit card heistware

The criminals behind the Emotet botnet – which rose to fame as a banking trojan before evolving into spamming and malware delivery – are now

Author rabih
Load moreLoadingAll items loaded