29 Jan

Maybe CISA should take its own advice about insider threats hmmm?

opinion Maybe everything is all about timing, like the time (this week) America’s lead cyber-defense agency sounded the alarm on insider threats after it came

Author rabih
29 Jan

To stop crims, Google starts dismantling residential proxy network they use to hide

Crims love to make it look like their traffic is actually coming from legit homes and businesses, and they do so by using residential proxy

Author rabih
29 Jan

AV vendor goes to war with security shop over update server scare

A spat has erupted between antivirus vendor eScan and threat intelligence outfit Morphisec over who spotted an update server incident that disrupted some eScan customers

Author rabih
29 Jan

Seven habits that help security teams reduce risk without slowing delivery

Sponsored Post Security teams are under pressure from every direction: supply chain threats are rising, regulatory expectations are tightening, and development cycles aren’t getting any

Author rabih
29 Jan

ShinyHunters swipes right on 10M records in alleged dating app data grab

ShinyHunters has added a fresh notch to its breach belt, claiming it has pinched more than 10 million records from Match Group, a US firm

Author rabih
29 Jan

Patch or perish: Vulnerability exploits now dominate intrusions

What good is a fix if you don’t use it? Experts are urging security teams to patch promptly as vulnerability exploits now account for the

Author rabih
29 Jan

Cyberattack on Poland’s power grid could have turned deadly in winter cold

Cybersecurity experts involved in the cleanup of the cyberattacks on Poland’s power network say the consequences could have been lethal. In a report published this

Author rabih
28 Jan

Ransomware crims forced to take off-RAMP as FBI seizes forum

Ransomware crims have just lost one of their best business platforms. US law enforcement has seized the notorious RAMP cybercrime forum’s dark web and clearnet

Author rabih
28 Jan

Everybody is WinRAR phishing, dropping RATs as fast as lightning

Come one, come all. Everyone from Russian and Chinese government goons to financially motivated miscreants is exploiting a long-since-patched WinRAR vuln to bring you infostealers

Author rabih
28 Jan

Fortinet unearths another critical bug as SSO accounts borked post-patch

Things aren’t over yet for Fortinet customers – the security shop has disclosed yet another critical FortiCloud SSO vulnerability. Those hoping for a reprieve following

Author rabih
28 Jan

Old Windows quirks help punch through new admin defenses

Microsoft patched a bevy of bugs that allowed bypasses of Windows Administrator Protection before the feature was made available earlier this month. James Forshaw, security

Author rabih
28 Jan

Love? Actually: Fake dating app used as lure in targeted spyware campaign in Pakistan

ESET researchers have uncovered an Android spyware campaign leveraging romance scam tactics to target individuals in Pakistan. The campaign uses a malicious app posing as

Author rabih
27 Jan

Paranoid WhatsApp users rejoice: Encrypted app gets one-click privacy toggle

Users of Meta’s WhatsApp messenger looking to simplify the process of protecting themselves are in luck, as the company is rolling out a new feature

Author rabih
27 Jan

Let them eat sourdough: ShinyHunters claims Panera Bread as stolen credentials victim

ShinyHunters says it stole several slices of data from Panera Bread, but that’s just the yeast of everyone’s problems. The extortionist gang also claims to

Author rabih
27 Jan

China-linked group accused of spying on phones of UK prime ministers’ aides – for years

Chinese state-linked hackers are accused of spending years inside the phones of senior Downing Street officials, exposing private communications at the heart of the UK

Author rabih
27 Jan

France to replace US videoconferencing wares with unfortunately named sovereign alternative

France has officially told Zoom, Teams, and the rest of the US videoconferencing herd to take a hike in favor of its own homegrown app.

Author rabih
27 Jan

Microsoft illegally installed cookies on schoolkid’s tech, data protection ruling finds

Microsoft illegally installed cookies on a school pupil’s devices without consent, according to a ruling by the Austrian data protection authority (DSB). In the second

Author rabih
27 Jan

Celebrating Data Privacy Week with NIST’s Privacy Engineering Program

Credit: NIST Grab your party hats – it’s Data Privacy Week! Data Privacy Week is a global initiative led by the National Cybersecurity Alliance to

Author rabih
Load moreLoadingAll items loaded