Top

Network security, Security

Ensuring Data Security in Global Talent Outsourcing: Strategies for Mitigating Risks

July 3, 2024

Via: SecureWorld

Organizations increasingly rely on global talent outsourcing to bolster their cybersecurity capabilities. By tapping into a vast pool of skilled professionals worldwide, companies can address skill shortages, optimize costs, and gain access to specialized expertise. However, this trend also introduces […]


Network security, Security

Popular VPN ditches credential logins for Android

July 3, 2024

Via: TechRadar

If you’re an Android user, there’s good news for you: you no longer need to create an account to use Proton VPN – one of the best VPN services on the market. After a successful beta version launched earlier in […]


Data loss, Threats & Malware

Affirm admits customer info pwned in ransomware raid at Evolve Bank

July 2, 2024

Via: The Register

The number of financial institutions caught up in the ransomware attack on Evolve Bank & Trust continues to rise as fintech businesses Wise and Affirm both confirm they have been materially affected. News of Evolve being compromised by extortionists broke […]


Threats & Malware, Vulnerabilities

Thousands of servers could be at risk due to major OpenSSH security flaw

July 2, 2024

Via: TechRadar

OpenSSH, regarded as one of the “most secure software implementations in the world” has a “glaring gap” that allows threat actors to completely take over Linux systems that have it installed, experts have warned. A report from Qualys claims the […]


Editorial

YouTube Scams Exposed: How to Protect Yourself from Cyber Deceptions

July 2, 2024

Via: Mary Gamet

Nowadays, we have to be extra careful when cruising YouTube and its millions of videos. It seems scammers are constantly coming up with new ways to trick users. Even videos with well-known, trustworthy influencers could lead you down a harmful […]


Network security, Security

Nasty regreSSHion bug in OpenSSH puts roughly 700K Linux boxes at risk

July 1, 2024

Via: The Register

Glibc-based Linux systems are vulnerable to a new bug (CVE-2024-6387) in OpenSSH’s server (sshd) and should upgrade to the latest version. Infosec researchers at Qualys published their findings today, revealing that sshd is vulnerable to a race condition that could […]


Network security, Security

Polyfill.io claims reveal new cracks in supply chain, but how deep do they go?

July 1, 2024

Via: The Register

Libraries. Hushed temples to the civilizing power of knowledge, or launchpads of global destruction? Yep, another word tech has borrowed and debased. Code libraries are essential for adding just the right standard tested functionality to a project. They’re also a […]


Editorial

Blackbaud to pay $49.5 million in settlements for 2020 data breach

June 28, 2024

Via: Camila Mendes

With a hefty settlement fee of $49.5 million, Blackbaud’s cybersecurity nightmare has come to an end.  In a damning finding, the Federal Trade Commission concluded that Blackbaud’s “lax security” is what enabled the threat actors to gain access to sensitive […]


Cyber warfare, Cyber-crime

WhisperGate suspect indicted as US offers a $10M bounty for his capture

June 27, 2024

Via: The Register

The US Department of Justice has indicted a 22-year-old Russian for allegedly attacking Ukrainian government computers and destroying critical infrastructure systems in the so-called “WhisperGate” wiper attack that preceded Russia’s illegal invasion of the European nation. If convicted, Amin Timovich […]


Cyber-crime, Malware

Korean telco allegedly infected its P2P users with malware

June 27, 2024

Via: The Register

A South Korean media outlet has alleged that local telco KT deliberately infected some customers with malware due to their excessive use of peer-to-peer (P2P) downloading tools. The number of infected users of “web hard drives” – the South Korean […]


Data loss, Threats & Malware

Microsoft blamed for million-plus patient record theft at US hospital giant

June 26, 2024

Via: The Register

American healthcare provider Geisinger fears highly personal data on more than a million of its patients has been stolen – and claimed a former employee at a Microsoft subsidiary is the likely culprit. Geisinger on Monday announced the results of […]


Threats & Malware, Vulnerabilities

Batten down the hatches, it’s time to patch some more MOVEit bugs

June 26, 2024

Via: The Register

Thought last year’s MOVEit hellscape was well and truly behind you? Unlucky, buster. We’re back for round two after Progress Software lifted the lid on fresh vulnerabilities affecting MOVEit Transfer and Gateway. Progress Software initially contacted users on June 13 […]


Threats & Malware, Vulnerabilities

CISA says crooks used Ivanti bugs to snoop around high-risk chemical facilities

June 25, 2024

Via: The Register

US cybersecurity agency CISA is urging high-risk chemical facilities to secure their online accounts after someone broke into its Chemical Security Assessment Tool (CSAT) portal. CSAT is used by industry facilities that house chemicals of interest, of which there are […]


Cyber-crime, Malware

Ransomware thieves beware

June 25, 2024

Via: The Register

You know that a technology problem is serious when the White House holds a summit about it. Ransomware is no longer a simple nerd-borne irritation; it’s an organized criminal scourge. Research from the Enterprise Systems Group (ESG) found 79 percent […]


Data loss, Threats & Malware

Levi’s and more affected in pants-dropping week of data breaches

June 24, 2024

Via: The Register

There were data breaches galore in the US last week with various major incidents reported to state attorneys general, some in good time, some not. We’ve got our top picks here for you, starting with the US’s most legendary denim […]


Network security, Security

Meta, Microsoft SQL Server make strange bedfellows on a couch of cyber-pain

June 24, 2024

Via: The Register

When two stories from opposite ends of the IT universe boil down to the same thing, sound the klaxons. At the uber-fashionable AI end of tech, Meta has grudgingly complied with a ruling not to feed European social media crap […]


Threats & Malware, Vulnerabilities

Crypto exchange Kraken accuses blockchain security outfit CertiK of extortion

June 21, 2024

Via: The Register

Kraken, one of the largest cryptocurrency exchanges in the world, has accused a trio of security researchers of discovering a critical bug, expoliting it to steal millions in digital cash, then using stolen funds to extort the exchange for more. […]


Threats & Malware, Virus & Malware

Car dealer software bigshot CDK pulls systems offline twice amid ‘cyber incident’

June 21, 2024

Via: The Register

The vendor behind the software on which nearly 15,000 car dealerships across the US rely says an ongoing “cyber incident” has forced it to pull systems offline for a second time in as many days. CDK Global first shut down […]


Cyber warfare, Cyber-crime

Russia’s cyber spies still threatening French national security, democracy

June 20, 2024

Via: The Register

A fresh report into the Nobelium offensive cyber crew published by France’s computer emergency response team (CERT-FR) highlights the group’s latest tricks as the country prepares for a major election and to host this year’s Olympic and Paralympic Games. Most […]


Data loss, Threats & Malware

New Rust-based malware targets Microsoft Windows, abuses Powershell, and steals sensitive info

June 20, 2024

Via: TechRadar

Security pros are warning of a new infostealer being distributed using different methods across the internet. Fickle Stealer does the usual tactics – steals sensitive files, system information, files stored in the browser, cryptocurrency wallet information, and more – but […]