Items tagged with security
by
Chris Goetting, Aaron Leong - Fri, Sep 09, 2022
Scammers and fraudsters have been targeting YouTube creators with sophisticated email campaigns. The emails pose as legitimate notices from Google which claim to be a copyright report and possible strike against the channel. These include...
Read more...
by
Nathan Wasson - Thu, Sep 08, 2022
The outdoor recreational apparel brand The North Face has reportedly been hit by a major credential stuffing attack. In a credential stuffing attack, threat actors take user login credentials exposed in unrelated data breaches and enter...
Read more...
by
Nathan Wasson - Wed, Sep 07, 2022
Cybersecurity researchers from Palo Alto Networks’ Unit 42 have discovered a campaign exploiting multiple vulnerabilities in D-Link routers to spread botnet malware. A botnet is a network of compromised consumer or enterprise devices...
Read more...
by
Lane Babuder - Wed, Sep 07, 2022
The international phenoms that are Minecraft and Roblox are practically ubiquitous in gaming today. The two games are available on multiple platforms including consoles, PC, and even mobile devices. Unfortunately, their significant...
Read more...
by
Nathan Wasson - Tue, Sep 06, 2022
Last week, Microsoft revealed a vulnerability in the TikTok Android app that threat actors potentially could have exploited to hijack TikTok user accounts with a single click. Fortunately, TikTok patched the vulnerability earlier this year...
Read more...
by
Lane Babuder - Tue, Sep 06, 2022
Ransomware attacks have been targeting school districts, hospitals, government organizations, businesses, and even hospitals in recent years. It's a rather nasty piece of work; it can cause loss of data, stolen data, more viruses, and even...
Read more...
by
Paul Lilly - Tue, Sep 06, 2022
It's been several days since Google began rolling out an important security update for its Chrome browser, but even so, there's no guarantee that it's been applied on your system yet. Given the acknowledgement that the patched flaw is one...
Read more...
by
Nathan Wasson - Mon, Sep 05, 2022
A nasty bit of Android malware previously lurking on the Google Play Store has returned with additional capabilities. Known as SharkBot, the malware is designed to steal user login credentials, particularly credentials used to access...
Read more...
by
Lane Babuder - Sat, Sep 03, 2022
On September 2, 2022, Samsung reported that it had discovered a security breach of their U.S. systems. Unfortunately for some Samsung customers, this means that their personal information may have leaked out into the wild. The report...
Read more...
by
Nathan Wasson - Thu, Sep 01, 2022
A new report by Microsoft details a vulnerability in the TikTok Android app that threat actors could have exploited to hijack user accounts with a single click. The vulnerability appears in the National Vulnerability Database with the...
Read more...
by
Tim Sweezy - Thu, Sep 01, 2022
If you are still using an iPhone 5S, 6 or 6 Plus, you have a rare OS update to download. Apple released an update on Wednesday for iOS 12 that patches a security hole already fixed in its newer versions of iOS.
It seems older...
Read more...
by
Ryan Whitwam - Wed, Aug 31, 2022
The James Webb Space Telescope (JWST) came online this year after more than 20 years of design and development. It's a real watershed moment for astronomy, and unfortunately, yet another way for internet ne'er-do-wells to distribute...
Read more...
by
Lane Babuder - Sun, Aug 28, 2022
Do you ever feel like company advertisers are doing more than listening to you? Let's face it, they probably are. You might be concerned to hear that your pocket smart device is also tracking where you are. This is not new information for...
Read more...
by
Nathan Wasson - Fri, Aug 26, 2022
The password manager LastPass has published a blog post notifying users of a recent data breach. According to the CEO, Karim Toubba, the breach affected parts of the company’s development environment but did not touch any databases...
Read more...
by
Zak Killian - Fri, Aug 26, 2022
Back in January of this year, a group of developers serving as white-hat hackers warned the "Souls" community of a serious Remote Code Execution (RCE) exploit that they found in FromSoftware's fantasy RPG series. The games' online play was...
Read more...
by
Nathan Wasson - Thu, Aug 25, 2022
A new report by cybersecurity firm Mandiant details an ongoing hacking campaign targeting Microsoft 365. The threat actor behind this campaign is an advanced persistent threat (APT) known as “Cozy Bear” or simply “APT29.” APT29 is thought...
Read more...
by
Nathan Wasson - Wed, Aug 24, 2022
Plex, a company that provides media streaming solutions, sent out emails early this morning informing users of a data breach. According to the notice, Plex launched an investigation yesterday after discovering suspicious activity on one of...
Read more...
by
Chris Goetting - Wed, Aug 24, 2022
Successful hacking involves more than just gaining unauthorized access to a system. Once inside, malicious actors like to cover their tracks not only to prevent getting caught, but also to maximize how much data they can extract. To this...
Read more...
by
Nathan Wasson - Tue, Aug 23, 2022
Over the weekend, a ransomware attack hit a French hospital, forcing the facility to turn away patients. The staff of the affected hospital, the Centre Hospitalier Sud Francilien (CHSF), has had to return to using pen and paper to keep...
Read more...
by
Lane Babuder - Tue, Aug 23, 2022
It appears as though the Meta-owned image-sharing social media app Instagram is testing a new feature internally. That feature is known as Candid Challenges. The feature is intended to notify people that they have two minutes to take out...
Read more...
by
Lane Babuder - Fri, Aug 19, 2022
Security researcher Michael Horowitz, not to be confused with the current United States Inspector General, has been updating a blog post titled "VPNs on iOS are a scam" ever since May 2022. The rather lengthy post goes into detail about...
Read more...
by
Nathan Wasson - Fri, Aug 19, 2022
We wrote last week about research showing that Meta takes advantage of the in-app browser feature on mobile devices to inject JavaScript into web pages viewed in the Facebook, Instagram, and Messenger mobile apps. Now that same researcher...
Read more...