Items tagged with security
by
Nathan Wasson - Wed, Aug 17, 2022
Threat intelligence firm Recorded Future has published a report concerning a long-term credential theft campaign targeting humanitarian, think tank, and government organizations. A hacking group known as RedAlpha is carrying out this...
Read more...
by
Nathan Wasson - Tue, Aug 16, 2022
An Android banking Trojan with an already extensive toolkit recently gained a ransomware module. While banking malware is an all too prevalent a threat for mobile devices, ransomware isn’t a technique commonly deployed against mobile...
Read more...
by
Lane Babuder - Mon, Aug 15, 2022
When you update your virtual meeting software, you usually don't expect some random software to install all on its own or run commands of its own volition. If you use Zoom on a Mac though, that is exactly what is possible. This is thanks...
Read more...
by
Nathan Wasson - Fri, Aug 12, 2022
Facebook’s collection and sale of user data for advertising purposes took a huge hit when Apple introduced its App Tracking Transparency (ATT) feature, with Facebook projecting that it will lose out on $10 billion in revenue this year...
Read more...
by
Lane Babuder - Fri, Aug 12, 2022
It has been a long time coming, but the tech giant Meta has finally realized that its users might just want a little bit of privacy. As of August 11th, it has started testing end-to-end encryption for the Messenger portion of its popular...
Read more...
by
Nathan Wasson - Thu, Aug 11, 2022
Cloudflare says that it was hit by the same smishing (sms phishing) attack that recently resulted in a user data breach at Twilio. However, unlike Twilio, Cloudflare managed to prevent the attack from escalating to a data breach thanks to...
Read more...
by
Mark Tyson - Thu, Aug 11, 2022
Researchers have detailed the SQUIP attack, which is particularly worrisome for users of AMD Zen 1, Zen 2 and Zen 3 processors. Researchers were able measure the precise degree of Scheduler Queue Usage (i.e., occupancy) via Interference...
Read more...
by
Nathan Wasson - Wed, Aug 10, 2022
Microsoft has finally released a security update that addresses a zero-day vulnerability that went unpatched for more than two years. The vulnerability, known as DogWalk, appears in the national vulnerability index as CVE-2022-34713...
Read more...
by
Nathan Wasson - Mon, Aug 08, 2022
If we’ve learned anything from reporting on phishing attacks, it’s that no company, organization, or institution is immune from becoming the victim of one. Even the US Department of Defense recently fell victim to a $23.5 million phishing...
Read more...
by
Lane Babuder - Mon, Aug 08, 2022
We put a lot of faith in the prospect that our information is secure. Unfortunately, this is often just not the case. It is not hard for hackers and security ne'er-do-wells to get access to peoples' accounts when they use weak passwords...
Read more...
by
Nathan Wasson - Thu, Aug 04, 2022
The US Government’s Cybersecurity and Infrastructure Security Agency (CISA) maintains a list of exploited vulnerabilities and releases notices urging organizations, particularly government agencies and contractors, to patch said...
Read more...
by
Nathan Wasson - Wed, Aug 03, 2022
Malware campaigns employ different techniques to smuggle malicious software onto computing devices without the notice of users or anti-virus systems. Threat actors who develop and distribute malware frequently rely on various forms of...
Read more...
by
Nathan Wasson - Tue, Aug 02, 2022
In May of last year, Colonial Pipeline was struck by a ransomware attack, prompting the Colonial Pipeline Company to take certain systems offline in an attempt to contain the attack. As a result, all pipeline operations were temporarily...
Read more...
by
Nathan Wasson - Mon, Aug 01, 2022
Google is engaged in a never ending game of cat and mouse with threat actors on its Play Store who employ different techniques to sneak malware-ridden apps onto the app store. We fairly regularly write about newly discovered batches of...
Read more...
by
Lane Babuder - Mon, Aug 01, 2022
Macros can be highly useful tools in Microsoft Office. Most Microsoft Office macros use Visual Basic for Applications (VBA) or Excel 4.0 macros (XLM). These programming and macro languages have a surprising amount of access to system...
Read more...
by
Chris Goetting - Sat, Jul 30, 2022
Smartphones are inherently personal devices. We use them to help with and document so much of our lives. While data security is always a concern, the physical act of handing our phones over to be serviced can be particularly...
Read more...
by
Nathan Wasson - Fri, Jul 29, 2022
Ransomware can be both disruptive and costly for its victims. A recent report found that the total downtime resulting from ransomware attacks in 2021 cost schools a whopping $3.56 billion. The sudden encryption of data on computer systems...
Read more...
by
Paul Lilly - Wed, Jul 27, 2022
It seems these days that security researchers are sounding the alarm on malicious Androids apps in Google Play at an alarming rate. So it goes again with a fresh reporting highlighting over two dozen Android apps packaged with malware, and...
Read more...
by
Mark Tyson - Wed, Jul 27, 2022
Malware spammers have been sending out emails that leverage a legitimate copy of the Windows Calculator app to sideload malware. This is yet another cunning ploy by cyber threat actors, however the victim would have to willingly go through...
Read more...
by
Lane Babuder - Sat, Jul 23, 2022
Ransomware attacks have been on the rise. This time around, the small Ontario, Canada town of St. Marys has been targeted. The ransomware organization behind the attack seems to be LockBit. So far though, no ransom has been paid. The town...
Read more...
by
Lane Babuder - Thu, Jul 21, 2022
It's that time again, time for the listing of apps that you might have downloaded that contain malware or methods in which to plant malware on your phone. Specifically for those who utilize Android and the Google Play Store these apps flew...
Read more...
by
Paul Lilly - Thu, Jul 21, 2022
A hacker is attempting to sell what they claim is stolen source code and a database of more than 69 million user accounts from Neopets, a popular virtual pets website that launched all the way back in 1999. The official Neopets account on...
Read more...