Items tagged with security
by
Lane Babuder - Wed, Feb 09, 2022
Google's flagship phone family sure has had its fair share of ups and downs. The Pixel 3 is no different. Today the down is that the device will receive its final security update. While having one of the best phone cameras at the time of...
Read more...
by
Zak Killian - Wed, Feb 09, 2022
When folks talk about major security flaws like the Log4shell exploit in Log4j, or the Eternal Silence UPnP exploit, everyone tends to panic until they're resolved. That's because those bugs are remotely exploitable, meaning that they can...
Read more...
by
Tim Sweezy - Wed, Feb 09, 2022
The US Department of Justice (DOJ) announced it has seized an estimated $3.6 billion in stolen cryptocurrency. The seizure came along with the arrest of a married couple accused of laundering 119,754 bit coin in an elaborate...
Read more...
by
Nathan Wasson - Tue, Feb 08, 2022
Back in May of last year, we reported on a new campaign by Google to increase user account security through a number of methods. As part of this campaign, Google announced its plans to drive people to use two-factor authentication (2FA)...
Read more...
by
Lane Babuder - Tue, Feb 08, 2022
Since their beginning, macros in Office applications have been both a blessing and a curse for users and system administrators alike. The feature causes significant security woes due to many methods of exploitation in the macro system. Now...
Read more...
by
Nathan Wasson - Mon, Feb 07, 2022
We reported a week ago on a security vulnerability in Windows that multiple publicly available exploits can leverage to gain elevated privileges. We advised readers to apply the patch for this vulnerability as soon as possible, and now the...
Read more...
by
Lane Babuder - Sat, Feb 05, 2022
A new Security Advisory from Cisco has outlined a huge number of security-related vulnerabilities and issues that have been patched in their latest firmware update. The security advisory says to run updates on the devices affected...
Read more...
by
Nathan Wasson - Fri, Feb 04, 2022
A cybersecurity firm just recently discovered a search engine optimization (SEO) poisoning campaign intended to dupe users into installing malware on their computers. The campaign works by leveraging various SEO techniques, such as...
Read more...
by
Paul Lilly - Fri, Feb 04, 2022
Intel has published its 2021 Product Security Report and in it the company suggests its processors are far less buggy than AMD's chips. The key section is on page 28 where Intel highlights having reported 16 CPU vulnerabilities last year...
Read more...
by
Nathan Wasson - Thu, Feb 03, 2022
A trojan known as UpdateAgent began infecting Mac computers back in September 2020, but this infection was relatively innocuous at the time, doing nothing other than collecting some basic system and device information and broadcasting its...
Read more...
by
Tim Sweezy - Thu, Feb 03, 2022
In one of the largest DeFi hacks ever, a hacker is being offered a $10 million bug bounty for the return of stolen money. Wormhole, one of the biggest bridges between Solana and other blockchains, was hacked for approximately $324...
Read more...
by
Nathan Wasson - Wed, Feb 02, 2022
A team from Binarly, a firmware protection company, recently discovered several repeatable anomalies on twenty different enterprise machines in the course of a job for a midsize enterprise company. After looking further into these...
Read more...
by
Paul Lilly - Wed, Feb 02, 2022
If you fancy yourself an elite hacker, there could be an Intel event in your future. The chip maker announced it is expanding its bug bounty program with Project Circuit Breaker, which will provide capable hackers with opportunities to win...
Read more...
by
Nathan Wasson - Wed, Feb 02, 2022
Having entered a new year, cybersecurity experts, researchers, and companies are reflecting on 2021 and assessing the state of cybersecurity so that we can better understand and prepare for threats going forward. Unfortunately, the outlook...
Read more...
by
Paul Lilly - Wed, Feb 02, 2022
Practically anything and everything can be accomplished online these days, and that obviously includes applying for a job. As it relates to that, the Federal Bureau of Investigation (FBI) posted a notice warning that scammers are preying...
Read more...
by
Lane Babuder - Tue, Feb 01, 2022
Researchers say you should upgrade a popular WordPress plugin sooner than later, or else you could end up losing access to your website, and potentially your web server!
If you exist on the internet, you likely know of or have seen at...
Read more...
by
Nathan Wasson - Tue, Feb 01, 2022
Back in 2018, a team of security researchers from Akamai released a white paper detailing a malicious proxy system they dubbed UPnProxy that is now being leveraged in a new attack. The malicious proxy system draws its name from Universal...
Read more...
by
Nathan Wasson - Mon, Jan 31, 2022
A security researcher who goes by the name “RyeLv” recently discovered an elevation of privilege vulnerability in Windows. Microsoft has publicly disclosed the vulnerability and registered it in the Common Vulnerabilities and Exposures...
Read more...
by
Nathan Wasson - Mon, Jan 31, 2022
Many websites and applications employ various device fingerprinting methods to identify users and track their activity across websites and applications over time. The Electronic Frontier Foundation has a good explainer on this subject, as...
Read more...
by
Lane Babuder - Sat, Jan 29, 2022
A Two-Factor Authentication (2FA) app that's been making the rounds on Google Play could steal your banking information, say researchers at Pradeo, a mobile security research and product provider based out of France. According to the team...
Read more...
by
Paul Lilly - Fri, Jan 28, 2022
Remember what life was like before the advent of social media? Such a time feels like ancient history, and many people these days juggle multiple social media accounts, such as Facebook, Twitter, Instagram, and a host of others. They're...
Read more...
by
Jeff Butts - Thu, Jan 27, 2022
A new Android scamware scheme may have cost unsuspecting smartphone owners hundreds of millions of dollars. Dubbed “Dark Herring” by Google App Defense Alliance member Zimperium zLabs, it’s been spotted in 470 different applications on the...
Read more...