Tag: Cybersecurity

Cybersecurity. SEC warns of investment scams related to Hurricane Ida (Pierluigi Paganini, Security Affairs)

The US Securities and Exchange Commission warns investors of potential investment scams that leverages Hurricane Ida as a bait SEC warns of investment scams related to Hurricane...

Cybersecurity. Apple will delay the rollout of new child pornography protection tools (Pierluigi Paganini, Security Affairs)

Apple will delay the introduction of its new child pornography protection tools due to a heated debate raised by privacy advocates Apple will delay the...

Cybersecurity. FIN7 group leverages Windows 11 Alpha-Themed docs to drop Javascript payloads (Pierluigi Paganini, Security Affairs)

FIN7 cybercrime gang used weaponized Windows 11 Alpha-themed Word documents to drop malicious payloads, including a JavaScript backdoor FIN7 group leverages WIN 11 Alpha-Themed docs...

Cybersecurity. Source code for the Babuk is available on a hacking forum (Pierluigi Paganini, Security Affairs)

The complete source code for the Babuk ransomware is available for sale on a Russian-speaking hacking forum Source code for the Babuk is available on...

Italy/Cybersecurity. Fed up with constant cyberattacks, one country is about to make some big changes (Federico Guerrini, ZDNet)

Italy is reinforcing its critical infrastructure with a new cybersecurity agency and fresh EU funding. Image: Getty/Andrea Cherchi Italy has faced a barrage of cyberattacks in...

Cybersecurity. FTC orders SpyFone to delete all of its surveillance data (Charlie Osborne, ZDNet)

The US Federal Trade Commission (FTC) has ordered the developer of the SpyFone spyware app to delete all data that has been collected. On September...

Cybersecurity. Attacks against SolarWinds Serv-U SW were possible due to the lack of ASLR mitigation (Pierluigi Paganini, Security Affairs)

SolarWinds did not enable anti-exploit mitigation available since 2006 allowing threat actors to target SolarWinds Serv-U FTP software in July attacks Attacks against SolarWinds Serv-U...

Cybersecurity. WhatsApp CVE-2020-1910 bug could have led to user data exposure (Pierluigi Paganini, Security Affairs)

The now-fixed CVE-2020-1910 vulnerability in WhatApp ‘s image filter feature could have exposed user data to remote attackers WhatsApp CVE-2020-1910 bug could have led to...

Cybersecurity. New BrakTooth flaws potentially impact millions of Bluetooth-enabled devices (Pierluigi Paganini, Security Affairs)

Security flaws in commercial Bluetooth stacks dubbed BrakTooth can be exploited by threat actors to execute arbitrary code and crash the devices via DoS attacks BrakTooth flaws...

Cybersecurity. Attackers are attempting to exploit recently patched Atlassian Confluence CVE-2021-26084 RCE (Pierluigi Paganini, Security Affairs)

Threat actors are actively exploiting a recently patched vulnerability in Atlassian’s Confluence enterprise collaboration product Attackers are attempting to exploit recently patched Confluence CVE-2021-26084 RCESecurity...

Cybersecurity. Cisco fixes a critical flaw in Enterprise NFVIS for which PoC exploit exists (Pierluigi Paganini, Security Affairs)

Cisco released patches for a critical authentication bypass issue in Enterprise NFV Infrastructure Software (NFVIS) for which PoC exploit code is available Cisco fixes critical...

Cybersecurity. Earnings transcripts mention ‘cybersecurity’ 33% more in H1: report (Jonathan Greig, ZDNet)

Companies are increasingly mentioning cybersecurity in their earnings reports, according to a new study from analytics company GlobalData. In the first half of 2021, mentions of 'cybersecurity'...

Cybersecurity. WhatsApp patches vulnerability related to image filter functionality (Jonathan Greig, ZDNet)

Check Point Research has announced the discovery of a vulnerability in popular messaging platform WhatsApp that allowed attackers to read sensitive information from WhatsApp's...

Cybersecurity. Google paid over $130K in bounty rewards for the issues addressed with the release of Chrome 93 (Pierluigi Paganini, Security Affairs)

Google announced the release of Chrome 93 that addresses 27 security vulnerabilities, 19 issues were reported through its bug bounty program Google paid over $130K...

Cybersecurity. Mozi infections will slightly decrease but it will stay alive for some time to come (Pierluigi Paganini, Security Affairs)

The Mozi botnet continues to spread despite the arrest of its alleged author and experts believe that it will run for many other years Mozi...

Cybersecurity. QNAP will patche OpenSSL flaws in its NAS devices (Pierluigi Paganini, Security Affairs)

Network-attached storage (NAS) appliance maker QNAP is working on security patches for its products affected by recently fixed OpenSSL flaws QNAP will patche OpenSSL flaws in...