FreshRSS

πŸ”’
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

/r/netsec's Q2 2024 Information Security Hiring Thread

By /u/netsec_burn β€” April 2nd 2024 at 18:53

Overview

If you have open positions at your company for information security professionals and would like to hire from the /r/netsec user base, please leave a comment detailing any open job listings at your company.

We would also like to encourage you to post internship positions as well. Many of our readers are currently in school or are just finishing their education.

Please reserve top level comments for those posting open positions.

Rules & Guidelines

Include the company name in the post. If you want to be topsykret, go recruit elsewhere. Include the geographic location of the position along with the availability of relocation assistance or remote work.

  • If you are a third party recruiter, you must disclose this in your posting.
  • Please be thorough and upfront with the position details.
  • Use of non-hr'd (realistic) requirements is encouraged.
  • While it's fine to link to the position on your companies website, provide the important details in the comment.
  • Mention if applicants should apply officially through HR, or directly through you.
  • Please clearly list citizenship, visa, and security clearance requirements.

You can see an example of acceptable posts by perusing past hiring threads.

Feedback

Feedback and suggestions are welcome, but please don't hijack this thread (use moderator mail instead.)

submitted by /u/netsec_burn
[link] [comments]
☐ β˜† βœ‡ The Register - Security

OWASP server blunder exposes decade of resumes

April 2nd 2024 at 18:30

Irony alerts: Open Web Application Security Project Foundation suffers lapse

A misconfigured MediaWiki web server allowed digital snoops to access members' resumes containing their personal details at the Open Web Application Security Project (OWASP) Foundation.…

☐ β˜† βœ‡ The Register - Security

Pandabuy confirms crooks nabbed data on 1.3M punters

April 2nd 2024 at 16:30

Nothing says 'sorry' like 10 percent off shipping for a month

Ecommerce platform Pandabuy has apologized after two cybercriminals were spotted hawking personal data belonging to 1.3 million of its customers.…

☐ β˜† βœ‡ The Register - Security

Microsoft warns deepfake election subversion is disturbingly easy

April 2nd 2024 at 15:00

Simple stuff like slapping on a logo fools more folks and travels further

As hundreds of millions of voters around the globe prepare to elect their leaders this year, there's no question that trolls will try to sway the outcomes using AI, according to Clint Watts, general manager of Microsoft's Threat Analysis Center.…

☐ β˜† βœ‡ The Register - Security

Rubrik files to go public following alliance with Microsoft

April 2nd 2024 at 13:30

Cloud cyber resilience model could raise $700M despite $278M losses

Cloud security provider Rubrik has filed for an IPO on the New York Stock Exchange following a flurry of similar flotations.…

☐ β˜† βœ‡ The Register - Security

Polish officials may face criminal charges in Pegasus spyware probe

April 2nd 2024 at 12:00

Victims of the powerful surveillance tool will soon find out the truth

Former Polish government officials may face criminal charges following an investigation into their use of the notorious spyware Pegasus to surveil political opponents and others.…

☐ β˜† βœ‡ The Register - Security

INC Ransom claims to be behind 'cyber incident' at UK city council

April 2nd 2024 at 11:15

This follows attack on NHS services in Scotland last week

The cyber skids at INC Ransom are claiming responsbility for the ongoing cybersecurity incident at Leicester City Council, according to a post caught by eagle-eyed infosec watchers.…

☐ β˜† βœ‡ The Register - Security

Happy 20th birthday Gmail, you're mostly grown up – now fix the spam

April 2nd 2024 at 09:27

Senders of more than 5K messages a day are in the crosshairs

It was 20 years ago on Monday that Google unleashed Gmail on the world, and the chocolate factory is celebrating with new rules that just might, hopefully, cut down on the amount of spam users receive.…

☐ β˜† βœ‡ WIRED

The XZ Backdoor: Everything You Need to Know

By Dan Goodin, Ars Technica β€” April 2nd 2024 at 08:00
Details are starting to emerge about a stunning supply chain attack that sent the open source software community reeling.
☐ β˜† βœ‡ The Register - Security

Apple's GoFetch silicon security fail was down to an obsession with speed

April 2nd 2024 at 07:30

Ye cannae change the laws of physics, but you can change your mind

Opinion Apple is good at security. It's good at processors. Thus GoFetch, a major security flaw in its processor architecture, is a double whammy.…

☐ β˜† βœ‡ The Hacker News

Malicious Code in XZ Utils for Linux Systems Enables Remote Code Execution

By Newsroom β€” April 2nd 2024 at 13:18
The malicious code inserted into the open-source library XZ Utils, a widely used package present in major Linux distributions, is also capable of facilitating remote code execution, a new analysis has revealed. The audacious supply chain compromise, tracked asΒ CVE-2024-3094Β (CVSS score: 10.0), came to light last week when Microsoft engineer and PostgreSQL developer Andres Freund
☐ β˜† βœ‡ The Hacker News

China-linked Hackers Deploy New 'UNAPIMON' Malware for Stealthy Operations

By Newsroom β€” April 2nd 2024 at 11:35
A threat activity cluster tracked asΒ Earth FreybugΒ has been observed using a new malware called UNAPIMON to fly under the radar. "Earth Freybug is a cyberthreat group that has been active since at least 2012 that focuses on espionage and financially motivated activities," Trend Micro security researcher Christopher SoΒ saidΒ in a report published today. "It has been observed to
☐ β˜† βœ‡ The Hacker News

Harnessing the Power of CTEM for Cloud Security

By The Hacker News β€” April 2nd 2024 at 11:27
Cloud solutions are more mainstream – and therefore more exposed – than ever before. In 2023 alone, a staggering 82% of data breaches were against public, private, or hybrid cloud environments. What’s more, nearly 40% of breaches spanned multiple cloud environments. The average cost of a cloud breach was above the overall average, at $4.75 million. In a time where cloud has become the de facto
☐ β˜† βœ‡ The Hacker News

Google to Delete Billions of Browsing Records in 'Incognito Mode' Privacy Lawsuit Settlement

By Newsroom β€” April 2nd 2024 at 07:08
Google has agreed to purge billions of data records reflecting users' browsing activities to settle a class action lawsuit that claimed the search giant tracked them without their knowledge or consent in its Chrome browser. TheΒ class action, filed in 2020, alleged the company misled users by tracking their internet browsing activity who thought that it remained private when using the "
☐ β˜† βœ‡ The Register - Security

Six banks share customer info to help Singapore fight money laundering

April 2nd 2024 at 00:59

Plus: Google Cloud ANZ boss departs; Japan revives airliner ambitions; China-linked attackers target Asian entities

Asia in brief Singapore's Monetary Authority on Monday launched an application, intuitively named "COllaborative Sharing of Money Laundering/TF Information & Cases" (COSMIC for short, obviously) to target money laundering and terrorism financing.…

☐ β˜† βœ‡ The Register - Security

US House of Reps tells staff: No Microsoft Copilot for you!

April 1st 2024 at 22:34

At least not until Redmond's government edition is ready to roll

Staff working at the US House Of Representatives have been barred from using Microsoft's Copilot chatbot and AI productivity tools, pending the launch of a version tailored to the needs of government users.…

☐ β˜† βœ‡ WIRED

The Incognito Mode Myth Has Fully Unraveled

By Dell Cameron, Andrew Couts β€” April 1st 2024 at 21:22
To settle a years-long lawsuit, Google has agreed to delete β€œbillions of data records” collected from users of β€œIncognito mode,” illuminating the pitfalls of relying on Chrome to protect your privacy.
☐ β˜† βœ‡ The Register - Security

Malicious xz backdoor reveals fragility of open source

April 1st 2024 at 21:16

This time, we got lucky. It mostly affected bleeding-edge distros. But that's not a defense strategy

Analysis The discovery last week of a backdoor in a widely used open source compression library called xz could have been a security disaster had it not been caught by luck and atypical curiosity about latency from a Microsoft engineer.…

☐ β˜† βœ‡ The Hacker News

Massive Phishing Campaign Strikes Latin America: Venom RAT Targeting Multiple Sectors

By Newsroom β€” April 2nd 2024 at 04:54
The threat actor known asΒ TA558Β has been attributed to a new massive phishing campaign that targets a wide range of sectors in Latin America with the goal of deploying Venom RAT. The attacks primarily singled out hotel, travel, trading, financial, manufacturing, industrial, and government verticals in Spain, Mexico, the United States, Colombia, Portugal, Brazil, Dominican Republic, and
☐ β˜† βœ‡ Security – Cisco Blog

Cryptocurrency and Blockchain security due diligence: A guide to hedge risk

By Dr. Giannis Tziakouris β€” April 1st 2024 at 16:30

Blockchain technology has experienced remarkable adoption in recent years, driven by its use across a broad spectrum of institutions, governments, retail investors, and users. However, this surge in… Read more on Cisco Blogs

☐ β˜† βœ‡ The Register - Security

Nearly 3M people hit in Harvard Pilgrim healthcare data theft

April 1st 2024 at 14:45

Also, TheMoon botnet back for EoL SOHO routers, Sellafield to be prosecuted for 'infosec failures', plus critical vulns

Infosec in brief Nearly a year on from the discovery of a massive data theft at healthcare biz Harvard Pilgrim, and the number of victims has now risen to nearly 2.9 million people in all US states.…

☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

Last part of Lord Of The Ring0

By /u/Idov31 β€” April 1st 2024 at 13:36

Last chapter of my windows kernel development series with usermode and kernel mode memory patching, AMSI bypass driver and more

submitted by /u/Idov31
[link] [comments]
☐ β˜† βœ‡ The Register - Security

Ex-White House CIO tells The Reg: TikTok ban may be diplomatic disaster

April 1st 2024 at 13:15

Theresa Payton on why US needs a national privacy law

Interview Congress is mulling legislation that will require TikTok's Chinese parent ByteDance to cut ties with the video-sharing mega-app, or the social network will be banned in the USA.…

☐ β˜† βœ‡ The Register - Security

AT&T admits massive 70M+ mid-March customer data dump is real though old

April 1st 2024 at 12:34

Still claims the personal info wasn't stolen from its systems

AT&T confirmed over the weekend that more than 73 million records of its current and former customers dumped on the dark web in mid-March do indeed describe its subscribers, though it still denies the data came direct from its systems.…

☐ β˜† βœ‡ WIRED

A Ghost Ship’s Doomed Journey Through the Gate of Tears

By Matt Burgess β€” April 1st 2024 at 06:00
Millions lost internet service after three cables in the Red Sea were damaged. Houthi rebels deny targeting the cables, but their missile attack on a cargo ship, left adrift for months, is likely to blame.
☐ β˜† βœ‡ The Hacker News

Indian Government Rescues 250 Citizens Forced into Cybercrime in Cambodia

By Newsroom β€” April 1st 2024 at 13:51
The Indian government said it has rescued and repatriated about 250 citizens in Cambodia who were held captive and coerced into running cyber scams. The Indian nationals "were lured with employment opportunities to that country but were forced to undertake illegal cyber work," the Ministry of External Affairs (MEA)Β saidΒ in a statement, adding it had rescued 75 people in the past three
☐ β˜† βœ‡ The Hacker News

Detecting Windows-based Malware Through Better Visibility

By The Hacker News β€” April 1st 2024 at 11:20
Despite a plethora of available security solutions, more and more organizations fall victim to Ransomware and other threats. These continued threats aren't just an inconvenience that hurt businesses and end users - they damage the economy, endanger lives, destroy businesses and put national security at risk. But if that wasn’t enough – North Korea appears to beΒ using revenue from cyber
☐ β˜† βœ‡ The Hacker News

Malicious Apps Caught Secretly Turning Android Phones into Proxies for Cybercriminals

By Newsroom β€” April 1st 2024 at 10:10
Several malicious Android apps that turn mobile devices running the operating system into residential proxies (RESIPs) for other threat actors have been observed on the Google Play Store. The findings come from HUMAN's Satori Threat Intelligence team, which said the cluster of VPN apps came fitted with a Golang library that transformed the user's device into a proxy node without their knowledge.
☐ β˜† βœ‡ The Hacker News

Vultur Android Banking Trojan Returns with Upgraded Remote Control Capabilities

By Newsroom β€” April 1st 2024 at 06:04
The Android banking trojan known as Vultur has resurfaced with a suite of new features and improved anti-analysis and detection evasion techniques, enabling its operators to remotely interact with a mobile device and harvest sensitive data. "Vultur has also started masquerading more of its malicious activity by encrypting its C2 communication, using multiple encrypted payloads that are decrypted
☐ β˜† βœ‡ The Register - Security

Rust developers at Google are twice as productive as C++ teams

March 31st 2024 at 16:33

Code shines up nicely in production, says Chocolate Factory's Bergstrom

Echoing the past two years of Rust evangelism and C/C++ ennui, Google reports that Rust shines in production, to the point that its developers are twice as productive using the language compared to C++.…

☐ β˜† βœ‡ WIRED

You Should Update Apple iOS and Google Chrome ASAP

By Kate O'Flaherty β€” March 31st 2024 at 10:00
Plus: Microsoft patches over 60 vulnerabilities, Mozilla fixes two Firefox zero-day bugs, Google patches 40 issues in Android, and more.
☐ β˜† βœ‡ WIRED

Yogurt Heist Reveals a Rampant Form of Online Fraud

By Andy Greenberg, Andrew Couts β€” March 30th 2024 at 13:00
Plus: β€œMFA bombing” attacks target Apple users, Israel deploys face recognition tech on Gazans, AI gets trained to spot tent encampments, and OSINT investigators find fugitive Amond Bundy.
☐ β˜† βœ‡ Troy Hunt

Weekly Update 393

By Troy Hunt β€” March 30th 2024 at 06:55
Weekly Update 393

A serious but not sombre intro this week: I mentioned at the start of the vid that I had the classic visor hat on as I'd had a mole removed from my forehead during the week, along with another on the back of my hand. Here in Australia, we have one of the highest rates of skin cancer in the world with apparently about two-thirds of us being diagnosed with it before turning 70. At present, the bits they cut off me were entirely unremarkable (small dot about an inch over my left eye if you're really curious), but the point I wanted to make was what I mentioned in the video about us doing annual checks; every year, we voluntarily front up at the GP and he checks (almost) every square inch of skin for stuff that we'd never normally notice but under the microscope, may look a bit dodgy. It's an absolute no-brainer that takes about 10 minutes and if he does decide to remove something, there's another 10 minutes and a stitch. If you're in the sun a lot like us, just do it πŸ™‚

With that community service notice done, let's get into today's video:

Weekly Update 393
Weekly Update 393
Weekly Update 393
Weekly Update 393

References

  1. Sponsored by:Β Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite
  2. A MASSIVE thanks to fellow MVP Daniel Hutmacher who has been invaluable in helping us tune the new SQL bits in HIBP (turns out Daniel listened to this live stream and was happy to be named)
  3. Here's what we've landed on in terms of allowable email address alias patterns (we made it ever so slightly stricter today: no period at the end of the alias and no sequential periods either)
  4. The Prusa MK4 3D printer build is now complete! (finally wrapped it up yesterday after recording this vid, beautiful machine!)
  5. English Cricket suffered a data breach that exposed more than 40k records (queue all sorts of different cricket euphemisms...)

☐ β˜† βœ‡ The Register - Security

Malicious SSH backdoor sneaks into xz, Linux world's data compression library

March 29th 2024 at 21:58

STOP USAGE OF FEDORA RAWHIDE, says Red Hat while Debian Unstable and others also affected

Red Hat on Friday warned that a malicious backdoor found in the widely used data compression software library xz may be present in instances of Fedora Linux 40 and the Fedora Rawhide developer distribution.…

❌