FreshRSS

πŸ”’
☐ β˜† βœ‡ ZDNet | security RSS

A hacker gang is wiping Lenovo NAS devices and asking for ransoms

June 29th 2020 at 19:57
Ransom notes signed by 'Cl0ud SecuritY' hacker group are being found on old LenovoEMC NAS devices.
☐ β˜† βœ‡ ZDNet | security RSS

India bans 59 Chinese apps, including TikTok, UC Browser, Weibo, and WeChat

June 29th 2020 at 16:00
Indian government ban comes after the Indian military has clashed with Chinese forces on the country's northern border.
☐ β˜† βœ‡ ZDNet | security RSS

HackerOne's 2020 Top 10 public bug bounty programs

June 29th 2020 at 14:00
The HackerOne bug bounty platform reveals its most successful bug bounty programs.
☐ β˜† βœ‡ ZDNet | security RSS

Michigan tackles compulsory microchip implants for employees with new bill

June 29th 2020 at 11:09
RFID implants for workers are not an issue now, but the state wants to get ahead on what could become a huge privacy problem in the future.
☐ β˜† βœ‡ ZDNet | security RSS

SEC warns off investment in iBSmartify Nigeria cryptocurrencies

June 29th 2020 at 10:09
iBledger and InksNation are unregistered, and therefore a financial risk outside of the local commission’s regulatory protections.
☐ β˜† βœ‡ ZDNet | security RSS

Russian leader of Infraud stolen ID, credit card ring pleads guilty

June 29th 2020 at 09:23
The Infraud Organization was once known as a major player in the carding world.
☐ β˜† βœ‡ ZDNet | security RSS

Apple strong-arms entire CA industry into one-year certificate lifespans

June 28th 2020 at 22:56
Apple, Google, and Mozilla reduce the lifespan for HTTPS certificates to 398 days, against the wishes of Certificate Authorities.
☐ β˜† βœ‡ ZDNet | security RSS

Apple declined to implement 16 Web APIs in Safari due to privacy concerns

June 28th 2020 at 16:55
Apple said these 16 new Web APIs add new user fingerprinting opportunities for online advertisers.
☐ β˜† βœ‡ ZDNet | security RSS

Adobe, Mastercard, Visa warn online store owners of Magento 1.x EOL

June 27th 2020 at 12:58
Almost 110,000 online stores are still running the soon-to-be-outdated Magento 1.x CMS.
☐ β˜† βœ‡ ZDNet | security RSS

Docker servers infected with DDoS malware in extremely rare attacks

June 26th 2020 at 16:04
Most Docker servers are usually infected with cryptocurrency-mining malware.
☐ β˜† βœ‡ ZDNet | security RSS

Credit card skimmers are now being buried in image file metadata on e-commerce websites

June 26th 2020 at 10:52
Magecart attackers are suspected of using an interesting technique to steal your financial data.
☐ β˜† βœ‡ ZDNet | security RSS

More than 75% of all vulnerabilities reside in indirect dependencies

June 26th 2020 at 10:08
JavaScript, Ruby, and Java are the ecosystems with most bugs in indirect dependencies.
☐ β˜† βœ‡ ZDNet | security RSS

Nvidia squashes display driver code execution, information leak bugs

June 26th 2020 at 09:36
The vulnerabilities impact both Windows and Linux machines.
☐ β˜† βœ‡ ZDNet | security RSS

DDoS botnet coder gets 13 months in prison

June 26th 2020 at 00:17
Kenneth Schuchman, known as Nexus Zeta, created multiple DDoS botnets, including Satori, Okiru, Masuta, and Fbot/Tsunami.
☐ β˜† βœ‡ ZDNet | security RSS

Apple adds support for encrypted DNS (DoH and DoT)

June 25th 2020 at 19:18
Apple said this week that iOS 14 and macOS 11 will support the DNS-over-HTTPS and DNS-over-TLS protocols.
☐ β˜† βœ‡ ZDNet | security RSS

Chinese bank forced western companies to install malware-laced tax software

June 25th 2020 at 17:30
GoldenSpy backdoor trojan found in a Chinese bank's official tax software, which the bank has been forcing western companies to install.
☐ β˜† βœ‡ ZDNet | security RSS

Lucifer: Devilish malware that abuses critical vulnerabilities on Windows machines

June 25th 2020 at 08:31
Researchers say the powerful malware has been β€œwreaking havoc” on Windows hosts.
☐ β˜† βœ‡ ZDNet | security RSS

FBI warns K12 schools of ransomware attacks via RDP

June 25th 2020 at 07:36
The FBI has issued a security alert warning K12 schools of the "ransomware threat" during the COVID-19 pandemic.
☐ β˜† βœ‡ ZDNet | security RSS

WikiLeaks founder charged with conspiring with Anonymous and LulzSec hackers

June 24th 2020 at 23:47
US Department of Justice claims Assange tried to recruit hackers to commit crimes on his behalf. One of the hackers was an FBI informant, said the FBI.
☐ β˜† βœ‡ ZDNet | security RSS

Zoom hires Jason Lee from Salesforce to serve as new CISO

June 24th 2020 at 19:33
Lee to become Zoom's new CISO starting June 29, next week.
☐ β˜† βœ‡ ZDNet | security RSS

Sony launches PlayStation bug bounty program with rewards of $50K+

June 24th 2020 at 18:45
Sony will pay security researchers for bugs in the PlayStation 4 gaming console, its operating system, official PS4 accessories, but also the PlayStation Network and related websites.
☐ β˜† βœ‡ ZDNet | security RSS

CryptoCore hacker group has stolen more than $200m from cryptocurrency exchanges

June 24th 2020 at 13:39
The hacker group is believed to operate out of Eastern Europe, based on current evidence.
☐ β˜† βœ‡ ZDNet | security RSS

New Zealand freezes $90 million in BTC-e money laundering case

June 24th 2020 at 10:25
The ongoing case claims the owner of BTC-e permitted the platform to be used for money laundering.
☐ β˜† βœ‡ ZDNet | security RSS

New ransomware masquerades as COVID-19 contact-tracing app on your Android device

June 24th 2020 at 09:10
The malware surfaced just days after health officials in Canada announced the launch of a tracing app in the fight against COVID-19.
☐ β˜† βœ‡ ZDNet | security RSS

Twitter bans DDoSecrets account over 'BlueLeaks' police data dump

June 23rd 2020 at 23:13
Twitter said DDoSecrets account leaked and promoted BlueLeaks, a huge collection of files stolen from more than 200 US police departments and fusion training centers.
☐ β˜† βœ‡ ZDNet | security RSS

Microsoft releases first public preview of its Defender antivirus on Android

June 23rd 2020 at 17:13
UPDATE: Microsoft Defender ATP for Linux has also exited public preview and is now generally available for all users.
☐ β˜† βœ‡ ZDNet | security RSS

New WastedLocker ransomware demands payments of millions of USD

June 23rd 2020 at 12:00
Evil Corp, one of the biggest malware operations on the planet, has returned to life after the December 2019 DOJ charges with a new ransomware strain.
☐ β˜† βœ‡ ZDNet | security RSS

80,000 printers are exposing their IPP port online

June 23rd 2020 at 08:47
Printers are leaking device names, locations, models, firmware versions, organization names, and even WiFi SSIDs.
☐ β˜† βœ‡ ZDNet | security RSS

Microsoft's 'Safe Documents' feature reaches general availability in Office 365

June 23rd 2020 at 06:34
New Safe Documents feature available for all Office 365 E5 license holders.
☐ β˜† βœ‡ ZDNet | security RSS

New privacy and security features announced at Apple's WWDC 2020

June 22nd 2020 at 18:40
Proxy location sharing, new app privacy disclosure prompts, new webcam and microphone indicator in the iOS status bar.
☐ β˜† βœ‡ ZDNet | security RSS

BlueLeaks: Data from 200 US police departments & fusion centers published online

June 22nd 2020 at 08:54
Activist group DDoSecrets published 296 GB of police data on Friday, June 19.
☐ β˜† βœ‡ ZDNet | security RSS

Adobe wants users to uninstall Flash Player by the end of the year

June 20th 2020 at 09:10
Adobe Flash Player will reach End-Of-Life on December 31, 2020.
☐ β˜† βœ‡ ZDNet | security RSS

AMD says it will fix new CPU bugs by the end of June 2020

June 20th 2020 at 06:00
AMD Accelerated Processing Unit (APU) processors released between 2016 and 2019 impacted by new "SMM Callout" bugs.
☐ β˜† βœ‡ ZDNet | security RSS

Academics studied DDoS takedowns and said they're ineffective, recommend patching vulnerable servers

June 19th 2020 at 17:31
The volume of DDoS traffic to victims remained the same. The number of DDoS-for-hire domains went up.
☐ β˜† βœ‡ ZDNet | security RSS

Elon Musk Bitcoin vanity addresses used to scam users out of $2 million

June 19th 2020 at 13:46
While Bitcoin giveaway scams have been around for more than two years, new trick helps scammers net massive profits.
☐ β˜† βœ‡ ZDNet | security RSS

Mozilla to launch VPN product 'in the next few weeks'

June 18th 2020 at 21:29
Mozilla VPN to exit beta this summer. Future plans include launching a Mac client. Currently only available on Windows, Android, iOS, and Firefox extension.
☐ β˜† βœ‡ ZDNet | security RSS

Facebook sues websites that sold Instagram likes and scraped Facebook user data

June 18th 2020 at 18:55
Facebook files lawsuits against MGP25 Cyberint Services in Spain and against Massroot8 in the US.
☐ β˜† βœ‡ ZDNet | security RSS

Russia unbans Telegram

June 18th 2020 at 16:49
Russia's media watchdog Roskomnadzor said Telegram has agreed to help Russian law enforcement fight against extremist and terrorist content shared on its platform.
☐ β˜† βœ‡ ZDNet | security RSS

Google removes 106 Chrome extensions for collecting sensitive user data

June 18th 2020 at 15:09
Security firm identifies 111 malicious Chrome extensions collecting user keystrokes, clipboard content, cookies, more.
☐ β˜† βœ‡ ZDNet | security RSS

Unpatched vulnerability identified in 79 Netgear router models

June 18th 2020 at 11:41
Bug lets attackers run code as "root" on vulnerable routers. Impacted routers go back to 2007.
☐ β˜† βœ‡ ZDNet | security RSS

Microsoft: COVID-19 malware attacks were barely a blip in total malware volume

June 18th 2020 at 07:10
COVID-19-themed malware attacks began in February, peaked in March, and are slowly dying out.
☐ β˜† βœ‡ ZDNet | security RSS

Zoom backtracks and plans to offer end-to-end encryption to all users

June 17th 2020 at 17:33
E2EE calls were initially planned for Zoom paying customers only, but the company has reconsidered following the public's outcry.
☐ β˜† βœ‡ ZDNet | security RSS

AWS said it mitigated a 2.3 Tbps DDoS attack, the largest ever

June 17th 2020 at 16:03
The previous record for the largest DDoS attack ever recorded was of 1.7 Tbps, recorded in March 2018.
☐ β˜† βœ‡ ZDNet | security RSS

North Korea's state hackers caught engaging in BEC scams

June 17th 2020 at 09:30
ESET researchers said they spotted North Korean state-sponsored hackers attempting to steal money from targets they initially breached for cyber-espionage purposes.
☐ β˜† βœ‡ ZDNet | security RSS

Super secretive Russian disinfo operation discovered dating back to 2014

June 16th 2020 at 18:19
Researchers uncover six-years-worth of Russian attempts to mold international politics using fake news and forged documents.
☐ β˜† βœ‡ ZDNet | security RSS

Avon recovering after mysterious cyber-security incident

June 16th 2020 at 14:54
Parts of the Avon It network has been down since last week, according to SEC documents.
☐ β˜† βœ‡ ZDNet | security RSS

Ripple20 vulnerabilities will haunt the IoT landscape for years to come

June 16th 2020 at 13:00
Security researchers disclose 19 vulnerabilities impacting a TCP/IP library found at the base of many IoT products.
☐ β˜† βœ‡ ZDNet | security RSS

Old GTP protocol vulnerabilities will also impact future 5G networks

June 15th 2020 at 23:22
Bugs allow denial-of-service, user impersonation, user tracking, and fraud attacks, two separate reports warn.
☐ β˜† βœ‡ ZDNet | security RSS

South African bank to replace 12m cards after employees stole master key

June 15th 2020 at 14:40
Postbank says employees printed its master key at one of its data centers and then used it to steal $3.2 million.
☐ β˜† βœ‡ ZDNet | security RSS

Intel brings novel CET technology to Tiger Lake mobile CPUs

June 15th 2020 at 13:00
Intel says CET can protect against ROP/JOP/COP malware.
☐ β˜† βœ‡ ZDNet | security RSS

Web skimmers found on the websites of Intersport, Claire's, and Icing

June 15th 2020 at 08:01
The malicious code has now been removed from all stores, but users are advised to review card statements for suspicious transactions.
☐ β˜† βœ‡ ZDNet | security RSS

Lamphone attack lets threat actors recover conversations from your light bulb

June 13th 2020 at 17:45
Academics record light variations in a light bulb to recover the sound waves (speech, conversations, songs) from a room 25 meters (80 feet) away.
☐ β˜† βœ‡ ZDNet | security RSS

Russia says Germany has not provided any evidence of Bundestag hack

June 12th 2020 at 14:36
Germany may seek to impose sanctions on Russia, rather than actually trial the hacker.
☐ β˜† βœ‡ ZDNet | security RSS

Stalkerware detection rates are improving across antivirus products

June 12th 2020 at 12:07
Between November 2019 and May 2020, Android and Windows antivirus software got better at detecting stalkerware.
☐ β˜† βœ‡ ZDNet | security RSS

Italian company exposed as a front for malware operations

June 12th 2020 at 08:52
Italian company CloudEyE is believed to have made more than $500,000 from selling its binary crypter to malware gangs.
☐ β˜† βœ‡ ZDNet | security RSS

Twitter bans 32k accounts pushing Chinese, Russian, and Turkish propaganda

June 11th 2020 at 21:44
All three networks targeted local users for the benefit of the ruling political party.
☐ β˜† βœ‡ ZDNet | security RSS

Knoxville shuts down IT network following ransomware attack

June 11th 2020 at 20:22
Knoxville joins a list that also includes Atlanta, Baltimore, Denver, and New Orleans.
☐ β˜† βœ‡ ZDNet | security RSS

Congress wants to know what commercial spyware other countries are using

June 11th 2020 at 17:41
Intelligence funding bill for 2021 to mandate DNI to submit report to Congress about surveillance vendors and the countries that use spyware.
☐ β˜† βœ‡ ZDNet | security RSS

Hackers breached A1 Telekom, Austria's largest ISP

June 11th 2020 at 10:35
A1 needed more than six months to kick the hackers off its network. Whsitleblower claims the intruders were Chinese hackers.
☐ β˜† βœ‡ ZDNet | security RSS

Microsoft discovers cryptomining gang hijacking ML-focused Kubernetes clusters

June 11th 2020 at 07:55
Attacks targeted Kubeflow servers that left their administration panel exposed on the internet.
❌