Cybersecurity News
Former Uber CSO Charged With Paying ‘Hush Money’ in 2016 Breach Cover-Up

21 August 2020
Grandoreiro banking trojan impersonates Spain’s tax agency
Beware the tax bogeyman – there are tax scams aplenty
The post Grandoreiro banking trojan impersonates Spain’s tax agency appeared first on WeLiveSecurity
21 August 2020
MPs criticise privacy watchdog over NHS test-and-trace data

UK information commissioner ‘must ensure government uses public’s data safely and legally’
A cross-party group of more than 20 MPs has accused the UK’s privacy watchdog of failing to hold the government to account for its failures in the NHS coronavirus test-and-trace programme.
The MPs have urged Elizabeth Denham, the information commissioner, to demand that the government change the programme after it admitted failing to conduct a legally required impact assessment of its privacy implications.
Continue reading...21 August 2020
University of Utah pays $457,000 to ransomware gang
University officials restored from backups, but they had to pay the ransomware gang to prevent them from leaking student data.20 August 2020
Instacart discloses security incident caused by two contractors
Instacart says two employees at a third-party support vendor accessed "more shopper profiles than was necessary."20 August 2020
Smart-Lock Hacks Point to Larger IoT Problems
Two recent reports on smart-locks vulnerabilities show that IoT vendors have a bigger job to do in ensuring their products are safely deployed and configured.20 August 2020
Smart-Lock Hacks Point to Larger IoT Problems
Two recent reports on smart-locks vulnerabilities show that IoT vendors have a bigger job to do in ensuring their products are safely deployed and configured.20 August 2020
Former Uber CSO charged for 2016 hack cover-up
DOJ officials say former Uber CSO Joe Sullivan lied to management about the security breach and paid hush money to the hackers.20 August 2020
Former Uber CSO Charged in Hack Cover-up
The charges stem from a 2016 attack in which 57 million records were breached.20 August 2020
IBM Settles Lawsuit Over Weather Channel App Data Privacy

20 August 2020
ATM makers Diebold and NCR deploy fixes for 'deposit forgery' attacks
ATMs from the two companies had bugs that could have allowed card fraudsters to modify the amount of money they deposited on their card, and then abuse the new account balance for illegal cash withdrawals.20 August 2020
Twitter Hack: The Spotlight that Insider Threats Need
The high profile attack should spur serious board-level conversations around the importance of insider threat prevention.20 August 2020
IBM Db2 Flaw Gives Attackers Read/Write Access to Shared Memory
Researchers discover a lack of explicit memory protections around the shared memory used by the Db2 trace facility.20 August 2020
Transparent Tribe Mounts Ongoing Spy Campaign on Military, Government

20 August 2020
Microsoft Out-of-Band Security Update Fixes Windows Remote Access Flaws

20 August 2020
MFA Mistakes: 6 Ways to Screw Up Multifactor Authentication

20 August 2020
Google fixes major Gmail bug seven hours after exploit details go public
Attackers could have sent spoofed emails mimicking any Gmail or G Suite customer.20 August 2020
Black Hat USA 2020 Musings: Weird and Wonderful Virtual Events are Here to Stay
Black Hat USA 2020 was nothing like an in-person event, but it was incredibly useful for all involved, providing even the most grizzled industry veterans with fresh perspectives.20 August 2020
Senate Bill Would Expand Facial-Recognition Restrictions Nationwide

20 August 2020
Black Hat USA 2020 Recap: Experts Discuss Election Security Questions, but Offer Few Answers
The U.S. election in November is once again expected to be a target of digital adversaries. Experts at Black Hat USA 2020 highlighted the many election security questions authorities must address.20 August 2020