Cybersecurity News


Turla’s ‘Crutch’ Backdoor Leverages Dropbox in Espionage Attacks

Turla’s ‘Crutch’ Backdoor Leverages Dropbox in Espionage Attacks In a recent cyberattack against an E.U. country's Ministry of Foreign Affairs, the Crutch backdoor leveraged Dropbox to exfiltrate sensitive documents.
02 December 2020

Healthcare 2021: Cyberattacks to Center on COVID-19 Spying, Patient Data

Healthcare 2021: Cyberattacks to Center on COVID-19 Spying, Patient Data The post-COVID-19 surge in the criticality level of medical infrastructure, coupled with across-the-board digitalization, will be big drivers for medical-sector cyberattacks next year.
02 December 2020

Account Hijacking Site OGUsers Hacked, Again

For at least the third time in its existence, OGUsers -- a forum overrun with people looking to buy, sell and trade access to compromised social media accounts -- has been hacked.
02 December 2020

Microsoft Revamps ‘Invasive’ M365 Feature After Privacy Backlash

Microsoft Revamps ‘Invasive’ M365 Feature After Privacy Backlash The Microsoft 365 tool that tracked employee usage of applications like Outlook, Skype and Teams was widely condemned by privacy experts.
02 December 2020

Why I'd Take Good IT Hygiene Over Security's Latest Silver Bullet

Why I'd Take Good IT Hygiene Over Security's Latest Silver Bullet Bells and whistles are great, but you can stay safer by focusing on correct configurations, posture management, visibility, and patching.
02 December 2020

DNS Filtering: A Top Battle Front Against Malware and Phishing

DNS Filtering: A Top Battle Front Against Malware and Phishing Peter Lowe with DNSFilter discusses the science behind domain name system (DNS) filtering and how this method is effective in blocking out phishing and malware.
02 December 2020

Open source software security vulnerabilities exist for over four years before detection

GitHub research suggests there is a need to reduce the time between bug detection and fixes.
02 December 2020

Free Mobile App Measures Your Personal Cyber Risk

Free Mobile App Measures Your Personal Cyber Risk New app for Android and Apple iOS uses an algorithm co-developed with MIT to gauge security posture on an ongoing basis.
02 December 2020

iPhone Bug Allowed for Complete Device Takeover Over the Air

iPhone Bug Allowed for Complete Device Takeover Over the Air Researcher Ian Beer from Google Project Zero took six months to figure out the radio-proximity exploit of a memory corruption bug that was patched in May.
02 December 2020

Absa bank embroiled in data leak, rogue employee accused of theft

Personal information belonging to banking customers was compromised.
02 December 2020

Turla Crutch: Keeping the “back door” open

ESET researchers discover a new backdoor used by Turla to exfiltrate stolen documents to Dropbox

The post Turla Crutch: Keeping the “back door” open appeared first on WeLiveSecurity

02 December 2020

Ivanti announces double acquisition of MobileIron, Pulse Secure in zero-trust security push

Ivanti says the deals strengthen the company in the mobile zero-trust security space.
02 December 2020

Unmanaged Devices Heighten Risks for School Networks

Gaming consoles, Wi-Fi Pineapples, and building management systems are among many devices Armis says it discovered on K-12 school networks.
01 December 2020

Inside North Korea's Rapid Evolution to Cyber Superpower

Researchers examine North Korea's rapid evolution from destructive campaigns to complex and efficient cyber operations.
01 December 2020

Malicious or Vulnerable Docker Images Widespread, Firm Says

A dynamic analysis of the publicly available images on Docker Hub found that 51% had critical vulnerabilities and about 6,500 of the 4 million latest images could be considered malicious.
01 December 2020

Misconfigured Docker Servers Under Attack by Xanthe Malware

Misconfigured Docker Servers Under Attack by Xanthe Malware The never-before-seen Xanthe cryptomining botnet has been targeting misconfigured Docker APIs.
01 December 2020

SASE 101: Why All the Buzz?

SASE 101: Why All the Buzz? Wide area networking and network security services unite to provide secure, cloud-based connectivity for enterprises' remote employees -- and these days that means billions of workers.
01 December 2020

Android Messenger App Still Leaking Photos, Videos

Android Messenger App Still Leaking Photos, Videos The GO SMS Pro app has been downloaded 100 million times; now, underground forums are actively sharing images stolen from GO SMS servers.
01 December 2020

Cayman Islands Bank Records Exposed in Open Azure Blob

Cayman Islands Bank Records Exposed in Open Azure Blob An offshore Cayman Islands bank’s backups, covering a $500 million investment portfolio, were left unsecured and leaking personal banking information, passport data and even online banking PINs.
01 December 2020

Malicious npm packages caught installing remote access trojans

JavaScript and Node.js developers who installed the jdb.js and db-json.js packages were infected with the njRAT malware.
01 December 2020