Cybersecurity News
Emotet Malware Uninstalled from Infected Devices
A law enforcement update deployed to compromised machines in January has been pushed, effectively removing the malware.27 April 2021
Linux Kernel Bug Opens Door to Wider Cyberattacks
The information-disclosure flaw allows KASLR bypass and the discovery of additional, unpatched vulnerabilities in ARM devices.27 April 2021
10K Hackers Defend the Planet Against Extraterrestrials
Hack the Planet's Cyber Apocalypse capture-the-flag contest attracts 10,000 competitors from across the globe.27 April 2021
Ransomware Recovery Costs Near $2M
The cost of recovering from a ransomware attack has more than doubled in one year, Sophos researchers report.27 April 2021
4 Ways CISOs Can Strengthen Their Security Resilience
Security pros must remember bad actors will target their infrastructure, using counter-incident response technology in the process.27 April 2021
Smishing: Why Text-Based Phishing Should Be on Every CISO’s Radar
Phil Richards, Chief Security Officer at Ivanti, discusses dramatic growth in smishing and what to do about it.27 April 2021
Apple patches severe macOS security flaw
Mac users are being urged to update to macOS Big Sur 11.3 as at least one threat group is exploiting the zero-day bug to sneak past the operating system’s built-in security mechanisms
The post Apple patches severe macOS security flaw appeared first on WeLiveSecurity
27 April 2021
Babuk Ransomware Gang Targets Washington DC Police
The RaaS developers thumbed their noses at police, saying “We find 0 day before you.”27 April 2021
Expect an Increase in Attacks on AI Systems
Companies are quickly adopting machine learning but not focusing on how to verify systems and produce trustworthy results, new report shows.27 April 2021
XDR: A Game-Changer in Enterprise Threat Detection
Omdia's Eric Parizo highlights four capabilities that show how XDR technology is reinventing enterprise threat detection.27 April 2021
Challenging Our Education System to Nurture the Cyber Pipeline
Let's teach students how to teach themselves. Once we do that, we will have taught a generation of students how to think like hackers.27 April 2021
Apple Patches Zero-Day MacOS Bug That Can Bypass Anti-Malware Defenses
A variant of Mac No. 1 threat Shlayer since January already has been exploiting the vulnerability, which allows payloads to go unchecked through key OS security features.27 April 2021
Adobe releases open source ‘one-stop shop’ for security threat, data anomaly detection
The project is focused on data processing efficiency and improving threat log data analysis.27 April 2021
US Urges Organizations to Implement MFA, Other Controls to Defend Against Russian Attacks
Actors working for Moscow's Foreign Intelligence Service are actively targeting organizations in government and other sectors, FBI and DHS say.26 April 2021
Apple Patches Serious MacOS Security Flaw
The bug can put Mac users at "grave risk" as it allows attackers to bypass Apple's security mechanisms, a researcher reports.26 April 2021
In Appreciation: Dan Kaminsky
Beloved security industry leader and researcher passes away unexpectedly at the age of 42.26 April 2021
Experian’s Credit Freeze Security is Still a Joke
In 2017, KrebsOnSecurity showed how easy it is for identity thieves to undo a consumer's request to freeze their credit file at Experian, one of the big three consumer credit bureaus in the United States. Last week, KrebsOnSecurity heard from a reader who had his freeze thawed without authorization through Experian's website, and it reminded me of how truly broken authentication and security remains in the credit bureau space.26 April 2021
Flubot Spyware Spreading Through Android Devices
The malware is spreading rapidly through ‘missed package delivery’ SMS texts, prompting urgent scam warnings from mobile carriers.26 April 2021
Proofpoint to Be Acquired by Thoma Bravo for $12.3B
The cybersecurity company will go private following the all-cash transaction.26 April 2021
Nvidia Warns: Severe Security Bugs in GPU Driver, vGPU Software
The gaming- and AI-friendly graphics accelerators can open the door to a range of cyberattacks.26 April 2021