Cybersecurity News


Researchers Explore Details of Critical VMware Vulnerability

The vCenter vulnerability, patched on April 9, could give an intruder access to administrative credentials in three steps.
17 April 2020

Attacks on Linksys Routers Trigger Mass Password Reset

Attacks on Linksys Routers Trigger Mass Password Reset Linksys Smart Wi-Fi users were forced to reset their passwords after researchers discovered a router hack.
17 April 2020

7 Common Questions about CPEs During COVID-19


Continuing professional education is an important component of PCI SSC Qualification. Staying up to date, even during the COVID-19 pandemic, with the latest knowledge, techniques, and insights helps support the Program Participant’s ability to effectively conduct the tasks and responsibilities associated with a PCI SSC Qualification.

17 April 2020

Cybersecurity Home-School: The Robot Project

Cybersecurity Home-School: The Robot Project This fun project can teach your home-bound children and teens about cybersecurity (and keep them occupied for at least a little while).
17 April 2020

Zoom Bombing Attack Hits U.S. Government Meeting

Zoom Bombing Attack Hits U.S. Government Meeting A recent U.S. House Oversight Committee meeting was the latest victim of Zoom bombing, according to an internal letter.
17 April 2020

Hackers Update Age-Old Excel 4.0 Macro Attack

Hackers Update Age-Old Excel 4.0 Macro Attack XLS files sent via emails appear password protected but aren’t, opening automatically to install malware from compromised macros, according to researchers.
17 April 2020

'Look for the Helpers' to Securely Enable the Remote Workforce

CISOs and CIOs, you are our helpers. As you take action to reassure your company, your confidence is our confidence.
17 April 2020

DHS CISA: Companies are getting hacked even after patching Pulse Secure VPNs

Hackers compromised Pulse Secure VPNs, stole AD credentials, and are now using the stolen passwords to access internal networks even after companies patched their VPN servers.
17 April 2020

Week in security with Tony Anscombe

Sextortion-meets-coronavirus scams - The financial loss from coronavirus-themed fraud in America - Is the time ripe for one global set of data privacy rules?

The post Week in security with Tony Anscombe appeared first on WeLiveSecurity

17 April 2020

PoetRAT Trojan targets energy sector using coronavirus lures

Wind turbine operators are the focus of a new data-stealing campaign.
17 April 2020

10 Standout Security M&A Deals from Q1 2020

10 Standout Security M&A Deals from Q1 2020 The first quarter of 2020 brought investments in enterprise IoT and endpoint security, as well as billion-dollar investments from private equity firms.
17 April 2020

Facebook will now warn you if you’ve interacted with fake, dangerous coronavirus posts

The fight against COVID-19 scams, misinformation, and fake cures continues.
17 April 2020

Clipboard hijacking malware found in 725 Ruby libraries

The malware would replace Bitcoin addresses copied to the clipboard with one controlled by the attacker.
17 April 2020

Scams, lies, and coronavirus

Scams demanding bitcoin on pain of infecting you with the coronavirus gain their fair share of shine among schemes with a thin veneer of plausibility

The post Scams, lies, and coronavirus appeared first on WeLiveSecurity

17 April 2020

Academics steal data from air-gapped systems using PC fan vibrations

Israeli researchers use vibrations from CPU, GPU, or PC chassis fans to broadcast stolen information through solid materials and to nearby receives, breaking air-gapped system protections.
17 April 2020

Could Return of Ghost Squad Hackers Signal Rise in COVID-19-Related Hactivism?

New research suggests GSH is active in Southeast Asia following a couple of quiet years.
16 April 2020

Poorly Secured Docker Image Comes Under Rapid Attack

Poorly Secured Docker Image Comes Under Rapid Attack A honeypot experiment shows just how quickly cybercriminals will move to compromise vulnerable cloud infrastructure.
16 April 2020

New PoetRAT Hits Energy Sector With Data-Stealing Tools

New PoetRAT Hits Energy Sector With Data-Stealing Tools A never-before-seen RAT is targeting Azerbaijan energy companies with various tools aimed at stealing credentials and exfiltrating valuable data.
16 April 2020

Neglected Infrastructure, Invasive Tech to Plague Infosec in 2022

Researchers outline cybersecurity threats they predict businesses will face in two years as technology evolves.
16 April 2020

Massive Bot-Enabled Ad Fraud Campaign Targeted Connected TVs

ICEBUCKET operation is the largest ever to attempt to steal from advertisers by using bots to impersonate human smart-TV viewers, White Ops says.
16 April 2020