Cybersecurity News


China-Based Threat Group Launches Widespread Malicious Campaign

The motives behind the attacks remain unclear, but likely triggers include the ongoing trade war between the US and China and the unfolding COVID-19 pandemic.
26 March 2020

Apple iOS users served mobile malware in Poisoned News campaign

As we all devour online news sources in the current climate, cyberattackers are waiting to spring.
26 March 2020

Tokyo Olympics Postponed, But 5G Security Lessons Shine

Tokyo Olympics Postponed, But 5G Security Lessons Shine Threatpost Senior Editor Tara Seals is joined by Russ Mohr, engineer and Apple evangelist at MobileIron along with Jerry Ray, COO at SecureAge, for a discussion about the now postponed Tokyo Games and its use of 5G and the myriad of security concerns Japan is preparing for.
26 March 2020

D-Link and Linksys routers hacked to point users to coronavirus-themed malware

Hackers hijack routers' DNS settings to point users to malware-infected downloads.
26 March 2020

Dark web hosting provider hacked again -- 7,600 sites down

EXCLUSIVE: Dark web hosting provider shuts down after getting hacked for the second time in 16 months.
25 March 2020

Missing Patches, Misconfiguration Top Technical Breach Causes

Less than half of businesses surveyed can patch critical vulnerabilities within 72 hours. Why does the process take so long?
25 March 2020

Apple Update Fixes WebKit Flaws in iOS, Safari

Apple Update Fixes WebKit Flaws in iOS, Safari Apple's security update included a slew of vulnerabilities in various components of iOS, macOS and Safari - the most severe of which could enable remote code execution.
25 March 2020

Tupperware Hit By Card Skimmer Attack

Malicious code was found hidden inside graphics files on the storage container maker's e-commerce website.
25 March 2020

What Should I Do If Someone Is Impersonating My Company in a Phishing Campaign?

What Should I Do If Someone Is Impersonating My Company in a Phishing Campaign? Two security awareness advocates from KnowBe4 provide some solid suggestions.
25 March 2020

US Government Sites Give Bad Security Advice

Many U.S. government Web sites now carry a message prominently at the top of their home pages meant to help visitors better distinguish between official U.S. government properties and phishing pages. Unfortunately, part of that message is misleading and may help perpetuate a popular misunderstanding about Web site security and trust that phishers have been exploiting for years now.
25 March 2020

Public health vs. personal privacy: Choose only one?

As the world turns to technology to track and contain the COVID-19 pandemic, could this sound the death knell for digital privacy?

The post Public health vs. personal privacy: Choose only one? appeared first on WeLiveSecurity

25 March 2020

Do DevOps Teams Need a Company Attorney on Speed Dial?

In today's regulatory and legislative environment, companies and individuals are exposed to lawsuits over security breaches, resulting in significant fines and ending careers.
25 March 2020

Beware of COVID-19 Online Scams and Threats


PCI SSC shares guidance on protecting against COVID-19 scams and threats.

25 March 2020

Tupperware website hacked and infected with payment card skimmer

Malicious code still active at the time of writing.
25 March 2020

Chinese Hackers Exploit Cisco, Citrix Flaws in Massive Espionage Campaign

Chinese Hackers Exploit Cisco, Citrix Flaws in Massive Espionage Campaign Researchers say that APT41's exploits are part of one of the broadest espionage campaigns they've seen from a Chinese-linked actor "in recent years."
25 March 2020

GE Employees Lit Up with Sensitive Doc Breach

GE Employees Lit Up with Sensitive Doc Breach Marriage, divorce and death certificates, beneficiary info, passports and more were all caught up in an email takeover hack.
25 March 2020

FBI Shutters Russian-Based Hacker Platform, Makes Arrest

The Deer.io platform let cybercriminals buy access to virtual storefronts where they could sell illicit products and services.
25 March 2020

COVID-19: Getting Ready for the Next Business Continuity Challenge

What comes after you've empowered your remote workforce in the wake of the coronavirus pandemic? Dealing with a large portion of that workforce getting sick at the same time.
25 March 2020

World Health Organization, Facebook, Microsoft team up in COVID-19 hackathon

#BuildforCOVID19 focuses on the development of technology of value during the coronavirus outbreak.
25 March 2020

TrickBot App Bypasses Non-SMS Banking 2FA

TrickBot App Bypasses Non-SMS Banking 2FA TrickBot victims are being fooled into downloading an app that records their screens - stealing non-SMS 2FA passcodes for banking websites.
25 March 2020