What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
itsecurityguru.webp 2020-03-18 10:46:26 NutriBullet Hacked By Credit Card Skimmers (lien direct) Threat researchers at security company RiskIQ have identified a cyber-attack against blender vendor NutriBullet that has successfully installed credit card stealing malware on the international nutribullet.com website. Not just once, but three times within three weeks. Source: Forbes Malware
itsecurityguru.webp 2020-03-17 10:21:40 KnowBe4 offers complimentary home security awareness course amidst COVID-19 concerns (lien direct) Given the current state of uncertainty surrounding the coronavirus and many organizations mandating or recommending that employees work from home, KnowBe4 has a few security recommendations: Be on the lookout for emails or text messages related to COVID-19 and confirm the information directly with the vendor, bank or your boss. If an employee will be […]
itsecurityguru.webp 2020-03-17 10:01:21 Government Blockchain Hacked in Argentina (lien direct)  In the midst of the global emergency caused by the Coronavirus pandemic, the Argentine government confirmed on March 14 that they suffered a hack on the website of their official gazette (Boletin Official) based on blockchain technology, where false statements regarding the coronavirus were spread. Source: Cointelegraph   Hack ★★★★
itsecurityguru.webp 2020-03-17 10:00:37 American Health Department Hacked (lien direct)   Cyber-attackers have hacked the US Health and Human Services Department as America works hard to minimize the impact of the COVID-19 virus.  The intrusion occurred on Sunday night and is thought to have been motivated by a desire to slow the agency down and spread misinformation among the public. After compromising the department’s system, […]
itsecurityguru.webp 2020-03-17 10:00:05 2.9 million records exposed by Blisk browser (lien direct)   The web-development browser Blisk suffered a data breach leaking more than 2.9 million records through an open Elasticsearch database that was left open and that bypassed the security put in place by its users. The browser has been compromised in a way that it now leaks the data it was designed to gather from […] Data Breach
itsecurityguru.webp 2020-03-17 09:59:26 Data Breach at Illinois College (lien direct) An Illinois college is offering nearly free credit monitoring to over 1,700 current and former employees following a recent data breach. Officials at the College of DuPage confirmed on Monday that a cybersecurity incident had taken place recently. College president Brian Caputo said that personal and tax information belonging to 1,755 staff had been compromised. […] Data Breach
itsecurityguru.webp 2020-03-17 09:58:44 RAT Malware dropped by Foreign APT groups (lien direct) Each day, as the novel coronavirus multiplies and spreads, so do cyber scams capitalizing on users' fears and thirst for knowledge concerning this pandemic. The perpetrators, and their victims, are based all over the world, as evidenced by two recently discovered global APT-style campaigns designed to spread remote access trojans. Source: SC Magazine Malware
itsecurityguru.webp 2020-03-16 10:49:23 Princess Cruises reports 2019 data breach (lien direct) Princess Cruises has reported a data breach where an unsanctioned third party gained unauthorised access to some employee email accounts that contained personal information regarding its employees, crew, and guests. The company identified suspicious activity on its network in late May 2019, and has identified that the data breach happened between 11 April and 23 […] Data Breach
itsecurityguru.webp 2020-03-16 10:47:43 Ransomware infects through Coronavirus tracker (lien direct) A coronavirus tracking application is actually infecting Android devices with ransomware, with owners then asked to pay a $100 ransom to have their smartphones unlocked. Coronavirus trackers are particularly popular these days, as many users look for such apps to keep an eye on the virus outbreak, so it's not necessarily a surprise that malicious […] Ransomware
itsecurityguru.webp 2020-03-16 10:46:44 Malware stealing social media cookies (lien direct) Researchers at cybersecurity firm Kaspersky have discovered two new Android malware modifications that, when combined, can steal cookies collected by the browser and app of popular social networking sites and then allow the thieves to discreetly gain control of the victim's account in order to send various ill-intentioned content. Source: Express Computer Malware
itsecurityguru.webp 2020-03-16 10:45:40 Iranian App Claimed to Diagnose Coronavirus, Collected Data (lien direct)   On Tuesday, March 3, the smartphones of tens of millions of Iranian citizens beeped in unison. “Dear compatriots, before going to the hospital or health center, install and use this software to determine if you or your loved ones have been infected with the coronavirus,” said the message, which claimed to come from the […]
itsecurityguru.webp 2020-03-16 10:42:38 WordPress to add auto-update (lien direct) The WordPress developer team is working on adding an auto-update mechanism to themes and plugins, a common source of website hacks, primarily because site owners usually install themes and plugins, and then forget to update them. Source: ZD Net
itsecurityguru.webp 2020-03-13 10:30:24 Melbourne Polytechnic data breach (lien direct) UPDATED A higher education institution in Victoria, Australia, has disclosed a data breach impacting the personal data of around 90,000 staff, students, and suppliers. In a security alert issued yesterday (March 11), Melbourne Polytechnic said Victoria Police had notified them that an individual who attended the campus in late 2018 had “obtained unauthorised access to […] Data Breach
itsecurityguru.webp 2020-03-13 10:29:09 (Déjà vu) Data Breach at Open Exchange (lien direct) Open Exchange Rates has announced a data breach that exposed the personal information and salted and hashed passwords for customers of its API service. Open Exchange Rates provides an API that allows organizations to query real-time and historical exchange rates for over 200 world currencies. The service’s web site states that their API is used […] Data Breach
itsecurityguru.webp 2020-03-13 10:28:09 US Cyberspace Solarium Commission warns about cyberattacks (lien direct) The US is at risk of a “catastrophic cyber attack” and the government needs to adopt sweeping structural changes to address cyber security challenges, according to a report from the US Cyberspace Solarium Commission following a year-long investigation. “Our country is at risk, not only from a catastrophic cyber attack but from millions of daily […]
itsecurityguru.webp 2020-03-13 10:27:30 iPhone and iPad apps snoop on data (lien direct)  People copy all sorts of information to their clipboard. It’s something that we’ve been doing for decades, and it’s a practice that’s deeply ingrained. While most of that information is likely to be mundane and boring, there are times when we copy important information, such as passwords, telephone numbers, or financial details. When it comes […]
itsecurityguru.webp 2020-03-13 10:26:43 DoppelPaymer Ransomware Ups Threat Level (lien direct) While ransomware is a serious problem, it is also one that can be handled with proper preparation. An organization that fully backs up its systems at regular intervals can usually avoid a payment simply by restoring files. Cyber crime is a world of constant adaptation and escalation, however, and there has been a dangerous mutation. […] Ransomware Threat
itsecurityguru.webp 2020-03-12 15:25:44 Coronavirus Cyber Advice from the Experts (lien direct) As the COVID-19 virus spreads around the world and we invest in hand sanitiser to protect our physical hygiene, many are falling victim to coronavirus phishing scams and failing to protect their cybersecurity hygiene. In the face of this pandemic and the growing climate of fear and misinformation, leading information security professionals have given their […] Guideline
itsecurityguru.webp 2020-03-12 11:24:38 76,000 fingerprints exposed online by employee ID Company (lien direct)   Nearly 76,000 unique fingerprints were exposed online in an unprotected database bellowing to a Brazilian firm that develops fingerprint identification systems for corporations. Also in the bucket were email addresses and telephone numbers of the employees whose prints were being stored by the company Anteus Tecnolgia. The fingerprint data included ridge bifurcation and ridge […]
itsecurityguru.webp 2020-03-12 11:23:27 Cathay Pacific fined 9.4M for data breach (lien direct)   Aviation giant Cathay Pacific has been slapped with a US$650,000 fine by the UK's Information Commissioner's Office (ICO) for failing to protect customer personal data. According to a statement issued by the regulator, approximately 9.4 million customers had their personal data compromised. The breach encompasses, in varying quantities, details such as names, nationalities, passport […] Data Breach
itsecurityguru.webp 2020-03-12 11:22:42 Phishing campaign claims to give HIV results (lien direct)   Security researchers have uncovered a new phishing scam which lures users into opening a malicious Excel document by pretending to offer their HIV test results. Phishing campaigns have seen a huge increase over the past year as the scammers behind them have begun employing new tactics to trick users into falling for their schemes. […]
itsecurityguru.webp 2020-03-12 11:21:28 Don\'t download this Coronavirus map (lien direct) I've already reported on the dangers online, as hackers hide behind our coronavirus obsession to target us with malicious malware. Well, here's another variation on that theme, with a warning that tempting “Coronavirus Maps” are now being used to plant malware on victims' computers. Reason Labs delved into this particular threat, albeit warnings about the […] Malware
itsecurityguru.webp 2020-03-12 11:05:36 Intimate details exposed by whisper app (lien direct) Private details of around 900 million people have been exposed after an online database containing information of Whisper app users was left online without password protection. Whisper’s core focus is to allow users to anonymously share secrets and has around 30 million monthly active users. Since it was launched in 2012, people have used it […]
itsecurityguru.webp 2020-03-11 14:50:16 Preparing for Large-Scale Remote Working in the Wake of COVID-19 (lien direct) By Elad Shapira, Head of Research at Panorays In the wake of coronavirus, companies are shifting their workforce to remote locations to keep businesses underway. This is an attempt to keep workers healthy and semi-quarantined to protect against the spread of a world pandemic that is not only a threat to health, but also to […] Threat
itsecurityguru.webp 2020-03-11 10:32:28 Cybersecurity Overhaul recommended by Congress (lien direct)  WASHINGTON - A yearlong congressional study of American cyberspace strategy concludes that the United States remains ill-prepared to deter attacks, including from Russia, North Korea and Iran. It calls for an overhaul of how the United States manages its offensive and defensive cyberoperations. The report, mandated by Congress and led by a bipartisan group of […]
itsecurityguru.webp 2020-03-11 10:31:34 (Déjà vu) User data exposed by Entercom (lien direct) US radio giant Entercom reported a data breach that took place in August 2019 after an unauthorized party was able to access database backup files stored third-party cloud hosting services and containing Radio.com user credentials. Entercom’s national network is comprised of more than 235 radio stations broadcasting news, sports, and music across the country and […] Data Breach
itsecurityguru.webp 2020-03-11 10:29:11 Intel graphics drivers flaws patched (lien direct) Intel patched six high-severity flaws in its graphics drivers, as well as other vulnerabilities in its NUC firmware, and a load value injection vulnerability that could allow attackers to steal sensitive data. Intel has issued security patches for six high-severity vulnerabilities in its Windows graphics drivers which, if exploited, could enable escalation of privilege, denial […] Vulnerability
itsecurityguru.webp 2020-03-11 10:28:12 Patch Tuesday (lien direct) It's March 2020 Patch Tuesday and Microsoft has dropped fixes for 115 CVE-numbered flaws: 26 are critical, 88 important, and one of moderate severity. The good news is that none of them under active attack. For the time being, Adobe seems to be skipping this Patch Tuesday and there's no indication whether the customary security […]
itsecurityguru.webp 2020-03-11 10:26:36 Data breach action avoided by Hertfordshire University (lien direct) The University of Hertfordshire has avoided an investigation by the ICO into its data-sharing practices after exposing student information. The security incident took place in November 2019, in which a bulk email promoting an art lecture also included an attachment containing the names and email addresses of approximately 2,000 students. Source: ZD Net Data Breach
itsecurityguru.webp 2020-03-11 10:25:07 The changing role of the DBA (lien direct) Jan Karremans, Director of Sales Engineering at EnterpriseDB Disruption has come to the role of the database administrator (DBA). Automation is eating up tasks typically completed by a DBA – and the technology is evolving to become ever smarter, ever more capable. This automation has sparked concern that humans will inevitably become redundant in running […]
itsecurityguru.webp 2020-03-10 10:18:29 Iran\'s Coronavirus detection app sparks concern (lien direct) Google has removed today an Android app from the official Play Store that was developed by the Iranian government to test and keep track of COVID-19 (coronavirus) infections. Before being removed from the Play Store, controversy surrounded the app, and several users accused the Iranian government of using the COVID-19 scare to trick citizens into […]
itsecurityguru.webp 2020-03-10 10:16:43 North Carolina governments hit by Ransomware (lien direct)   Hackers of “Russian” origin targeted the city and county governments of Durham, N.C., over the weekend, hampering computer and communications networks with ransomware, according to local officials. The attack, which used the infamous Ryuk malware strain typically spread through malicious attachments in phishing emails, was carried out late Friday by a Russian hacking group, […] Ransomware Malware
itsecurityguru.webp 2020-03-10 10:15:58 Coronavirus fears lead to cyber events being cancelled (lien direct)   The global pandemic of Coronavirus, and the concerns of people traveling and gathering indoors at large events, has hit the cybersecurity events calendar with events now being canceled. Initially Mobile World Congress was canceled, after being due to take place in late February, with a statement claiming that this was due to “the global […]
itsecurityguru.webp 2020-03-10 10:13:08 New malware discovery suggests hackers being hacked (lien direct)   A newly discovered malware campaign suggests that hackers have themselves become the targets of other hackers, who are infecting and repackaging popular hacking tools with malware. Cybereason's Amit Serper found that the attackers in this years-long campaign are taking existing hacking tools - some of which are designed to exfiltrate data from a database […] Malware
itsecurityguru.webp 2020-03-10 10:12:27 Massive rise in ransomware attacks in healthcare (lien direct) Ransomware attacks against healthcare providers increased a whopping 350 percent during the last quarter of 2019 with the rapid pace of attacks already continuing throughout 2020, according to a new report from Corvus. Ransomware attacks dominated healthcare headlines during the later part of 2019 with attacks on IT vendors disrupting services on hundreds of dental […] Ransomware
itsecurityguru.webp 2020-03-09 11:27:44 Nation-state groups hack Microsoft Exchange servers (lien direct)  Multiple government-backed hacking groups are exploiting a recently-patched vulnerability in Microsoft Exchange email servers. The exploitation attempts were first spotted by UK cyber-security firm Volexity on Friday and confirmed today to ZDNet by a source in the DOD. Source: ZD Net Hack Vulnerability
itsecurityguru.webp 2020-03-09 10:37:22 Security breach at T-Mobile exposed data of customers and employees (lien direct)   Telecommunications company T-Mobile has revealed that it experienced a security breach which has potentially impacted the account information of both employees and customers. In a notice posted on T-Mobile's official website, the company explained that its cybersecurity team had recently identified and stopped a cyberattack against T-Mobile's email vendor. The attack gave unauthorized access […]
itsecurityguru.webp 2020-03-09 10:36:12 5.5 million 2019 malware attacks in GCC (lien direct)   Trend Micro Incorporated, a global cybersecurity solutions firm, today released its 2019 security roundup report. Ransomware continued to be a mainstay cyber threat last year. Overall, Trend Micro discovered a 10% increase in ransomware detections, despite a 57% decrease in the number of new ransomware families. The healthcare sector remained the most targeted industry, […] Ransomware Malware Threat
itsecurityguru.webp 2020-03-09 10:35:18 New research reveals Cerberus Malware easily preventable (lien direct)   Last month, a Dutch cyber-security firm ThreatFabric discovered the first-ever malware that could hack Google Authenticator application to extract one-time passcodes from a user’s device by taking a screenshot of a user’s screen with Google Authenticator open. The malware, named Cerberus, was under development when it was found and the ThreatFabric report did not […] Malware Hack
itsecurityguru.webp 2020-03-09 10:34:21 Australian watchdog sue Facebook (lien direct)   Australia's information commissioner is suing Facebook over allegedly breaching the privacy of over 300,000 Australians caught up in the Cambridge Analytica scandal. In a case lodged in the federal court on Monday, the Australian information commissioner Angelene Falk has alleged Facebook committed serious and repeated interferences with privacy in contravention of Australian privacy law […]
itsecurityguru.webp 2020-03-06 11:11:47 266,000 Trident Crypto Fund Passwords Stolen (lien direct) In a major privacy breach, the usernames and passwords of more than a quarter of a million Trident Crypto Fund customers have been stolen and published online. Technical director of cybersecurity firm DeviceLock Ashot Oganesyan told Russian news outlet IZ the database - which contains email addresses, cellphone numbers, encrypted passwords and IP addresses - […]
itsecurityguru.webp 2020-03-06 11:10:35 Another data breach at T-Mobile (lien direct)   T-Mobile has begun notifying customers of a security breach that might affect an undetermined number of them, possibly revealing their names and addresses, phone numbers, account numbers, rate plans and features, and billing information. Wireless carriers are a prime target for hackers because they hold large databases of customers and data that command a […] Data Breach
itsecurityguru.webp 2020-03-06 11:07:56 Increase in Coronavirus related fake websites and phishing scams (lien direct)   The research arm of security firm Check Point has found that cybercriminals around the globe have launched phishing and other malware deployment schemes that ride on people’s thirst for information about the coronavirus. In its most recent report, it found that coronavirus-related websites created in January and February of this year are “are 50% […] Malware
itsecurityguru.webp 2020-03-06 11:06:31 Virgin Media data breach (lien direct) A Virgin Media database containing the personal details of 900,000 people was left unsecured and accessible online for 10 months, the company has admitted. The information was accessed “on at least one occasion” by an unknown user. The database, which was for marketing purposes, contained phone numbers, home and email addresses. Source: BBC Data Breach
itsecurityguru.webp 2020-03-06 11:05:52 Intel vulnerability affects new Intel chipsets (lien direct) A vulnerability was found in most of the Intel chipsets released in the last five years that could allow an attacker to extract the chipset key stored on the PCH microchip and obtain access to data encrypted with the key. The issue, CVE-2019-0090, was found by Positive Technologies and resides in the Intel Converged Security […] Vulnerability
itsecurityguru.webp 2020-03-06 09:39:57 Preparing for a Pandemic: (lien direct) The global reach of the coronavirus has elevated the discussion around the need for “social distancing” and working remotely to avoid spreading the infectious virus. Global companies like IBM, Goldman Sachs, and PwC are asking employees to work from home, as are smaller organisations, such as Seattle-based online payment company Stripe. As organisations consider having employees […]
itsecurityguru.webp 2020-03-05 17:13:32 KnowBe4 and Agari Work Together to Transform Phishing Protection (lien direct) According to the FBI Internet Crime Complaint Centre's 2019 Internet Crime Report, phishing was the top crime reported by victims in 2019 with U.S. based fraud losses in excess of $3.5 billion. Other forms of social engineering that use phishing emails as an entry include Business Email Compromise (BEC), which has cost the global economy […]
itsecurityguru.webp 2020-03-05 10:16:19 Gaming company Zynga faces data breach lawsuit (lien direct) A class-action lawsuit has been filed against gaming company Zynga Inc. over a data breach that exposed the personal information of 173 million users.  The casual-gaming giant, which made its name with Farmville, warned mobile players of Words With Friends and Draw Something to update their passwords after the breach occurred in September 2019. Source: […] Data Breach
itsecurityguru.webp 2020-03-05 10:15:09 Advantage Card payments stopped by Boots after cyber-attack (lien direct) Boots has suspended payments using loyalty points in shops and online after attempts to break into customers’ accounts using stolen passwords. Customers will not be able to use Boots Advantage Card points to pay for products while the issue is dealt with. Boots said none of its own systems were compromised, but attackers had tried […]
itsecurityguru.webp 2020-03-05 10:13:14 Mobile malware attacks increasing (lien direct)   Mobile malware attacks are becoming more common as cyber criminals increasingly turn their attention towards smartphones – and they’re ensuring that malicious activity is harder to uncover. According to figures in the newly released McAfee Mobile Threat Report, the total number of detections for different types of mobile malware reached over 35 million during […] Malware Threat
Last update at: 2024-07-04 22:07:39
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter