What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
itsecurityguru.webp 2018-04-24 10:06:01 Connectivity is driving the manufacturing boom, but beware of unwanted attention (lien direct) The manufacturing industry is among the most advanced in the world for its adoption of digital platforms. Robotic and connected sensor technology are now mainstream throughout most factories, allowing manufacturers to gather insights in real time. The use of digital technology in manufacturing is nothing new, it has been embedded within processes for decades, and ...
itsecurityguru.webp 2018-04-24 10:04:03 What exactly is \'cryptojacking\', and how can businesses respond to the spiralling cyber threat? (lien direct) Earlier this month, the National Cyber Security Centre (NCSC) published a report listing 'cryptojacking' as one of the biggest cyber threats facing UK businesses. The report warned that up to 55% of businesses globally are already affected by these types of attacks, and that this figure is set to only rise as attackers exploit new ...
itsecurityguru.webp 2018-04-23 09:49:03 (Déjà vu) SunTrust Bank employee steals data of 1.5 million customers (lien direct) US-based SunTrust Bank said it is working with law enforcement after it discovered that a former employee had stolen private information belonging to nearly 1.5 million customers. “In conjunction with law enforcement, we discovered that a former employee while employed at SunTrust may have attempted to print information on approximately 1.5 million clients and share ... ★★
itsecurityguru.webp 2018-04-23 09:44:04 Cybersecurity PR Agency Eskenzi honoured with the Queen\'s Award for Enterprise 2018 (lien direct) The cybersecurity industry is being treated to a rare regal flare, as Eskenzi PR and Marketing is presented with the Queen's Award for Enterprise 2018. Eskenzi PR Ltd is a specialist agency, working closely with the very best cyber security companies in the world, including those coming out of Israel, Silicon Valley, Europe and of ... ★★★★★
itsecurityguru.webp 2018-04-23 09:30:03 The digital gold rush: the dark side of cryptocurrency adds to the infosec challenge (lien direct) As the general public tried to get its head around the concept of cryptocurrency and blockchain at the back-end of 2017, infosecurity professionals were facing one of the universal truths of our industry: whenever there is an innovation in technology or society, those who want to exploit it for illicit gain are never far behind. ... ★★
itsecurityguru.webp 2018-04-23 09:28:01 Positive Technologies uncovers critical vulnerabilities in APC uninterrupted power supplies (lien direct) Positive Technologies experts Ilya Karpov, Evgeny Druzhinin, and Stephen Nosov have discovered four vulnerabilities in management cards for APC by Schneider Electric hardware. These uninterrupted power supply (UPS) units are used in various sectors. Two of the vulnerabilities received the maximum possible CVSS v3 score of 10, indicating a very high degree of risk.     Security issues ... ★★★★
itsecurityguru.webp 2018-04-23 09:26:04 The importance of inspecting encrypted traffic (lien direct) Many adversaries to enterprise cybersecurity are using sophisticated encryption tactics to bypass defences and infiltrate networks. Enterprises are trying to fight back by employing HTTPS and using SSH, as well as other advanced protocols for data exfiltration. SSH, for example, is often used for remote management access because it performs well. But, when nearly 70 ...
itsecurityguru.webp 2018-04-21 10:00:01 Cyber Security Agency Eskenzi PR wins a Queen\'s Award for Enterprise 2018 (lien direct) Her Majesty The Queen, advised by the Prime Minister, has honoured Eskenzi PR and Marketing with a Queen's Award for Enterprise 2018, recognising its outstanding achievement in International Trade. Eskenzi has been in business for over twenty years, working with cyber security companies all over the world, to raise awareness of security issues organisations face ...
itsecurityguru.webp 2018-04-20 10:21:03 AWS server found unprotected exposing data on 48 million people (lien direct) LocalBlox, a company that scrapes data from public web profiles, has left the details of over 48 million users on a publicly accessible Amazon Web Services (AWS) S3 bucket. View Full Story ORIGINAL SOURCE: Bleeping Computer ★★★★★
itsecurityguru.webp 2018-04-20 10:20:00 Watch out users of Ad Blockers, there could be malware! (lien direct) As if trying to navigate your online privacy wasn't complicated enough, it turns out the adblocker you installed on your browser may actually be malware. Andrey Meshkov, the cofounder of ad-blocker AdGuard, recently got curious about the number of knock-off ad blocking extensions available for Google's popular browser Chrome. View Full Story ORIGINAL SOURCE: Motherboard ★★★★★
itsecurityguru.webp 2018-04-20 10:18:02 TalkTalk customers concerned over privacy (lien direct) A number of TalkTalk's broadband ISP customers in the UK have raised concerns after the provider sent them an alarmist warning email, which without providing any useful details claimed that they “may have downloaded a virus on one or more of your devices” (phishing emails adopt a similar approach). View Full Story ORIGINAL SOURCE: IS ... ★★★★
itsecurityguru.webp 2018-04-20 10:17:00 Russia to increase cyber activity against UK (lien direct) A network of Russian trolls is behind a new disinformation campaign about who was responsible for chemical weapons attacks in Syria and Salisbury, a government source has said. Social media bots are said to be responsible for a 4,000 percent increase in the spread of 'lies and disinformation' according to Whitehall research made public for ... ★★★★★
itsecurityguru.webp 2018-04-20 10:03:00 Six Steps to Secure Cryptographic Keys (lien direct) Cryptocurrency seems to bring out the best effort from cyber criminals. From nation states to traditional attackers, the rise in crypto-related attacks is staggering. The motivation is obvious: it's financially driven. Despite the recent drop, cryptocurrency values have skyrocketed over the past couple of years incentivising attackers to create malicious code and sophisticated hacking tools ...
itsecurityguru.webp 2018-04-19 10:59:04 Employees responsible for 35% of ICO data security incidents since 2015 (lien direct) New analysis has found that over the last three years, 35% of all major data breaches were caused by negligent or malicious employees, costing the UK-based organisations involved almost £500,000 in fines from the Information Commissioner's Office (ICO). This study, carried out by global security software company Avecto, looked at all the breaches between August 2015 and ... ★★
itsecurityguru.webp 2018-04-19 10:57:03 SANS Experts Share Five Most Dangerous New Attack Techniques (lien direct) Experts from SANS last night presented the five most dangerous new cyber attack techniques in their annual RSA keynote session in San Francisco, and shared their views on how they work, how they can be stopped or at least slowed, and how businesses and consumers can prepare. The five threats outlined are: Repositories and Cloud Storage Data Leakage ...
itsecurityguru.webp 2018-04-19 10:55:01 Please Do Not Feed the Phish (lien direct) Adam Vincent, CEO, ThreatConnect We’ve all heard the phishing attack stories that start with someone receiving an email that requests an urgent invoice review or password change and ends with a data breach where personal information is compromised, and money is lost. Although many of us may roll our eyes at the possibility of falling ... ★★
itsecurityguru.webp 2018-04-19 10:52:02 DHS Funds Tech to Root Out Malware in Government Mobile Apps (lien direct) Federal agencies have built hundreds of mobile apps during the past decade, ranging from useful to educational to um, this. Many of those apps weren't built with security in mind, however, and even apps that were built securely half a decade ago may now be riddled with unpatched vulnerabilities if no one's been actively maintaining them. That means there's a real danger that ... ★★★★
itsecurityguru.webp 2018-04-19 10:51:02 Google And Apple Absent From Cybersecurity Tech Accord That Facebook And Microsoft Signed (lien direct) The Cybersecurity Tech Accord is a “watershed agreement” signed by 34 tech companies: ABB, Arm, Avast, Bitdefender, BT, CA Technologies, Cisco, Cloudflare, DataStax, Dell, DocuSign, Facebook, Fastly, FireEye, F-Secure, GitHub, Guardtime, HP Inc., HPE, Intuit, Juniper Networks, LinkedIn, Microsoft, Nielsen, Nokia, Oracle, RSA, SAP, Stripe, Symantec, Telefonica, Tenable, Trend Micro, and VMware. View full story ORIGINAL SOURCE: ... ★★★★
itsecurityguru.webp 2018-04-19 10:50:02 Why G Suite admins should enable Gmail\'s advanced anti-phishing and malware settings (lien direct) In March 2018, Google added optional G Suite Gmail safety settings that affect how the system handles potentially problematic attachments, links, and external images, as well as how it processes unauthenticated or spoofed messages. Google always guards against malware in messages, however these settings offer additional protection. View full story ORIGINAL SOURCE: Tech Republic
itsecurityguru.webp 2018-04-19 10:49:01 Tens of thousands of Facebook accounts compromised in days by malware (lien direct) Criminals have compromised tens of thousands of Facebook accounts in the past few days using malware that masquerades as a paint program for relieving stress.  “Relieve Stress Paint” is available through a domain that uses Unicode representation to show up as aol.net on search engines and in emails, researchers from security firm Radware said in a ...
itsecurityguru.webp 2018-04-19 10:47:03 TaskRabbit is Back Online After Suspected Data Breach With Plans to Bolster Security (lien direct) TaskRabbit, the handyman-for-hire app, is back online after being intentionally taken down on Monday following an apparent data breach. “While our investigation is ongoing, preliminary evidence shows that an unauthorized user gained access to our systems,” the company said. “As a result, certain personally identifiable information may have been compromised.” View full story ORIGINAL SOURCE:
itsecurityguru.webp 2018-04-19 10:46:04 Zuckerberg under pressure to face EU lawmakers over data scandal (lien direct) Facebook Inc's Chief Executive Mark Zuckerberg came under pressure from EU lawmakers on Wednesday to come to Europe and shed light on the data breach involving Cambridge Analytica that affected nearly three million Europeans. The world's largest social network is under fire worldwide after information about nearly 87 million users wrongly ended up in the ...
itsecurityguru.webp 2018-04-18 13:38:01 The Flu and DDoS, From an Epidemic to a Solution (lien direct) While the mobile industry was busy celebrating telecom innovation at MWC18, another kind of innovation was making headlines: a record 1.35 Tbps DDoS attack. It caused some disruption and highlighted the potential for much worse. In this instance, the attack was detected and mitigated relatively quickly-but it required manual intervention and rerouting of traffic. Fortunately, ... ★★★★
itsecurityguru.webp 2018-04-18 13:36:00 7 Sins of Security Metrics (lien direct) If you are at the water cooler muttering “But that's EXACTLY the graph they asked for.” Enter SIN#1… “Get me a plot of x versus y, colour-coded by z!” They sounded so sure when they asked you, so you created what they wanted, showed it to them, and they hated it. Ok, a bit melodramatic. ... ★★★★★
itsecurityguru.webp 2018-04-18 11:18:03 Malware infecting 50,000 Minecraft accounts (and possibly more) (lien direct) Minecraft, the immensely popular world-building game with more than 74 million players, has a malware problem. Users who download skins for their avatars, from the official Minecraft website, are unwittingly allowing malicious code onto their computers. Currently, nearly 50,000 Minecraft accounts are known to be infected with the malware which is designed to reformat a person's hard drive and ...
itsecurityguru.webp 2018-04-18 11:14:04 Major tech corporations sign Cybersecurity agreement (lien direct) Dozens of major technology companies including Microsoft, Facebook, Cisco, and SAP have signed onto a pledge to protect their users around the globe against cybersecurity threats and to abstain from helping any government launch a cyber attack. View Full Story ORIGINAL SOURCE: ZDNet
itsecurityguru.webp 2018-04-18 11:12:05 NHS failing to address cyber security (lien direct) The NHS has shown an “alarming” failure to tackle cyber security despite growing concerns about threats to the UK, MPs have warned. View Full Story ORIGINAL SOURCE: Telegraph
itsecurityguru.webp 2018-04-18 11:11:01 Commonwealth to be more cyber secured (lien direct) The UK Prime Minister will today announce up to £15 million to help Commonwealth countries strengthen their cyber security capabilities and help to tackle criminal groups and hostile state actors who pose a global threat to security, including in the UK. View Full Story ORIGINAL SOURCE: Gov.uk
itsecurityguru.webp 2018-04-18 10:31:00 Transavia keeps business flying with One Identity (lien direct) One Identity, a proven leader in helping organisations get identity and access management (IAM) right, is helping Dutch low-cost airline, Transavia streamline business processes. Through its One Identity Active Roles deployment for a hybrid Active Directory environment, Transavia is able to save roughly 10 minutes per user on provisioning and de-provisioning tasks covering hundreds of ... Guideline ★★
itsecurityguru.webp 2018-04-17 11:59:00 (Déjà vu) Routers being hijacked to redirect users to malware (lien direct) Malware authors have hijacked DNS settings on vulnerable routers to redirect users to sites hosting Android malware. According to Kaspersky Labs telemetry data, these were small-scale attacks, as crooks only hijacked traffic from just 150 unique IP addresses, redirecting users to malicious sites around 6,000 times between February 9 and April 9, 2018. View Full ... ★★★★
itsecurityguru.webp 2018-04-17 11:57:00 TaskRabbit has been hacked (lien direct) TaskRabbit, the mobile marketplace that matches freelance labor with local demand, has apparently been hacked. Both the company's website and app were down at time of writing and notifications had been sent out to users warning of a security issue. View Full Story ORIGINAL SOURCE: Gizmodo ★★★★★
itsecurityguru.webp 2018-04-17 11:55:03 Youtuber hacked during livestream (lien direct) Another day, another heist: Ian Balina, a cryptocurrency YouTuber known for his (sponsored) ICO reviews, was apparently hacked out of $2 million during a livestream session. View Full Story ORIGINAL SOURCE: The Next Web Uber
itsecurityguru.webp 2018-04-17 11:43:04 Russia to blame for global cyber attack (lien direct) The United States and Britain on Monday accused Russia of launching cyber attacks on computer routers, firewalls and other networking equipment used by government agencies, businesses and critical infrastructure operators around the globe. View Full Story ORIGINAL SOURCE: Reuters
itsecurityguru.webp 2018-04-17 11:39:01 New Accenture study finds 87 per cent of focused cyberattacks are prevented (lien direct) With ransomware and distributed denial of service (DDoS) attacks on the rise, the average number of focused cyberattacks per organisation has more than doubled this year compared to the previous 12 months (232 through January 2018 versus 106 through January 2017). In the face of these growing cyber threats, organisations are demonstrating far more success ... ★★★★★
itsecurityguru.webp 2018-04-17 11:33:01 RAT Gone Rogue: Meet ARS VBS Loader (lien direct) Malicious VBScript has long been a fixture of spam and phishing campaigns, but until recently its functionality has been limited to downloading malware from an attacker-controlled server and executing it on a compromised computer.   Researchers at Flashpoint have seen and analysed a unique departure from this norm in ARS VBS Loader, a spin-off of ... ★★
itsecurityguru.webp 2018-04-16 13:40:03 Data visibility: the antidote to Snake-bites (lien direct) By Matthias Maier, Security Evangelist, Splunk It's usually wrong to judge people by their names, but an organisation that calls itself “Snake” probably isn't up to much good. Citing unidentified security sources, DPA reported that Snake is the group suspected of carrying out a sophisticated and successful attack on the government's computer network. As always, it's difficult ...
itsecurityguru.webp 2018-04-16 11:00:05 85 Percent of Consumers Say Businesses Should Be Doing More to Actively Protect Their Data (lien direct) A new survey shows that 78 percent of U.S. respondents say a company's ability to keep their data private is “extremely important” and only 20 percent “completely trust” organizations they interact with to maintain the privacy of their data. The poll underscores the public's view of the obligation that organizations have to handle data responsibly ...
itsecurityguru.webp 2018-04-16 10:53:03 Russia starts blocking Telegram messenger: regulator (lien direct) Russia's state telecommunications regulator said on Monday it had begun blocking access to messenger service Telegram, implementing a decision by a Russian court. The watchdog, Roskomnadzor, in a statement posted on its website, said that it had sent telecoms operators notification about blocking access to the service. Interfax news agency quoted an official at the ...
itsecurityguru.webp 2018-04-16 10:51:04 NHS Digital execs showed \'little regard\' for patient ethics by signing data deal (lien direct) MPs have voiced “serious concerns” about NHS Digital's leadership, claiming execs paid “little regard” to the ethics of sharing patient details for immigration enforcement and are too close to government. Members of the House of Commons Health Committee slammed the body – which provides IT and data services for the NHS – for signing a ... Guideline ★★★
itsecurityguru.webp 2018-04-16 10:50:05 Thousands of Android Apps are Tracking Kids Without Parental Consent (lien direct) The Google Play Store might be full of apps and games that are tracking children without the express permission from the parent, and Google doesn't seem to be doing much about it. Following Facebook's data leaking scandal with Cambridge Analitica, a lot of people have turned their attention to other social networks that might be ... ★★★★★
itsecurityguru.webp 2018-04-16 10:48:05 Android apps prove a goldmine for dodgy password practices (lien direct) An analysis of free Android apps has shown that developers are leaving their crypto keys embedded in applications, in some cases because the software developer kits install them by default. Will Dormann, software vulnerability analyst at the CERT Coordination Center (CERT/CC), told the BSides conference in San Francisco that he'd scanned around 1.8 million Android apps and ... ★★
itsecurityguru.webp 2018-04-16 10:47:02 Security bods liberate EITest malware slaves (lien direct) One of the world’s longest-lived malware networks, EITest, has gone offline. EITest was part of several infection chains, used by attackers to redirect users from legitimate sites to compromised sites that shipped exploit kits. In 2016, for example, it was part of an attack that used shampoo brand Just for Men to push the RIG exploit kit. ...
itsecurityguru.webp 2018-04-16 10:46:00 Windows Servers Targeted for Cryptocurrency Mining via IIS Flaw (lien direct) Hackers are leveraging an IIS 6.0 vulnerability to take over Windows servers and install a malware strain that mines the Electroneum cryptocurrency. Attacks aren’t widespread, as they target a quite old IIS version, but they are happening at scale. Hackers are using CVE–2017–7269 to take over servers. This is a vulnerability discovered by two Chinese ...
itsecurityguru.webp 2018-04-13 09:32:00 Cloudflare promises to tend not two, but 65,535 ports in a storm (lien direct) Cloudflare made its name proxying traffic for web servers, on network ports 80 (HTTP) and 443 (HTTPS), as a defense against denial of service attacks and their ilk. On Thursday, the online security biz broadened its ambitions by extending its watch over the remaining possible TCP/IP network ports under IPv4. Cloudflare introduced a service called Spectrum, ...
itsecurityguru.webp 2018-04-13 09:24:05 Using Outlook? You should probably do some patching (lien direct) Microsoft emitted a patch for all supported versions of Outlook on Patch Tuesday this month to prevent attackers harvesting credentials from users who simply preview a carefully crafted Rich Text (RTF) email. The vulnerability (CVE-2018-0950) exploited Outlook's unfortunate habit of retrieving remotely hosted Object Linking and Embedding (OLE) content when previewing a RTF email. View Full Story ...
itsecurityguru.webp 2018-04-13 09:21:03 British spies waged cyber campaign against ISIS, says GCHQ chief (lien direct) Cyber-attacks by British intelligence services have supported operations against the terror group ISIS, in a first-of-its-kind sustained campaign. The offensive made a significant impact on the operations of the group, also known as Daesh, revealed Jeremy Fleming, director of UK intelligence agency GCHQ. View Full Story ORIGINAL SOURCE: ZDNet
itsecurityguru.webp 2018-04-13 09:19:03 Home secretary urges UK businesses to up their game against cyber crime (lien direct) Cyber crime is a shared responsibility between businesses, industry experts and individuals, the UK home secretary, Amber Rudd, has declared. Speaking at the National Cyber Security Centre’s CyberUK 2018 conference in Manchester on Thursday, Rudd said the UK government is committed to promoting EU cyber cooperation post-Brexit in a new cyber incident classification. View Full Story ORIGINAL ...
itsecurityguru.webp 2018-04-13 08:52:00 Suppressing the Adversary via Threat Hunt Teams (lien direct) As the Chief Cybersecurity Officer for Carbon Black, I am witnessing a brave new world in cyberspace. Global cyber insurgencies continue unabated with reports of wide-scale data breaches and politico-hacking happening quickly and often. Personal data and financial information is regularly being hijacked. The energy sector is increasingly vulnerable to risk, with the recent cyberattack ... ★★★
itsecurityguru.webp 2018-04-13 08:49:02 Nation State attacks 500% slower to evict from networks and can remain undetected for years (lien direct) Cybersecurity specialist Secureworks is today releasing its Incident Response Insights Report. The global report which pulls from real-world incidents unearths some surprising truths of the cybersecurity landscape; including the most targeted industries and preferred hacking tools used by cybercriminals. The report also hones in on the increasing complexity of nation state attacks. Let me know ... ★★★
itsecurityguru.webp 2018-04-13 08:39:02 Outdated security solutions are putting businesses at risk of evolved cyberthreats (lien direct) The latest trends in cybercrime have seen it all - advanced exploits allegedly developed by high-profile threat actors used in massive ransomware attacks, creativity of spam and phishing attacks on trending topics, and attacks relying heavily on social engineering or legitimate software used as cyber weapons. This evolution of cyberthreats calls for evolution in cybersecurity. ...
Last update at: 2024-07-22 02:07:36
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter