What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
itsecurityguru.webp 2020-11-10 14:18:19 Magecart and the Inter Skimmer threat (lien direct) As the global pandemic has shifted life into the online space, cybercriminal groups have keenly exploited the digitisation of society's interactions over the lockdown period. One particularly notorious group that security teams should be aware of is Magecart, a shadowy criminal syndicate responsible for many of the recent high-profile credit card skimming attacks. Who is […] Threat
itsecurityguru.webp 2020-11-10 11:12:08 Mashable suffers data breach exposing users\' details (lien direct) Mashable, a major tech and culture news website has recently experienced a data breach which has resulted in the personal data of their users being exposed online. On Sunday 8 November Mashable issued a statement confirming that their database had breached and that they had discovered that reader who use their social media sign-in feature […] Data Breach
itsecurityguru.webp 2020-11-10 10:55:32 RedDoorz user record for sale by threat actor on hacking forum (lien direct) A threat actor is selling the RedDoorz database containing 5.8 million user record on a hacking forum following a data breach in September. RedDoorz is a hotel management and booking platform based in Singapore, which manages bookings for over 1,000 properties in Southeast Asia. Users can register an account to browse hotels and book reservation […] Data Breach Threat
itsecurityguru.webp 2020-11-10 10:41:57 World\'s largest eyewear company suffers data breach (lien direct) Luxottica, the world’s largest eyewear company, has recently suffered a data breach which has resulted in the exposure of the personal information of Lenscrafters patients. The attack also affected Optical, EyeMed and other eye practices. Luxottica warned that “the personal information involved in this incident may have included: full name, contact information, appointment date and […] Data Breach
itsecurityguru.webp 2020-11-09 13:54:52 Millions of hotel guests have data exposed after Hotel Booking firm experiences breach (lien direct) The Spanish developer Prestige software has experienced a data breach after misconfiguring an AWS bucket. The breach has lead to the exposure of their cloud database, and the data of millions of hotel guests. Prestige software is a platform which enables hotels to automate their availability on booking site such as Expedia. The misconfigured S3 […] Data Breach Guideline
itsecurityguru.webp 2020-11-09 13:40:23 Source codes stolen from US government agencies by hackers (lien direct) An alert warning has been sent out by the Federal Bureau of Investigation warning of threat actors abusing misconfigured SonarQube application in order to steal source code form US government agencies as well as private businesses. An alert sent out last month by the FBI was made public on their website this week detailing the […] Threat
itsecurityguru.webp 2020-11-09 11:36:55 UK banking customers targeted by HMRC smishing tax scam (lien direct) This week UK residence have been targeted by an advanced HM Revenue and Customs (HMRC) tax rebate text messages (SMS) scam. The smishing campaign (phishing scam via SMS) is especially worrying as it employs multiple HMRC phishing domains and tactics with the scam evolving by adding new domains daily as older domains get flagged by […]
itsecurityguru.webp 2020-11-06 16:07:33 Positive action in cybersecurity: altruism, transparency and community (lien direct) Working with the largest organisations in government, finance and critical national infrastructure, we see good and bad every day. In a confusing hybrid war where APT groups launch attacks that could potentially turn out the lights, it is hard to remain impartial. The fact that a political act of devastation manifests as an innocuous looking […]
itsecurityguru.webp 2020-11-06 11:00:08 Leading Irish cyber security firm, Edgescan, further cements global market expansion with US company incorporation. (lien direct) CEO, Eoin Keary today announced that Edgescan is now incorporated in the USA. He said that “it provides us with a firm foothold in the USA allowing us to be closer to our North American clients.” Edgescan has been providing fullstack vulnerability management, cyber security and pen testing services to US based clients for a […] Vulnerability
itsecurityguru.webp 2020-11-03 11:47:51 Fake news, disinformation and cybersecurity (lien direct) The spread of fake news and the rise of disinformation is plaguing the modern world by destroying the very fabric that is keeping our society safe and democracy standing. Separating fact from fiction has never been harder, and with the popularity of social media misleading information is spreading like wildfire. It is swaying elections, distorting […] Guideline
itsecurityguru.webp 2020-11-03 11:24:50 Webinar: Cyber Criminals Leave Their Fingerprints on the Internet Too (lien direct) 2020 is a year where it is impossible for us to ignore the extent to which we exist online. However, while the legal economy has moved online, there has been a thriving illegal economy online for years. Oliver Tonge, cyber security consultant at DomainTools discusses in this webinar how threat actors are operating online, and […] Threat
itsecurityguru.webp 2020-11-02 10:30:22 PerimeterX Code Defender Product Review (lien direct)   Supplier: PerimeterX Website: www.perimeterx.com Price: Based on web site traffic Scores Performance 5/5 Features 5/5 Value for Money 4.5/5 Ease of Use 5/5 Overall 5/5   Verdict What's on your web site? PerimeterX Code Defender takes the worry out of e-commerce with a simple yet highly effective client-side script analysis and risk mitigation solution. […]
itsecurityguru.webp 2020-10-30 15:32:01 45% of IT security professionals aren\'t ready for their organisations to return to work from their offices (lien direct) COVID-Driven Work Changes Created Turbulence For IT Security Stakeholders, Prompting Shifts in IT Priorities, Global Survey Shows IT security professionals noted a near-universal shift to work from home; only a third said it was “smooth” Cloud infrastructure investments, access request, identity/access lifecycle management, identity process and workflow, and role management technologies all saw increased priority among at least […]
itsecurityguru.webp 2020-10-30 11:46:28 Georgia county residence have had their voter information leaked by ransomware gang (lien direct) Earlier this month the ransomware gang DoppelPaymer released unencrypted data that they have stolen from Hall County, Georgia during a cyberattack. The attack affected Hall County’s networks and phone system. At the time of the attack, there were no signs that the unencrypted data had been stolen by the hackers.  A spokesperson for Hall County […] Ransomware
itsecurityguru.webp 2020-10-30 11:36:27 Universities are suffering email hijacking attacks (lien direct) A large number of universities, including Standford University and the University of Oxford, are suffering from cyber attacks in which their email accounts are hijacked. Once hijacked the emails accounts are then used to trick the victims into exposing their email credentials and even installing malware. CEO and co-founder of INKY, Dave Bagget, said that […]
itsecurityguru.webp 2020-10-30 11:26:44 US reveals information on Russian malware attacks (lien direct) The US Cyber Command has recently revealed information about the malware implants used by Russian hackers to target national parliaments, ministries of foreign affairs, and embassies. The malware was identified by the US Cyber Command’s Cyber National Mission Force (CNMF) unit, alongside the Cybersecurity and Infrastructure Security Agency (CISA). The information was uploaded yesterday to […] Malware
itsecurityguru.webp 2020-10-29 10:57:28 Iranian attackers hack conference attendees\' emails according to Microsoft (lien direct) Microsoft has recently revealed that they discovered that Iranian state-sponsored attackers hacked into the emails accounts of a number of high-profile individuals and attendees at the 2020 Munich Security Conference and the Think 20 summit. It is thought that the attackers successfully targetted more than 100 individuals and Microsoft’s Threat Intelligence Center (MSTIC) have linked […] Hack Threat
itsecurityguru.webp 2020-10-29 10:45:29 SMEs can be the weak link in the cyber-security chain – and we should help them (lien direct) Small businesses are now on the front line in the fight against cyber crime. The vital position many SMEs have in supply chains means cybersecurity professionals should be doing everything to support small business leaders – for the benefit of everyone.   The number of UK businesses succumbing to cyber attacks has doubled in the […] Guideline
itsecurityguru.webp 2020-10-29 10:43:21 Home Depot sends customers emails containing strangers data (lien direct) Yesterday Home Depot customers in Canada reported being sent hundreds of emails containing other customers order details. Some customers have received upwards of 600 ‘order ready for pickup’ emails, all of which were for different orders. This is a serious data leakages as the orders were not associated with the customers Home Depot accounts that […]
itsecurityguru.webp 2020-10-29 10:35:34 Social networking app True reveals private messages and user locations (lien direct) True is a social networking app which promises to ‘protect your privacy’. However, they recently experienced a security lapse which exposed one of their serves, resulting in the leakage of users private data, available on the internet for anyone to see. The data leak happened after one of the app’s dashboards databases was exposed to […]
itsecurityguru.webp 2020-10-29 00:01:40 The Most Inspirational Women in Cyber UK 2020 – winners announced: (lien direct) Gender diversity in the security industry is improving. According to the latest ISC(2) figures, the percentage of women in cybersecurity is around 24 percent, with an increasing number being appointed in leadership positions. It is widely agreed that one of the most important factors in encouraging more women to enter the industry in the first […] Guideline
itsecurityguru.webp 2020-10-28 11:44:01 Hackers post pornography in virtual classroom (lien direct) The New Hartford Central School district is currently trying to discover who is responsible for a hack on their virtual classroom system. Last week a hacker posing as a student entered a health class where they played loud noises across the speakers and posted a pornographic video which all the students in the virtual classroom […] Hack
itsecurityguru.webp 2020-10-28 11:29:38 Trump\'s campaign website has been defaced by hackers (lien direct) Donal Trump’s presidential re-election campaign website was briefly highjacked on Tuesday by hackers who defaced the site. The highjacking lasted less than 30 minutes, although hackers still managed to take over the site despite law enforcement and intelligence agencies being on high alert for digital interferences leading up to the election next week. Tim Murtaugh, […] Guideline
itsecurityguru.webp 2020-10-28 11:29:36 Cybereason announces $1 million comprehensive breach protection warranty (lien direct) Cybereason today announced the availability of the Cybereason Breach Protection Warranty that provides up to $1 Million in coverage in the event of a breach. The Cybereason Breach Protection Warranty covers a variety of attacks including zero-day, malware and ransomware attacks, and is available free of charge to customers with the Cybereason Ultimate package, a […] Ransomware Malware
itsecurityguru.webp 2020-10-28 11:22:22 Enel Group suffer another ransomware attack (lien direct) The multinational energy company, Enel Group, have suffered another ransomware attack for the second time this year. This attack was by Netwalker, who are demanding $14 million ransom for the decryption key and for them not to release stolen data. Enel is one of the largest companies in the European energy sector, spanning across 40 […] Ransomware
itsecurityguru.webp 2020-10-28 10:42:59 Learn to Combat These Three Cybersecurity Monsters This Halloween and Beyond (lien direct) It's that time of year again. The air feels a bit crisper; the days are a bit shorter; and children around the world prepare to go trick or treating. Even as an adult, Halloween is probably my favourite holiday. I love seeing and thinking about monsters and things that lurk in the shadows… maybe – […]
itsecurityguru.webp 2020-10-28 10:42:21 Manipulation by Disinformation: How Elections are Swayed (lien direct) In 2016, we witnessed as the Trump and Brexit campaigns leveraged the help of Cambridge Analytica to spread disinformation and sway voters in their favour. While Cambridge Analytica has since been dissolved, the threat of disinformation is ever-present. In many ways, it is a threat that arguably dates back to ancient times and what we […] Threat
itsecurityguru.webp 2020-10-27 15:26:02 Nozomi Networks Pioneers SaaS Security and Visibility Solution for Dynamic IoT and OT Networks (lien direct) Nozomi Networks Inc. today introduced Vantage, an innovative SaaS-based OT and IoT network visibility and monitoring solution designed to meet the evolving requirements of IoT-enabled infrastructures. “Vantage is a game-changer when it comes to simplifying the integration and centralized management of visibility and security across converged OT, IoT and IT networks of any size,” said […]
itsecurityguru.webp 2020-10-27 15:21:18 Red Canary enters cloud workload protection space (lien direct) Red Canary has announced the launch of Red Canary Cloud Workload Protection, a cloud workload protection (CWP) solution that provides visibility and threat detection for security and DevOps teams. This new solution is purpose-built for cloud Linux workloads, focuses on runtime threat protection and response, and integrates seamlessly into DevOps workflows without sacrificing system performance […] Threat
itsecurityguru.webp 2020-10-27 11:20:22 Hackers blackmailing psychotherapy patient following Vastaamo breach (lien direct) Cybercriminals have recently hacked Vastaamo, a psychotherapy giant, and are trying to contact patients threatening to reveal their confidential patient files if they do not pay a ransom. The Finnish psychotherapy company has over 40,000 patients, with customers registered between November 2018 and March 2019 likely to be affected by the breach, although it is […]
itsecurityguru.webp 2020-10-27 11:00:36 Amazon fires insiders over recent data leak (lien direct) Amazon has fired a number of employees responsible for a recent data leak which resulted in the exposure of customers data, including their email addresses to an unaffiliated third-party, violating the companies policies Users were alerted of the incident following an email announcement to those who were affected. During the weekend there were reports across […]
itsecurityguru.webp 2020-10-27 10:47:20 Law firm used by Google confirms data breach (lien direct) Law firm Fragomen, Del Rey, Brensen and Loewy have confirmed they have suffered a data breach which involved the personal information of both current and former Google employees. The law firm based in New York provides companies with employment verification screening services in order to determine whether potential employees are authorized to work in the […] Data Breach
itsecurityguru.webp 2020-10-26 11:32:44 NHS app not working properly on iPhone 12 (lien direct) An issue has arisen with users accessing the NHS contact tracing app on the new iPhone 12 and iPhone 12 Pro that were released on Friday last week. Although the new iPhone’s have no issues running the app, when the app is transferred over from a different iPhone through the cloud, it doesn’t ask users […]
itsecurityguru.webp 2020-10-23 14:26:55 Waving Goodbye to Enterprise Passwords (lien direct) Hitachi Europe limited and My1Login have announced a Technology Partnership to deliver enhanced security solutions to address one of the cybersecurity industry's most compelling challenges – passwords. The combined solution optimises security and convenience whilst enabling a significant ROI as a result of a number productivity and efficiency benefits. The two companies will deliver solutions […]
itsecurityguru.webp 2020-10-23 11:37:39 Russian state-backed hackers gained access to government networks (lien direct) The FBI and CISA have announced that Russian hackers have breached US governmental networks. The group has been identified under the codename Energetic Bear and are backed by the Russian state. Government officials have said this group have been targeting several local, territorial and tribal government networks since February. As of the 1st of October, […]
itsecurityguru.webp 2020-10-23 11:11:58 Victims promised fictitious vouchers in M&S scam (lien direct) Cybercriminals have impersonated Marks & Spenser’s CEO, Steve Rowe, in order to trick customers into revealing their bank account details. The scammer’s poster fraudulent adverts promising victims the opportunity to win a gift voucher as part of a prize draw promotion while under the guise of CEO Steve Rowe. Once victims had clicked the ad […]
itsecurityguru.webp 2020-10-23 10:58:09 Twitter and Facebook ordered to testify over Biden New York Post article (lien direct) Facebook and Twitter chief’s, Mark Zuckerberg and Jack Dorsey, will be ordered to testify over the alleged censorship of a New York Post article shared on their platforms. The article reveals emails and photographs copied from Hunter Biden, Joe Biden’s son’s laptop. Twitter said that the article had violated its “hacked materials” policy and was […]
itsecurityguru.webp 2020-10-22 15:03:54 Securonix to integrate with Tanium (lien direct) As workplaces are becoming more remote, with almost half of the workforce working from home, and an introduction of bring your own device policies in many organisations, endpoints have become more distributed and cyberattacks even more prevalent. Remote workforces are creating more vulnerabilities for endpoints as they are no longer located in secure networks, making […]
itsecurityguru.webp 2020-10-22 11:57:27 NSA warns that Chinese-sponsored hackers are targeting publicly available exploits (lien direct) A new report from the US National Security Agency outlines the 25 vulnerabilities most commonly targeted by Chinese sponsored hackers. Exploits for these vulnerabilities are already publicly available, but so are the patches for these flaws. Ciaran Byrne, head of platform operations at Edgescan, provided the follwing analysis: The details published today by the NSA […]
itsecurityguru.webp 2020-10-22 11:27:22 PayPal are now allowing crypto spending (lien direct) PayPal has recently announced that its customers will be able to use Bitcoin and other virtual currencies while buying and selling items using their PayPal accounts. PayPal has revealed that they will be allowing this option to be used in the US in the next upcoming weeks. They plan to have the option available to […]
itsecurityguru.webp 2020-10-22 10:27:03 Iran blamed for voting spam emails (lien direct) The US is blaming Iran for the email shot sent from the far-right group, Proud Boys, urging Democratic voters to vote for Trump. In these emails, the extremist group where threatening registered Democrats with consequences if they didn’t vote for Trump in the upcoming election. Although the group claimed to have sent this email to […] Spam
itsecurityguru.webp 2020-10-22 10:08:38 Chrome users need to update their browser now (lien direct) Attention all Chrome users – you should update your browser to the latest version released yesterday. Google released this version of Chrome to patch several high-severity security issues. These included a 0-day vulnerability that has been used by hackers on targeted computers. The vulnerability was found by Sergei Glazunov, a security researcher at Google’s Project […] Vulnerability
itsecurityguru.webp 2020-10-21 14:53:42 Webinar: Enable Employees to be the First Line of Defence (lien direct) Our editor, Tony Morbin, sits down with an experienced panel of cybersecurity professionals to discuss how to stay ahead of cybercriminals Often, employees get a bad rep when it comes to cybersecurity as they are often branded as the “weakest link in the cyber chain”. However, Ran Puchag, Chief Product and Development Officer firmly believes […]
itsecurityguru.webp 2020-10-21 13:55:21 Corelight extends open NDR platform with new software sensor (lien direct) Corelight today released new capabilities that provide users with greater network security visibility and the ability to support advanced threat analysis across their entire environment, from physical to cloud. Corelight's new Software Sensor and Corelight Cloud Sensor for Google Cloud Platform (GCP) deliver comprehensive security insights into network traffic on any platform.   “Organizations today are faced with the challenge of limited visibility across distributed locations, […] Threat
itsecurityguru.webp 2020-10-21 10:09:56 Transport line in Montreal hit with ransomware (lien direct) Montreal’s transport system, Montreal’s Société de Transport de Montréal (STM) has been attacked with ransomware called ‘RansomExx’. On 19th October, the systems suffered from an outage which affected its IT systems, customer services and website. Although the outage didn’t impact the running of buses and metros, it did affect disabled passengers from booking door-to-door services. […] Ransomware
itsecurityguru.webp 2020-10-21 09:58:47 Australia\'s Home Affairs department concerned with Facebook\'s end-to-end encryption (lien direct) Mike Pezzullo, Australia’s secretary of the Department of Home Affairs, has voiced concerns about Facebook’s plans to form an online space for nefarious activity. Pezzullo told the Senate Estimates that “we are particularly concerned about Facebook’s plans to go to the end to end encryption of their entire platform to create, in effect, the world’s […]
itsecurityguru.webp 2020-10-21 09:45:24 Adobe testing software to fight deep fakes (lien direct) Abobe is testing a new method to help fight deep fakes by securely watermarking digital assets on Photoshop to ensure proper attributions are being used on digital media, according to a blog post by Adobe on Tuesday. The new watermarking function is part of the industries efforts to improve authentication of authorship in order to […]
itsecurityguru.webp 2020-10-21 07:59:43 Time to practice QRiosity? The security dangers of QR codes (lien direct) It seemed like such a good idea at the time, but Masahiro Hara has regrets. He’s the engineer responsible for the quick response (QR) code – that square block of pixels that now adorns everything from restaurant tables to subway posters. The problem? They’re just not secure enough. “Now that it’s used for payments, I […]
itsecurityguru.webp 2020-10-20 14:11:48 Nationwide survey of workers shows they\'re losing the will to Zoom (lien direct) A little over 7 months ago barely any of us had heard of Zoom, but since the pandemic, its users have jumped from 10 million to 300 million at its peak. Yet with Zoom calls becoming part of our everyday workplace routine, you may be surprised at the habits that many Brits have adopted. A […]
itsecurityguru.webp 2020-10-20 10:25:24 Google to remove location sharing app (lien direct) Google is removing the Trusted Contacts app from the Play store. This app allowed users to nominate certain contacts to track their location as well as providing their location when they didn’t respond. Instead of this app, Google has integrated a similar software into Google Maps. However, in this reimagined version, users need to have […]
Last update at: 2024-05-02 20:08:15
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter