After welcoming hacking research, automobile technology started to get better at defending against hacks. So why has the airline industry not been as welcoming? The post Hacking my airplane – BlackHat edition appeared first on WeLiveSecurity
The legal action, brought over alleged click injection fraud, is said to be among the first of its kind The post Facebook hits two app developers with lawsuit appeared first on WeLiveSecurity
ESET researchers document malware-distributing spam campaigns targeting people in France The post Varenyky: Spambot à la Française appeared first on WeLiveSecurity
Up to 30 percent of romance fraud victims in 2018 are estimated to have been used as money mules The post FBI warns of romance scams using online daters as money mules appeared first on WeLiveSecurity
ESET research uncovers a cyberespionage operation targeting the Venezuelan military The post Sharpening the Machete appeared first on WeLiveSecurity
The first in an occasional series demystifying Latin American banking trojans The post From Carnaval to Cinco de Mayo – The journey of Amavaldo appeared first on WeLiveSecurity
ESET researchers discover a new Android ransomware family that attempts to spread to victims’ contacts and deploys some unusual tricks The post Android ransomware is back appeared first on WeLiveSecurity
The fraudulent campaign is hosted by a domain that is home to yet more bogus offers pretending to come from other well-known brands The post Scam impersonates WhatsApp, offers ‘free internet’ appeared first on WeLiveSecurity
The attack, unleashed by a 400,000-strong Mirai-style botnet, may be the largest of its kind on record The post Streaming service endures 13‑day DDoS raid appeared first on WeLiveSecurity
The compromised company may bear the financial brunt of the breach within the first year after the incident occurs, but the price tag is still far from final The post Data breaches can haunt firms for years appeared first on WeLiveSecurity
On the flip side, there are currently no known cases of the vulnerability being exploited in the wild The post VLC player has a critical flaw – and there’s no patch yet appeared first on WeLiveSecurity
Tracking the malicious activities of the elusive Ke3chang APT group, ESET researchers have discovered new versions of malware families linked to the group, and a previously unreported backdoor The post Okrum: Ke3chang group targets diplomatic missions appeared first on WeLiveSecurity
Keeping up with BlueKeep; or how many internet-facing systems, and in which countries and industries, remain ripe for exploitation? The post BlueKeep patching isn’t progressing fast enough appeared first on WeLiveSecurity
A researcher found that it was possible to subvert the platform’s password recovery mechanism and take control of user accounts The post How your Instagram account could have been hijacked appeared first on WeLiveSecurity
ESET research reveals notorious crime group also conducting espionage campaigns for the past five years The post Buhtrap group uses zero‑day in latest espionage campaigns appeared first on WeLiveSecurity
ESET research discovers a zero-day exploit that takes advantage of a local privilege escalation vulnerability in Windows The post Windows zero‑day CVE‑2019‑1132 exploited in targeted attacks appeared first on WeLiveSecurity
The times they have a-changed since the ICO could only slap fines worth a fraction of the current amounts The post UK’s data watchdog hands out two mega‑fines for breaches appeared first on WeLiveSecurity
ESET researchers have discovered a malicious campaign distributing a backdoor via torrents, with Korean TV content used as a lure The post Malicious campaign targets South Korean users with backdoor-laced torrents appeared first on WeLiveSecurity
A trifecta of issues impact the organization’s cyber-resilience and conspire to put it in the firing line of cyberattacks The post NHS warned to act now to keep hackers at bay appeared first on WeLiveSecurity
The leak, which apparently has yet to be plugged, exposes a range of very specific data about users The post Two billion user logs leaked by smart home vendor appeared first on WeLiveSecurity
“Sounds bad”, the former Equifax CIO wrote in a text after learning of the breach that ended up affecting almost half the US population The post Ex-Equifax executive sent to jail for insider trading after breach appeared first on WeLiveSecurity
The new feature is intended to protect the kind of data that you hold particularly dear The post Microsoft enhances OneDrive to secure your critical files appeared first on WeLiveSecurity
A few days apart, two cities in Florida cave in to extortionists’ demands in hopes of restoring access to municipal computer systems The post Two US cities opt to pay $1m to ransomware operators appeared first on WeLiveSecurity
What technology makers and others can – and should – do to counter the kind of surveillance that starts at home The post Stopping stalkerware: What needs to change? appeared first on WeLiveSecurity
The infiltration was only spotted and stopped after the hackers roamed the network undetected for almost a year The post Hackers breach NASA, steal Mars mission data appeared first on WeLiveSecurity
The story of a Linux miner bundled with pirated copies of VST (Virtual Studio Technology) software for Windows and macOS The post LoudMiner: Cross-platform mining in cracked VST software appeared first on WeLiveSecurity
Are you in the 26% of people who use one of these PIN codes to unlock their phones? The post You’d better change your birthday – hackers may know your PIN appeared first on WeLiveSecurity
Locked out and out of luck? The photo-sharing platform is trialing new methods to reunite you with your lost account The post Instagram tests new ways to recover hacked accounts appeared first on WeLiveSecurity
ESET analysis uncovers a novel technique bypassing SMS-based two-factor authentication while circumventing Google’s recent SMS permissions restrictions The post Malware sidesteps Google permissions policy with new 2FA bypass technique appeared first on WeLiveSecurity
La Liga has taken substantial flak for tapping into microphones and geolocation services in fans‘ phones in a bid to root out piracy The post Spain’s top soccer league fined over its app’s ‘tactics’ appeared first on WeLiveSecurity
A recent talk by ESET’s Global Security Evangelist Tony Anscombe looks at the key security challenges facing intelligent buildings The post Why cybercriminals are eyeing smart buildings appeared first on WeLiveSecurity
The images, collected over one and a half months, were taken as the travelers crossed an unspecified border point The post Cyberattack exposes travelers’ photos, says US border agency appeared first on WeLiveSecurity
The alert comes on the heels of Microsoft’s second advisory calling on people to take action before it’s too late The post NSA joins chorus urging Windows users to patch ‘BlueKeep’ appeared first on WeLiveSecurity
How a Montreal-made “social search engine” application has managed to become a widely-spread adware, while escaping consequences The post Wajam: From start-up to massively-spread adware appeared first on WeLiveSecurity
It is the second major breach that the Australian National University suffered in 2018 The post Hackers steal 19 years’ worth of data from Australia’s top university appeared first on WeLiveSecurity
Millions of the files that are sitting out in the open across various file storage technologies are actually encrypted by ransomware The post 2.3 billion files exposed online appeared first on WeLiveSecurity
Criminals used my account to launder credit card transactions into cash, at least where the company transacted with was willing to refund The post The aftermath of a data breach: A personal story appeared first on WeLiveSecurity
ESET researchers analyze new TTPs attributed to the Turla group that leverage PowerShell to run malware in-memory only The post A dive into Turla PowerShell usage appeared first on WeLiveSecurity
Add that to the US$1.4 billion that the massive incident has cost the company so far The post Equifax stripped of ‘stable’ outlook over 2017 breach appeared first on WeLiveSecurity
ESET researchers have analyzed fake cryptocurrency wallets emerging on Google Play at the time of bitcoin’s renewed growth The post Fake cryptocurrency apps crop up on Google Play as bitcoin price rises appeared first on WeLiveSecurity
What you need to know about the critical security hole that could enable the next WannaCryptor The post Patch now! Why the BlueKeep vulnerability is a big deal appeared first on WeLiveSecurity
ESET sheds light on commands used by the favorite backdoor of the Sednit group The post A journey to Zebrocy land appeared first on WeLiveSecurity
As San Francisco moves to regulate the use of facial recognition systems, we reflect on some of the many ‘faces’ of the fast-growing technology The post What the ban on facial recognition tech will – and will not – do appeared first on WeLiveSecurity
Free resources for cybersecurity awareness and training are out there – links to many of them are provided here The post Cybersecurity training and awareness: helpful resources for educators appeared first on WeLiveSecurity
The ESET survey among thousands of people in Asia-Pacific (APAC) provides valuable insight into their perceptions of cyber-threats and various common aspects of online security The post Survey: What should companies do to restore trust post-breach? appeared first on WeLiveSecurity
You think you’re watching the games for free, but are you sure that’s the case? Let’s review some of the risks that may come with free live streaming websites The post Ice Hockey World Championship: The risks of free live streaming appeared first on WeLiveSecurity
ESET researchers have discovered that the attackers have been distributing the Plead malware via compromised routers and man-in-the-middle attacks against the legitimate ASUS WebStorage software The post Plead malware distributed via MitM attacks at router level, misusing ASUS WebStorage appeared first on WeLiveSecurity
What are some of the most interesting takeaways from Verizon’s latest annual security report? The post Verizon’s data breach report: What the numbers say appeared first on WeLiveSecurity
The thieves bade their time before running off with more than 7,000 Bitcoin ‘in one fell swoop’ The post Hackers steal US$41 million worth of Bitcoin from cryptocurrency exchange appeared first on WeLiveSecurity
ESET research uncovers Microsoft Exchange malware remotely controlled via steganographic PDF and JPG email attachments The post Turla LightNeuron: An email too far appeared first on WeLiveSecurity
So, do you think you’ve been ‘pwned’? That’s the question to ask yourself today The post World Password Day: A day to review your defenses appeared first on WeLiveSecurity
ESET researchers highlight a series of security holes in a device intended to make homes and offices more secure The post D-Link camera vulnerability allows attackers to tap into the video stream appeared first on WeLiveSecurity
Criminal activities against accountants on the rise – Buhtrap and RTM still active The post Buhtrap backdoor and ransomware distributed via major advertising platform appeared first on WeLiveSecurity
On the good news front, the FBI notes the success of its newly-established team in recovering some of the funds lost in BEC scams The post BEC fraud losses almost doubled last year appeared first on WeLiveSecurity
The notorious six-digit string continues to ‘reign supreme’ among the most-hacked passwords The post Over 23 million breached accounts used ‘123456’ as password appeared first on WeLiveSecurity
Marcus Hutchins, who is best known for his inadvertent role in blunting the WannaCryptor outbreak two years ago, may now face a stretch behind bars The post WannaCryptor ‘accidental hero’ pleads guilty to malware charges appeared first on WeLiveSecurity
How approaching cybersecurity with creativity in mind can lead to better protection from digital threats The post Embracing creativity to improve cyber-readiness appeared first on WeLiveSecurity
The gaming company has rolled out a fix for the remote code execution vulnerability, so make sure you run the platform’s latest version The post Bug in EA’s Origin client left gamers open to attacks appeared first on WeLiveSecurity
Some users of Microsoft’s web-based email services such as Outlook.com had their account information exposed in an incident that, as it later emerged, also impacted email contents The post Microsoft reveals breach affecting webmail users appeared first on WeLiveSecurity
An extra layer of security never hurt anybody, doubly so now that you can turn your phone into a physical security key The post Your Android phone can now double as a security key appeared first on WeLiveSecurity
More than 50 universities in the United Kingdom had their cyber-defenses tested by ethical hackers, and the ‘grades’ aren’t pretty The post Hackers crack university defenses in just two hours appeared first on WeLiveSecurity
The new wireless security protocol contains multiple design flaws that hackers could exploit for attacks on Wi-Fi passwords The post WPA3 flaws may let attackers steal Wi-Fi passwords appeared first on WeLiveSecurity
Streaming media feature among services that take the spotlight in a report on credential-stuffing attacks in 2018 The post Credential-stuffing attacks behind 30 billion login attempts in 2018 appeared first on WeLiveSecurity
Latest ESET research describes the inner workings of a recently found addition to OceanLotus’s toolset for targeting Mac users The post OceanLotus: macOS malware update appeared first on WeLiveSecurity
The databases, sitting unprotected on cloud servers, contained reams of information amassed by two apps integrated with the social network The post 540 million records on Facebook users exposed by third-party apps appeared first on WeLiveSecurity
How can smaller businesses address their cybersecurity risks without the resources of large organizations? The post NIST cybersecurity resources for smaller businesses appeared first on WeLiveSecurity
Aren’t we just making it too easy for online followers to become real-life trackers with the amount of open data we are posting online? The post Look who’s stalking appeared first on WeLiveSecurity
Bithumb believes that, unlike in the past, this theft was the work of rogue insiders The post Cryptocurrency exchange loses millions in heist appeared first on WeLiveSecurity
More trouble in dark markets? A notorious black-market bazaar announces plans to close up shop on the same day as police announce the arrests of 61 people The post Global police arrest dozens of people in dark web sting appeared first on WeLiveSecurity
The electric automaker is working to release a fix for the underlying vulnerability in a matter of days The post Two white hats hack a Tesla, get to keep it appeared first on WeLiveSecurity
Our penchant for plugging in random memory sticks isn’t the only trouble with our USB hygiene, a study shows The post Most second-hand thumb drives contain data from past owners appeared first on WeLiveSecurity
More advice for detecting and avoiding sextortion scams The post I Still Didn’t See What You Did appeared first on WeLiveSecurity
The third penalty that Europe has levied on the tech giant in less than two years brings the total to €8.25 billion The post Google hit with €1.49 billion antitrust fine by EU appeared first on WeLiveSecurity
ESET researchers detail the latest tricks and techniques OceanLotus uses to deliver its backdoor while staying under the radar The post Fake or Fake: Keeping up with OceanLotus decoys appeared first on WeLiveSecurity
It’s prudent to get a security solution for your device, but a test by AV-Comparatives shows why you need to choose judiciously The post You should pick your Android security app wisely, test shows appeared first on WeLiveSecurity
Cyberblackmail/sextortion again raises its not-so-pretty little head The post I didn’t see what you did, redux appeared first on WeLiveSecurity
Facebook owned Instagram and WhatsApp also affected by unexplained interruption The post Facebook suffer most severe outage ever appeared first on WeLiveSecurity
The repository of email addresses and other records would offer a gold mine of data for scammers The post Over 2 billion records exposed by email marketing firm appeared first on WeLiveSecurity
Asian game developers again targeted in supply-chain attacks distributing malware in legitimately signed software The post Gaming industry still in the scope of attackers in Asia appeared first on WeLiveSecurity
The vulnerabilities, which resided in associated smartphone apps, were both easy to find and easy to fix The post Flaws in smart car alarms exposed 3 million cars to hijack appeared first on WeLiveSecurity
A bright tomorrow of technical delight, or a dismal future of digital dysfunction? The post RSA conference, USA 2019: Keynotes and key words appeared first on WeLiveSecurity
Protecting your privacy is no longer just an option but a legal requirement in many parts of the world The post RSA 2019: Protecting your privacy in a NIST and GDPR world appeared first on WeLiveSecurity
Users should waste no time in updating to the browser’s latest version The post Latest Chrome update plugs a zero-day hole appeared first on WeLiveSecurity
Some tips that businesses can do to get better at it without breaking the bank The post RSA – IoT security meets SMB appeared first on WeLiveSecurity
The latest report from the Anti-Phishing Working Group offers a mixed bag of findings about the phishing landscape in 2018 The post Payment processors remain phishers’ favorites appeared first on WeLiveSecurity
A ‘white hat’ from Argentina has come a long way since winning his first reward of US$50 in 2016 The post Teen earns US$1 million in bug bounties appeared first on WeLiveSecurity
The service became notorious for its use by ne’er-do-wells looking to make a quick buck by hijacking the processing power of victim machines to generate virtual money The post Coinhive cryptocurrency miner to call it a day next week appeared first on WeLiveSecurity
Worse, attackers have already been spotted targeting the flaw to deliver cryptocurrency miners and other payloads The post ‘Highly critical’ bug exposes unpatched Drupal sites to attacks appeared first on WeLiveSecurity
Following the revelation that a list containing millions of stolen usernames and passwords had appeared online, we tell you a few different ways to find out if your credentials were stolen in that—or any other—security breach The post How to spot if your password was stolen in a security breach appeared first on WeLiveSecurity
With FIDO2 certification for Android, Google is setting the stage for password-less app and website sign-ins on a billion devices The post Google aims for password-free app and site logins on Android appeared first on WeLiveSecurity
The keeper of the internet’s ‘phone book’ is urging a speedy adoption of security-enhancing DNS specifications The post Escalating DNS attacks have domain name steward worried appeared first on WeLiveSecurity
A new report shines some light on multiple aspects of the growing threat of cyber-extortion The post Cyber-extortionists take aim at lucrative targets appeared first on WeLiveSecurity
And that’s on top of the heartache experienced by the tens of thousands of people who fall for romance scams each year The post How costly are sweetheart swindles? appeared first on WeLiveSecurity
Siegeware is what you get when cybercriminals mix the concept of ransomware with building automation systems: abuse of equipment control software to threaten access to physical facilities The post Siegeware: When criminals take over your smart building appeared first on WeLiveSecurity
Anybody with hacking prowess can take a crack at reading votes or even rigging the vote count itself The post Switzerland offers cash for finding security holes in its e-voting system appeared first on WeLiveSecurity
Recent news articles show that MSPs are now being targeted by criminals, and for a variety of nefarious reasons. Why is this happening, and what should MSPs do about it? The post Criminal hacking hits Managed Service Providers: Reasons and responses appeared first on WeLiveSecurity
Apps downloaded from Google Play were eight times less likely to compromise a device than apps from other sources The post Google: Here’s how we cracked down on bad apps last year appeared first on WeLiveSecurity
A closer look at the damage caused by smoke particles and some steps you can take to aid recovery The post Smoke damage and hard drives appeared first on WeLiveSecurity
Bank of Valetta, which went dark for a day after the fraudulent transfers of €13 million, is now looking to get the money back The post Malta’s leading bank resumes operations after cyberheist-induced shutdown appeared first on WeLiveSecurity
Instead of seeking financial gain or other goals, the attacker leaves ‘scorched digital earth’ behind The post Attack at email provider wipes out almost two decades’ worth of data appeared first on WeLiveSecurity
