Last week I speculated that the current horrible state of internet security may well be as good as we’re ever going to get. I focused on the technical and historical reasons why I believe that to be true. Today, I’ll tell you why I’m convinced that, even if we were able to solve the technical […]
Netflix has become the latest big name brand to have one of its social media accounts hijacked by OurMine. The post OurMine hijacks Netflix’s US Twitter account appeared first on WeLiveSecurity
Cyberbullying has come to be a huge problem on the internet. Here are some important things to be aware of. The post What is cyberbullying and how to defend against it? appeared first on WeLiveSecurity
Highlighting 20 success stories in the struggle against cybercrime, from indictments to arrests, extraditions to sentencing. Law enforcement efforts in cyberspace may have borne more fruit in 2016 than in any other year. The post Year-end cybercrime update 2016: an avalanche of good news? appeared first on WeLiveSecurity
ESET’s Peter Kálnai and Michal Malik report on a new Linux/Rakos threat – devices and servers are under SSH scan again. The post New Linux/Rakos threat: devices and servers under SSH scan (again) appeared first on WeLiveSecurity
The head of the UK’s NCSC has been asked to offer more detail into how the financial services sector will be protected from cyberattacks. The post NCSC boss asked to detail efforts to protect financial services sector against cyberattacks appeared first on WeLiveSecurity
One billion-plus accounts stolen in one online heist. The U.S. presidential election messed with by another country. Corporate secrets stolen and released on the internet on a regular basis. More and more data held hostage by ransomware. Stock markets routinely manipulated by hackers. Denial-of-service attacks whacking websites all over the place. Will computer security ever […]
IoT attacks are on the rise. As the technology becomes more relevant to our lives, we take a look at what the state of play is. The post IoT attacks: 10 things you need to know appeared first on WeLiveSecurity
The cybersecurity skills gap is a big problem for organizations struggling to protect rapidly expanding systems from a growing range of threats. We look at how big and what to do about it. The post Cybersecurity skills gap: it’s big and it’s bad for security appeared first on WeLiveSecurity
With spirits and internet usage at an all time high, there’s no better time for cybercriminals to lure a victim online. Here are 12 threats to be aware of. The post Don’t let cybercriminals ruin Christmas: Beware these 12 threats appeared first on WeLiveSecurity
ESET’s Trends for 2017: Security Held Ransom report includes a review of the most important events of last year and outlines trends in cybercriminal activity and cyberthreats for 2017. The post ESET Trends for 2017: Holding security ransom appeared first on WeLiveSecurity
Yahoo has announced that one billion of its user accounts has been affected by a data breach. ESET’s Mark James offers some informative security advice. The post Yahoo data breach: What you can do appeared first on WeLiveSecurity
Yahoo has experienced the biggest data breach in history, with up to one billion user accounts thought to have been affected by a historic security incident. The post Yahoo experiences biggest data breach in history: 1 billion affected appeared first on WeLiveSecurity
A new holiday season scam campaign is plaguing social media – and this time it’s pretending to sell heavily discounted Uggs, reports ESET’s Ondrej Kubovič. The post Ray-Bans out, Uggs in: Holiday season scam plagues social media appeared first on WeLiveSecurity
A 17-year-old who pleaded guilty to offenses relating to 2015’s TalkTalk cyberattack has had his iPhone confiscated and been sentenced to a 12-month rehabilitation order. The post Teenager’s phone confiscated for TalkTalk cyberattack offenses appeared first on WeLiveSecurity
ESET’s Anton Cherepanov analyzes the work of TeleBots, a malicious toolset that was used in focused cyberattacks against targets in Ukraine’s financial sector. The post The rise of TeleBots: Analyzing disruptive KillDisk attacks appeared first on WeLiveSecurity
It has not been a good year for the internet of things, security-wise. The latest IoT devices found vulnerable to trivial exploitation? Netgear routers. The post US-CERT warns Netgear routers can be easily exploited appeared first on WeLiveSecurity
A new study from Newcastle University in the UK suggests that cybercriminals can access online banking details of any Visa card through a so-called Distributed Guessing Attack. The post Distributed Guessing Attack can ‘compromise Visa cards in just six seconds’ appeared first on WeLiveSecurity
ESET’s Cameron Camp takes a closer look at security by design for mobile device manufacturers, assessing where we are and where we are heading. The post Security by design for mobile device manufacturers appeared first on WeLiveSecurity
As a traveling computer security consultant for over 20 years, I’ve had the chance to visit a lot of different operations and see what works and doesn’t work. I’m always looking for common denominators for successes and failures, and I share these lessons as I learn them. But I realize I’ve unconsciously absorbed one home […]
ESET’s Miguel Ángel Mendoza looks at why combining technology with standards could combat fraud. The post Why combining technology with standards could combat fraud appeared first on WeLiveSecurity
ESET’s Anton Cherepanov Jean-Ian Boutin discuss their paper, titled Modern Attacks on Russian Financial Institutions, which was published earlier this year. The post Modern attacks on Russian financial institutions appeared first on WeLiveSecurity
The security landscape has evolved to a point where most IT threats occur with the intention of generating financial gain for their creators and financiers. The post The cybercrime business model and its value chain appeared first on WeLiveSecurity
Get Safe Online has issued a warning to consumers to be aware of banking scammers, as cybercriminals are finding more sophisticated ways to access their account details. The post Get Safe Online: Watch out for banking scammers appeared first on WeLiveSecurity
Go ahead and hack your car, that’s fine now. Go ahead and hack the Department of Defense, that’s okay too under new policies. It wasn’t always this way. The post Hacking is legal again finally (sometimes) appeared first on WeLiveSecurity.
We live in a world where internet crime is rampant. Cyber criminals steal hundreds of millions of dollars each year with near impunity. For every 1 that gets caught, 10,000 go free — maybe more. For every 1 successfully prosecuted in a court of law, 100 get off scot-free or with a warning. Why is […]
ESET lifts the lid on Android ransomware – the picture doesn’t look good. It’s on the increase and extremely sophisticated. The post Android ransomware spreads further, with new methods in its toolbox appeared first on WeLiveSecurity.
David Harley, talking about child safety and security in (and yet not in) the South Atlantic. The post Child safety: An unexpected radio interview appeared first on WeLiveSecurity.
Earlier this week coordinated law enforcement action took down the Avalanche fast-flux network. ESET has been assisting in the cleanup. The post Avalanche takedown: Check if you are safe appeared first on WeLiveSecurity.
A year ago on 2nd December 2015, a collaboration between major cybersecurity firms, law enforcement and software providers – including ESET and Microsoft – successfully managed to disrupt Dorkbot, a malware family that had been infiltrating systems worldwide for over four years. Since its detection in April 2011, Dorkbot had caused numerous problems for businesses […]
National lottery operator Camelot tells players to change their passwords after thousands of accounts have been accessed by cybercriminals. The post 26,500 National Lottery accounts accessed by cybercriminals appeared first on WeLiveSecurity.
Cryptography is one of the fundamental aspects of information security. We look at it through the lens of the silver screen. The post Cryptography: How something nerdy went mainstream appeared first on We Live Security.
As many as 900,000 Deutsche Telekom customers were knocked offline on Sunday and Monday as an attempt was made to hijack broadband routers into a botnet. The post 900,000 Germans knocked offline, as critical router flaw exploited appeared first on We Live Security.
I received the following “domain abuse notice” for one of my inactive registered domains last week: Those of us who have dealt with falsely blacklisted domains in the past have seen notices like this before. It’s usually from an antispam vendor or service letting you know that your domain has been used in a spam […]
The San Francisco Municipal Transportation Agency has confirmed that it experienced a security incident over the weekend The post Muni experiences security incident appeared first on We Live Security.
ESET has developed a free tool to decrypt files and recover the information that might have been compromised by Crysis. The post New decryption tool for Crysis ransomware appeared first on WeLiveSecurity.
If you are getting ready to hunt for online deals this Black Friday, here are a few tips that will help you keep attackers away from your hard earned money. The post Historic Black Friday online safely advice appeared first on WeLiveSecurity.
Organizations need to do more to prevent themselves from experiencing data breaches, as many people are of the opinion that not enough is currently being done. The post Organizations ‘not doing enough’ to prevent data breaches appeared first on WeLiveSecurity.
Hackers broke into the MailChimp accounts of some businesses, and send out malicious invoice emails to subscribers… but that doesn’t mean that MailChimp suffered a serious security breach. Once again, two-factor authentication could have saved users’ bacon. The post MailChimp accounts hacked to spam out malicious emails appeared first on WeLiveSecurity.
Michigan State University has experienced a data breach, which it said took place on November 13th. The post Michigan State University experiences data breach appeared first on WeLiveSecurity.
Amazon customers are the latest victims of an email scam, warns Get Safe Online. The post Get Safe Online warns of Amazon email scam appeared first on WeLiveSecurity.
The long-awaited SHA-1 deprecation deadline of Jan. 1, 2017, is almost here. At that point, we’ll all be expected to use SHA-2 instead. So the question is: What is your browser going to do when it encounters a SHA-1 signed digital certificate? We’ll delve into the answers in a minute. But first, let’s review what […]
Your business’s CCTV camera could be coughing up your admin passwords. Patch now, or regret later. The post Siemens-branded CCTV webcams require urgent firmware patch appeared first on WeLiveSecurity.
The Conficker worm was huge news when it emerged towards the end of 2008, exploiting millions of Windows devices. Today, it remains one of the most pervasive malware families around the globe. The post The odd, 8-year legacy of the Conficker worm appeared first on WeLiveSecurity.
UK mobile company Three has fallen victim to a major data breach, with up to six million customers reported to have been affected. The post Three mobile network experiences data breach appeared first on WeLiveSecurity.
WhatsApp is to add encrypted video calling to its service on Monday, as it continues to bolsters security on the app. The post WhatsApp to offer encrypted video calling appeared first on WeLiveSecurity.
A new airline scam is promising people free Emirates flight tickets if they take part in a “fast survey”, ESET’s Denise Giusto Bilić reports. The post New airline scam promises free Emirates flight tickets appeared first on WeLiveSecurity.
A teenager has admitted being behind last year’s TalkTalk cyberattack, explaining he compromised the company’s website to “show off” to his friends. The post Teenager admits to TalkTalk cyberattack appeared first on WeLiveSecurity.
The financial repercussions of a data breach have been highlighted by the $1 million fine handed out to Adobe Systems for a 2013 security incident. The post Adobe fined $1 million for 2013 data breach appeared first on WeLiveSecurity.
It’s no secret that conservatives, who will soon control all three branches of the U.S. government with the election of President Trump, are more liable to give more power and deference to law enforcement. Perhaps the strongest influence is the likely appointment of one to three conservative Supreme Court justices. What does that mean for […]
This feature offers a very digested read of ESET’s trilogy of research papers on Sednit, one of the most notorious groups of cyberattackers in the world. The post Sednit: A very digested read appeared first on WeLiveSecurity.
Concerns over unprotected customer data sharing on WhatsApp and Facebook results in UK Information Commissioner threatening to enforce action. The post ICO concerned about privacy protection on WhatsApp/Facebook appeared first on WeLiveSecurity.
Smishing is nothing new. But that doesn’t mean that the criminals hell bent on stealing Apple ID password are resting on their laurels. The post Apple ID smishing evolves to lure more victims appeared first on WeLiveSecurity.
Google has announced new measures that resolve a security loophole that allows certain websites to circumnavigate its Safe Browsing service. The post Google fixes Safe Browsing security loophole appeared first on WeLiveSecurity.
Tesco Bank, which recently saw thousands of its customers lose funds to cybercriminals, has been found on the target list of the so-called Retefe malware. The post Tesco Bank not alone in being targeted by Retefe malware appeared first on WeLiveSecurity.
Interested in a career where you get to fight cybercrime on a daily basis? ESET’s senior research fellow David Harley takes a look at some key things. The post Careers in fighting cybercrime appeared first on WeLiveSecurity.
Secure your router, says ESET’s Lysa Myers. It can help protect all of your connected devices while they are in your home. The post Secure your router: How to help prevent the next internet takedown appeared first on WeLiveSecurity.
Back in January, I wrote one of my most popular posts ever: “Why you don’t need an RFID-blocking wallet.” As the title suggests, I argued that it’s a waste of money to buy a wallet with special shielding to protect your chipped credit card from RFID scanners wielded by street criminals seeking to snatch your […]
Targeted online guessing represents a major threat to online security, according to new research. The post Targeted online guessing ‘a major threat to online security’ appeared first on WeLiveSecurity.
There are a great many tools available to help quickly analyze the behavior of mobile malware samples. In the case of Android, one such app is AppMon. The post How to do an APK Analysis Using AppMon appeared first on WeLiveSecurity.
Liberia has been hit with a harmful DDoS attack yet, with most of its residents unable to get online. The Mirai botnet is the cause. The post Colossal DDoS attack in Liberia wipes majority of country offline appeared first on WeLiveSecurity.
ESET’s Michael Aguilar takes a deep dive into SMS/messaging clients, security, and privacy. The post I can see your texts: A deep dive into SMS/messaging clients, security, and privacy appeared first on WeLiveSecurity.
UK-based bookmaker William Hill has been hit with a DDoS attack, preventing many of its customers from being able to access its main website. The post William Hill website hit with DDoS attack appeared first on WeLiveSecurity.
In terms of technological advancement, Estonia is up there. It is, for example, the first ever country to offer e-residency permits to any world citizen. The post Estonia: Digital powerhouse offering e-residency to non-nationals appeared first on WeLiveSecurity.
On November 2nd 1988, the Morris Worm was released, bringing the internet to an effective standstill. It was a seminal moment in internet history. The post Flashback Tuesday: The Morris Worm appeared first on WeLiveSecurity.
For the past year, ESET and the security firm GoSecure combined their skills in order to research Linux/Moose further. Here’s some of what was uncovered. The post Linux/Moose: Still breathing appeared first on WeLiveSecurity.
Cyberattacks are “no longer the stuff of spy thrillers” – they are now a very serious threat to individuals, organizations and economies. The post Cyberattacks ‘no longer the stuff of spy thrillers’ appeared first on WeLiveSecurity.
As we continue to do more things with our smartphones, the threat posed by mobile malware increases. Here’s a short history of its development. The post A history of mobile malware from Cabir to SMS Thief appeared first on WeLiveSecurity.
People who are upset that Hillary Clinton’s personal email server may have been hacked are missing the big picture. Nearly everything that is worth hacking and connected to the internet is already hacked — and that which is not can be hacked at will. I don’t want to get into the morass of whether Clinton’s […]
Here’s a list of the 10 tools every white hat hacker needs in their toolkit, says ESET’s Lucas Paus. The post 10 gadgets every white hat hacker needs in their toolkit appeared first on WeLiveSecurity.
It seems the current DDoS tactics from cybercriminals is to gain control over millions of IoT devices and direct their power towards any target they choose. The post Trick or threat? How zombie IoT devices surprised the internet appeared first on WeLiveSecurity.
The personal details of 550,000 Australian Red Cross blood donors have been leaked in an event being described as Australia’s largest ever security breach. The post 550,000 Australian Red Cross blood donor details leaked appeared first on WeLiveSecurity.
As the world celebrates International Internet Day, we take a look at how cybercriminal activity has evolved online. The post International Internet Day: A great network targeted by cybercriminals appeared first on WeLiveSecurity.
Stephen Cobb, senior security researcher at ESET answers the 10 most frequently asked questions on election hacking. The post Election hacking FAQ: 2016 US presidential election edition appeared first on WeLiveSecurity.
Who would have thought that webcams could be exploited? Well, they can, and so serious is the issue, that it has the likes of Mark Zuckerberg covering them with up with tape. The post Webcam security: Understanding this modern day threat appeared first on WeLiveSecurity.
IoT devices, while extremely useful for simplifying various mundane aspects of everyday life, also offer criminals a new attack platform: your appliances. The post The Hive Mind: When IoT devices go rogue appeared first on WeLiveSecurity.
ESET’s threat analysts have taken a closer look at the software used by Sednit to spy on its targets and steal confidential information. The post Lifting the lid on Sednit: A closer look at the software it uses appeared first on WeLiveSecurity.
Last Friday’s massive DDoS attack against Dyn.com and its DNS services slowed down or knocked out internet connectivity for millions of users for much of the day. Unfortunately, these sorts of attacks cannot be easily mitigated. We have to live with them for now.Huge DDoS attacks that take down entire sites can be accomplished for a […]
European Cyber Security Month offers a great opportunity to remind people of some of the practices that can boost their cybersecurity skills. The post Know your enemy: Training can help avoid cybersecurity pitfalls appeared first on WeLiveSecurity.
Criminals are hunting for routers with default credentials and with vulnerabilities in their firmware, with Brazilians the main target. The post Cybercriminals target Brazilian routers with default credentials appeared first on WeLiveSecurity.
A Facebook hoax that has been around since at least 2012 has resurfaced, claiming that private photographs and messages are going to be made public. The post Facebook privacy settings hoax resurfaces again appeared first on WeLiveSecurity.
Security researchers at ESET have released their latest research into the notorious and highly experienced Sednit cyberespionage group. The post New ESET research paper puts Sednit under the microscope appeared first on WeLiveSecurity.
Consumers are failing to appropriately protect themselves against the threat of cybercrime, according to a new survey from Get Safe Online. The post Consumers still failing to protect themselves against cybercrime appeared first on WeLiveSecurity.
For many years I worked for Foundstone teaching hacking classes and doing penetration testing. It was the most enjoyable job I ever had.As part of that job, I traveled the world, including China, and got to determine firsthand which country had the best hackers. Although I didn’t travel to Russia during that time, lots of […]
A culture of cybersecurity is essential in today’s organizations to help ensure that they are able to successfully fend off cyberattacks . The post Organizations advised to invest in a culture of cybersecurity appeared first on WeLiveSecurity.
Demand for information security specialists is growing, and there are many routes to qualification. Do you have the skills to transform cybersecurity? The post Information security: A career at the forefront of an exciting industry appeared first on WeLiveSecurity.
Vera Bradley has notified its customers of a data breach, explaining that it had launched an investigation last month into a “payment card incident”. The post Vera Bradley alerts customers to data breach appeared first on WeLiveSecurity.
Since October is European Cyber Security Month, it is a good time to recap on social media and IM security. These online safety tips will do you well. The post Online safety tips for social media and IM fans appeared first on WeLiveSecurity.
NHS hospitals in England are increasingly being targeted with ransomware attacks, according to an investigation by the i newspaper The post NHS increasingly being targeted by ransomware attacks appeared first on WeLiveSecurity.
Honeypots provide the best way I know of to detect attackers or unauthorized snoopers inside or outside your organization. For decades I’ve wondered why honeypots weren’t taking off, but they finally seem to be reaching critical mass. I help a growing number of companies implement their first serious honeypots — and the number of vendors […]
Individuals are demonstrating security fatigue when it comes to protecting themselves online, increasing their risk of being compromised by a cyberattack. The post Security fatigue is preventing us from being safe online appeared first on WeLiveSecurity.
ESET’s Lysa Myers offer a detailed and comprehensive overview on how to stay safe against ransomware attacks, a threat that is growing in prominence. The post Ransomware: Expert advice on how to keep safe and secure appeared first on WeLiveSecurity.
A new survey, conducted by Ipsos and sponsored by ESET, finds that one in four Canadian SMBs with yearly revenues of $10 million or more have been hit by a cyberattack. The post Cybercrime in Canada: The impact on SMBs appeared first on WeLiveSecurity.
The UK’s Information Commissioner’s Office (ICO) hits TalkTalk with record fine for failing to take basic security measures to protect customer information. The post TalkTalk receives record fine for security failings that resulted in 2015 cyberattack appeared first on WeLiveSecurity.
Consistent and relentless DDoS attacks are causing “real damage” to organizations around the world, with the number of affected enterprises on the rise. The post DDoS attacks ‘consistent, relentless and damaging’ to organizations appeared first on WeLiveSecurity.
WeLiveSecurity author and ESET researcher Lukas Stefanko will be answering questions about Android malware on Reddits‘ popular Subreddit r/IamA. The post Malware researcher Lukas Stefanko will be online on Reddit appeared first on WeLiveSecurity.
Most companies don’t do what they need to do to reduce security risks. How do I know? Because I’ve consulted for hundreds of them. They don’t patch their most attacked programs in a timely manner, and they do a poor job of teaching their users how to avoid social engineering attacks — the two commonsense […]
More focus on how to spot social engineering attacks is needed in organizations, according to expert Jenny Radcliffe. The post Organizations ‘need to deliver social engineering training’ appeared first on WeLiveSecurity.
As European Cyber Security Month gets underway, ESET’s Ondrej Kubovič offers some top tips when it comes to safe and secure online banking. The post Do you know how to steer away from online banking trouble? appeared first on WeLiveSecurity.
Cybersecurity has gone from being a technical issue to one that needs consideration and leadership at a board level, according to an expert. The post Cybersecurity ‘no longer a technical issue’ appeared first on WeLiveSecurity.
