Menu

Latest articles

Apple’s Shazam App Boots Facebook Ads and Other Third-Party SDKs
Password Manager Firms Blast Back at ‘Leaky Password’ Revelations
GitHub Increases Rewards, Scope For Bug-Bounty Program
Microsoft: Russia’s Fancy Bear Working to Influence EU Elections
Join me to learn more about Magecart attacks – and how to defend against them
Most & least radiation emitting smartphones in 2019
Torrent uploader CracksNow caught distributing GrandCrab ransomware
Dark Web hacker selling 92M new accounts on Dream market
Google in hot water after not revealing it had hidden a secret microphone in home alarm product
Who will stand up for European democracy? Us! says US software giant Microsoft
Virus attack! Hackers unleash social media worm after bug report ignored
Facebook tracks users it thinks may harm its employees
Google’s working on stopping sites from blocking Incognito mode
Siegeware: When criminals take over your smart building

Siegeware is what you get when cybercriminals mix the concept of ransomware with building automation systems: abuse of equipment control software to threaten access to physical facilities The post Siegeware: When criminals take over your smart building appeared first on WeLiveSecurity

The man suing Apple over two-factor authentication has ‘previous’
Password managers may leave your online crown jewels ‘exposed in RAM’ to malware – but hey, they’re still better than the alternative
Unearthed emails could be smoking gun in epic GDPR battle against Google, adtech giants
Download Kali Linux 2019.1 with Metasploit 5.0
Microsoft to Kill Updates for Legacy OS Using SHA-1
ThreatList: APT Adversaries Up the Ante on Speed, Target Telecom

security update

security update

security update

New GandCrab Decryptor Unlocks Files of Updated Ransomware
ATM Jackpotting Malware Hones Its Heist Tools
Facebook flaw could have allowed an attacker to hijack accounts
Rietspoof malware distributes ransomware via messaging apps
Accused hacker Lauri Love loses legal bid to reclaim seized IT gear
Switzerland offers cash for finding security holes in its e-voting system

Anybody with hacking prowess can take a crack at reading votes or even rigging the vote count itself The post Switzerland offers cash for finding security holes in its e-voting system appeared first on WeLiveSecurity

Millions of “private” medical helpline calls exposed on internet
Thousands of Android apps bypass Advertising ID to track users
Revealed: Numbers show extent of security fears about security biz Kaspersky Lab
If you think your deleted Twitter DMs are sliding into the trash, you’re wrong
Facebook acts like a law-breaking ‘digital gangster’, says official report
Fake text generator is so good its creators don’t want to release full version
Consistent security by crypto policies in Red Hat Enterprise Linux 8
It starts with Linux: How Red Hat is helping to counter Linux container security flaws
Understanding the Red Hat Enterprise Linux random number generator interface
Hardening ELF binaries using Relocation Read-Only (RELRO)
What data privacy means and how to guard it in 2019
Preparing for Identity Management in Red Hat Enterprise Linux 8
Red Hat Global Customer Tech Outlook 2019: Automation, cloud, & security lead funding priorities
The Kubernetes privilege escalation flaw: Innovation still needs IT security expertise
Understanding the critical Kubernetes privilege escalation flaw in OpenShift 3
Security embargoes at Red Hat
Why real-time intelligence matters for managing third-party risk
Criminal hacking hits Managed Service Providers: Reasons and responses

Recent news articles show that MSPs are now being targeted by criminals, and for a variety of nefarious reasons. Why is this happening, and what should MSPs do about it? The post Criminal hacking hits Managed Service Providers: Reasons and responses appeared first on WeLiveSecurity

450,000 usernames and passwords stolen from Coinmama cryptocurrency broker
When Cyberattacks Pack a Physical Punch

Risk Level: Very Low. Type: Trojan.

Apple sued over death blamed on faulty iPad battery
Apple sued because two-factor authentication… oh, I give up
Mega-crackers back with nearly 100 million new stolen data records
Google: Here’s how we cracked down on bad apps last year

Apps downloaded from Google Play were eight times less likely to compromise a device than apps from other sources The post Google: Here’s how we cracked down on bad apps last year appeared first on WeLiveSecurity

Opera integrates a cryptocurrency wallet – is this Web 3.0?
Will the EU’s new copyright directive ruin the web?
Australian prime minister blames ‘state level’ baddies for Oz parliament breach
Smoke damage and hard drives

A closer look at the damage caused by smoke particles and some steps you can take to aid recovery The post Smoke damage and hard drives appeared first on WeLiveSecurity

Data-spewing Spectre chip flaws can’t be killed by software alone, Google boffins conclude
Tens of millions more web accounts for sale after more sites hacked, Mac malware spreads via Windows.exe, and more

Risk Level: Very Low. Type: Trojan.

security update

What is Ransomware and How to Prevent It?
Dark Web hacker selling 126M accounts stolen from new data breaches
Chinese facial recognition database tracking Muslims left exposed
Website uses Artificial Intelligence to create utterly realistic human faces
Where’s the Equifax Data? Does It Matter?
Data Breach Bonanza: Dating Apps, Equifax, Mass Credential Dumps

security update

Eight Cryptojacking Apps Booted From Microsoft Store
Tips on How to Fight Back Against DNS Spoofing Attacks

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Trickbot Malware Goes After Remote Desktop Credentials
Holby damned! We’ve caught a virus: Brit medical soaps team up for ‘cyber’ episode

Reading Time: ~2 min. Popular Photography Site Breached A major photography site, 500px, recently discovered they had suffered a data breach in July of last year. Data ranging from name and email addresses, to birthdates and user locations, were comprised. While the company did confirm no customer payment data is stored on their servers, all […]

Ultra-Sneaky Phishing Scam Swipes Facebook Credentials
Email service provider loses 2 decades worth of data due to hack attack
Russian to shut down Internet to test its cyber deterrence
An info stealer .exe malware is targeting Mac users around the globe
Critical zero-day vulnerabilities hit Lifesize video conferencing products
Malta’s leading bank resumes operations after cyberheist-induced shutdown

Bank of Valetta, which went dark for a day after the fraudulent transfers of €13 million, is now looking to get the money back The post Malta’s leading bank resumes operations after cyberheist-induced shutdown appeared first on WeLiveSecurity

Apple fighting pirate app developers, will insist on 2FA for coders
Judge won’t unseal legal docs in fight to break Messenger encryption
Should we profit from the sale of our personal data?
Chinese facial recognition database exposes 2.5m people
Photography site 500px resets 14.8 million passwords after data breach
‘This collaboration is absolutely critical going forward’… One positive thing about Meltdown CPU hole? At least it put aside tech rivalries…
Use an 8-char Windows NTLM password? Don’t. Every single one can be cracked in under 2.5hrs
Bad news for WannaCry slayer Marcus Hutchins: Judge rules being young, hungover, and in a strange land doesn’t obviate evidence
Ever-Changing Emotet Evolves Again with Fresh Evasion Tactic
Threatpost Poll: Over Half of Firms Asked Struggle with Mobile Security
Coffee Meets Bagel Dating App Warns Users of Breach
Inside a GandCrab targeted ransomware attack on a hospital
Google Play Cracks Down on Malicious Apps
Hacked versions of popular iOS games available on App Store
Attack at email provider wipes out almost two decades’ worth of data

Instead of seeking financial gain or other goals, the attacker leaves ‘scorched digital earth’ behind The post Attack at email provider wipes out almost two decades’ worth of data appeared first on WeLiveSecurity

US man and Brit teen convict indicted over school bomb threat spree
Hacker arrested for wave of fake bomb and shooting threats against schools
What’s behind this 1,000-character phishing URL?