Menu

Link

British Airways Website, Mobile App Breach Compromises 380k
British Airways hacked- Private & financial data of 380,000 customers stolen
Threatpost News Wrap Podcast For Sept. 7
Threat Actors Eyeing IQY Files To Peddle Malspam
Top MacOS App Exfiltrates Browser Histories Behind Users’ Backs
ThreatList: Attacks on Industrial Control Systems on the Rise
Teenage hacker admits making hoax bomb threats against schools and airlines
U.S. Ties Lazarus to North Korea and Major Hacking Conspiracy
British Airways hacked – customer data and details of 380,000 card payments stolen
Active Spy Campaign Exploits Unpatched Windows Zero-Day
Mozilla Patches Critical Code Execution Bug in Firefox 62
How to manipulate Apple’s podcast charts, and get yourself a top-rated show
High-Severity Flaws in Cisco Secure Internet Gateway Service Patched
Smashing Security #094: Rogue browser extensions, Twitter presence, and how to cheat in exams
OilRig Sends an OopsIE to Mideast Government Targets
Misconfigured Tor sites using SSL certificates exposing public IP addresses
Google Rolls Out 40 Fixes with Chrome 69
Active Campaign Exploits Critical Apache Struts 2 Flaw in the Wild
The Vulnerability Disclosure Process: Still Broken
Ran Levi interviews Graham Cluley on the Malicious Life podcast
MEGA Chrome extension hacked with cryptocurrency malware
You are not alone; Facebook, Instagram and WhatsApp are down for many (Updated)
Don’t Fall for Webcam Blackmail: Here’s How to Protect Yourself
If an extension goes rogue, everything you do in your browser is compromised
Tiny Island Atoll’s Domain Used in Widespread Ad Fraud
Premera Blue Cross victims accuse insurer of deliberately destroying hacking evidence
Multiple Remote Code-Execution Flaws Patched in Opsview Monitor
Google and MasterCard will track your retail spending under a secret deal
Thousands of MikroTik Routers Hijacked for Eavesdropping
ThreatList: 60% of BEC Attacks Fly Under the Radar
CamuBot Malware Camouflaged as Bank Security App to Steal Credentials
‘CamuBot’ Banking Malware Ups the Trojan Game with Biometric Bypass
Cryptominers killing cryptominers to squeeze more out of your CPU
Parental control spyware app Family Orbit hacked; 281 GB of data exposed
Hackers selling data of 130 million Chinese hotel clients on Dark Web for 8 BTC
APT10 Under Close Scrutiny as Potentially Linked to Chinese Ministry of State Security
Twitter testing new feature that reveals when you’re online
Read OneSpan’s 8-page report on the top six e-Signature use cases in banking
Cryptomining scripts will be blocked in upcoming versions of Firefox browser
Hacker who leaked naked photos of Jennifer Lawrence jailed for 8 months
Cell-Site surveillance devices (Stingray) could disrupt 911 emergency calls
RIG Exploit Toolkit Distributing CeidPageLock Malware to Hijack Browsers
Apple Watch saves one more life by notifying user about his unusual heart rate
John McAfee backed Bitfi wallet pwned again
MagentoCore Card Skimmer Found on Mass Numbers of E-Commerce Sites
Threatpost News Wrap Podcast For Aug. 31
Bucking the Norm, Mozilla to Block Tracking Cookies in Firefox
DDoS attack from Anonymous Catalonia cripples Bank of Spain website
Air Canada admits app data breach included customers’ passport details
ThreatList: Security Pros Confident They Could Compromise Their Own Orgs
New Threat Actor ‘Rocke’: A Rising Monero Cryptomining Menace
Android OS API-Breaking Flaw Offers Useful WiFi Data to Bad Actors
Cobalt Group Targets Banks in Eastern Europe with Double-Threat Tactic
Critical Flaws in Syringe Pump, Device Gateways Threaten Patient Safety
Travel Breaches Hit Air Canada and Asia-Pac Hotelier
Smashing Security #093: Abandoned domains and dating app dangers
BusyGasper Malware Packs a Simple but Potent Punch
Company that Sells Spyware to Domestic Abusers Hacked
Yahoo Persists in Scanning Emails for In-Depth Ad-Targeting
High-Severity Flaws Patched in Schneider Electric Products
The 4 Critical Building Blocks for Digital Threat Hunting
Podcast: Plugging Leaky Data in the Cloud
Hackers Publish PoC of Zero-day Vulnerability in Windows on Twitter
Lazarus Group’s AppleJeus MacOS malware targeting cryptocurrency exchanges
Researchers Shine Light on Smart-Bulb Data Theft
Instagram finally supports third-party 2FA apps for greater account security
Crashing Mobile Apps Capture Screens, Leak Private Data
Brazilian Crypto exchange hacked; private data of over 264,000 users exposed
Facebook Flaw Allowed Remote Commands
OCR software firm ABBYY leaks 203,000 customer documents in MongoDB server snafu
6 Tips to Protect Your Online Business from Cyber Attacks
Microsoft Windows Zero-Day Found in Task Scheduler
ThreatList: Ransomware Attacks Down, Fileless Malware Up in 2018
Adobe Pushes Out Unscheduled Creative Cloud Application Fix
Side-Channel Attack Allows Remote Listener to ‘Hear’ On-Screen Images
AT Command Hitch Leaves Android Phones Open to Attack
Newsmaker Interview: Derek Manky on ‘Self-Organizing Botnet Swarms’
Fortnite Android App Falls Victim to Man-in-the-Disk Flaw
Google finds flaw in Android Fortnite’ Installer leading to malware installation
You are not alone; The Pirate Bay is down for everyone
T-Mobile data breach: Personal data of 2 million users stolen
Fortnite fury over how Google handled its huge security hole
You can now run Windows 95 on your Mac, Linux and Windows 10 devices
PoC Code Surfaces to Exploit Apache Struts 2 Vulnerability
Following Facebook and Twitter, Google Targets Iranian Influence Operation
Mirai Variant Cross-Compiles Attack Code with Aboriginal Linux
T-Mobile Alerts 2.3 Million Customers of Data Breach Tied to Leaky API
Cross-Site Scripting Flaw in Apache ActiveMQ Threatens Web Visitors
Hackers have stolen details of two million T-Mobile customers
Cheddar’s Restaurants Bitten By Credit-Card Breach
ThreatList: $1.1M is Lost to Cybercrime Every Minute of Every Day
AdvisorsBot Downloader Emerges in Raft of Malware Campaigns
Apache Struts 2 Flaw Uncovered: ‘More Critical Than Equifax Bug’
Recent App Issues Reveal Facebook’s Struggles to Temper Data Privacy Woes
Facebook pulls its VPN from the iOS App Store after data-harvesting accusations
Security and Artificial Intelligence: Hype vs. Reality
Google warns businesses of government-backed phishing attacks
Augusta University Health data breach: Private data of over 417,000 individuals exposed
DNC: Highly Publicized ‘Phishing Attempt’ Was Only a Security Test
Smashing Security #092: Hacky sack hack hack