The new rules are designed to improve trust in digital identity solutions
Cybersecurity must be about growing trust in technologies rather than surveillance and control, argues Prof Adam Joinson
This white paper explains how basic security controls can protect organisations from the most common cyber attacks.
DDoS tools may be booby-trapped, warns Cisco
Move is aimed at driving accountability and transparency
This summer at Black Hat, we have published research about exploiting Huawei basebands (video recording also available here). The remote code execution attack surface explored in that work was the Radio Resource stack’s CSN.1 decoder. Searching for bugs in CSN.1 decoding turned out to be very fruitf...
Lapsus group appears to have compromised new targets
Grand jury indicts two women on suspicion of tampering with election equipment
Summary In this advisory we are disclosing a heap overflow vulnerability in the MediaTek baseband. The vulnerability can be exploited to gain arbitrary code execution in the context of the baseband runtime. The vulnerability was fixed in 2020 in some models, and received a CVE and more widely deploy...
Old botnet performs new trick by inserting itself into the middle of email threads
Defendant indicted over deployment of REvil ransomware arrives in America
Summary In this advisory we are disclosing a heap overflow vulnerability in the MediaTek baseband. The vulnerability can be exploited to gain arbitrary code execution in the context of the baseband runtime. The vulnerability was fixed in 2020 in some models, and received a CVE and more widely deploy...
The framework aims to mitigate ethical issues surrounding use of AI in security
The research indicates that MSPs are becoming more of a primary target for cyber-criminals than their customers
Summary In this advisory we are disclosing a heap overflow vulnerability in the MediaTek baseband. The vulnerability can be exploited to gain arbitrary code execution in the context of the baseband runtime. The vulnerability was fixed in 2020 in some models, and received a CVE and more widely deploy...
As bombs fly in Ukraine, datacenter owners are urged to take action
Report dives into recent leak of internal data on ransomware group
Summary In this advisory we are disclosing a heap overflow vulnerability in the MediaTek baseband. The vulnerability can be exploited to gain arbitrary code execution in the context of the baseband runtime. The vulnerability was fixed in 2020 in some models, and received a CVE and more widely deploy...
Researcher finds pro-Ukraine hacktivists are having an impact
Study finds most consumers prefer to bank online, but are concerned about potential fraud