> TODAY'S SUMMARY (55 articles)
Today's cybersecurity landscape highlights significant threats and vulnerabilities that organizations must address. Forescout warns that inadequate network segmentation is enlarging attack surfaces, making businesses more vulnerable. A critical vulnerability in ZyXEL switches has been exploited by Chinese hackers, leading to the exfiltration of sensitive data from nearly 1,000 devices globally. Additionally, a newly discovered flaw in the Linux kernel allows unauthorized access to host memory from guest virtual machines, raising concerns for cloud environments. Meanwhile, a malicious NPM package, disguised as a legitimate software, has garnered millions of downloads, highlighting the persistent threat of supply chain attacks. Lastly, CISOs are urged to update incident response playbooks in light of emerging AI-driven threats, including sophisticated deepfakes and autonomous malware.
|
// AI-powered summary generated at 12:01
The companies on the London Stock Exchange pose a serious risk to the UK’s national security, according to KPMG, which found that all FTSE 350 firms are leaking data that can be used by a range of cyber attackers, including state-sponsored cyber-spies.
One week ago the ACLU revealed widespread US police license plate monitoring and complained of too few rules to prevent abuse. Yesterday the ICO used the UK's data protection law to tell UK police to stop doing similar.
Today we’re excited to release an open-source version of iVerify! iPhone users now have an easy way to ensure their phones are free of malware. iVerify validates the integrity of supported iOS devices and detects modifications that malware or jailbreaking would make, without the use of signatures. I...
One would have to be living under a rock, or using two cans and a piece of string to communicate, not to be aware that mobile and WiFi security threats are escalating as wireless networking penetration rises. The latest numbers reveal that in the second quarter of 2013, a full 10% of home networks a...
The US National Institute of Standards and Technology (NIST) has released a revision to the digital signature standard used to ensure the integrity of electronic documents, as well as the identity of the signer.
Les composants des systèmes d’information industriels étant mal armés pour résister à des cyber-attaques, que faut-il faire :
les rendre plus résistants en réduisant leur vulnérabilité ? (les « patcher »)
ou les mettre hors de portée des attaquants via des [...] Lire la suite
The University of Oxford is poised to broaden its cybersecurity education offerings, with advanced degree training beginning this autumn.
A new professional-grade banking trojan is stepping into the cybercrime vacuum left by Zeus and Citadel – and looks to be as effective as those notorious kings of crimeware have been at draining people’s bank accounts.
Hacker conferences, like Black Hat and DEFCON, are notorious for highlighting the security missteps of attendees. Before the show, which takes place in Las Vegas next week, IT security professionals should take every security precaution to prevent being hacked.
The Lakeland kitchenware online store has emailed its customers with a warning that two of its databases were breached by hackers late last week, and that it was resetting all customer passwords.
The pro-Assad hacking group Syrian Electronic Army (SEA) yesterday defaced the Viber subdomain support.viber.com and pasted a screenshot of user information supposedly taken from a breached database.
Cyber-crime and espionage is clearly a costly scourge for businesses and governments, factoring in data theft, clean-up costs, brand damage, customer losses, and so on. In total, the range for cybercrime loss to the global economy is between $100 billion and $500 billion, according to McAfee.
The United Arab Emirates has successfully fought off a series of cyber-attacks that it was able to trace back to Egypt.
Disputed ex-Chinese province Taiwan is reportedly playing a big role in the global cyberwar. Security experts say the island is a proving ground for Chinese hacker-spies, who attack its IT infrastructure on a regular basis with hundreds of attempts per month, before deploying those tactics to other...
A new web application attack report reveals that retailers suffer twice as many SQL injection attacks as other industries, and that one website received 94,000 attack requests in 24 hours – or 26 attack requests per minute.
Prime Minister David Cameron's expected statement on internet porn was duly delivered yesterday, and led to immediate accusations of being confused, unworkable, and the beginning of online censorship.
When Kate Middleton, the Duchess of Cambridge, went into labor with the child who recently became third in line for the throne of England, the event immediately had millions of royal-watchers riveted – and, apparently, plenty of spammers ready to leverage the vast amount of public interest in everyt...
The SIM card – long considered the uncrackable heart of the mobile phone – can finally be rooted. Details will be presented by a German researcher at Black Hat on 31 July. Meanwhile estimates put the number of vulnerable phones at either 500 million or 750 million.
On Saturday, Canonical – which looks after the Ubuntu Linux user forum – received reports of a site defacement. Within four minutes it had taken the Ubuntu Forums site off-line to investigate what turns out to be a major hack.
Two things happened last week: Apple developers began to receive unexpected password reset emails, and the Apple Developer center was shut down for maintenance. Everything pointed to a breach; but Apple said little.