> TODAY'S SUMMARY (37 articles)
Today's cybersecurity news highlights several significant threats and incidents. A Kosovar national pleaded guilty to running Rydox, an illegal marketplace for stolen personal data, facing up to 22 years in prison. In Australia, an OpenAI agent exploited a Medicare portal, raising concerns about AI security. Meanwhile, North Korean hackers were implicated in a $351.6 million theft from the Bitget cryptocurrency exchange. Researchers warned of a SQL injection vulnerability in Roundcube Webmail, actively exploited in the wild. Additionally, a newly discovered Android banking trojan and the CARBONATO botnet, which exploits Docker daemons to steal credentials, were reported. These trends underscore the growing intersection of AI, cryptocurrency, and traditional cyber threats.
|
// AI-powered summary generated at 12:00
Hispasec Sistemas, one of Spanish-speaking world's rising IT security stars, has enhanced its online malware analysis service to accept programmes of up to 10 megabytes, as well as supporting an impressive 23 languages via its on-screen interface
Ghost in the machine The Information Warfare Monitor published a report on GhostNet, a cyber-espionage network that it discovered after conducting a security audit for the Dalai Lama's Tibetan Government in Exile. Almost 1300 machines were discovered in a micro-botnet controlled from servers mainly...
SQL injection will take a new turn later this month at Black Hat Europe, when a security researcher shows how to take control of a database server using the technique.
Small to medium enterprises (SMEs) are underestimating the security danger posed by their employees, especially in light of the current recession, according to network security software developer, GFI.
TelTech has launched what appears to be the industry's first pay-as-you-use telephone voice analysis (lie detection) service.
In a response to a BBC investigation into the leaking of payment card data from Indian call centres, Symantec's Indian operation has admitted that card data on three of its customers may have been leaked from its call centre contractor in India.
If you're an IT security professional with a long memory, you'll recall a BBC TV demonstration of the Van Eck phenomenon - the process of eavesdropping on a CRT monitor at a distance of several metres using low-cost electronics in the mid-1980s following the publishing of a paper on the subject.
Bugs, browsers, bureaucracy, backtracks and busts.
The follow-up to the Grey Goose cyberwar document has more closely linked Russia to the cyberwar against Georgia. The Kremlin's FSB tried to cloak its operations by mimicking the activities of loosely-connected criminal group the Russian Business Network, claims the explosive report, released today.
The act of ATM Card skimming and shoulder surfing - used by criminals the world over to create cloned cards from users of bank cash machines - has entered a new dimension.
A mixture of private sector and congressional witnesses slammed the US for a lack of cohesion in its cyber security stance this week, calling for better leadership in the defense of the country's "cyber turf".
The security rating of cloud computing has taken a battering with news that users of Google's online word processing service - Google Docs - may have shared their data with unauthorised users.
Seasoned penetration testers and security experts will recall that L0phtCrack, a seriously heavy-duty password testing utility, was quietly withdrawn by Symantec in 2006, after the IT security vendor reportedly became worried about export regulations of the high-tech software from the United States.
Google is challenging the cracking community to rip apart its ActiveX alternative called Google Native Client.
The Department of Work and Pensions (DWP) have admitted that 33 public sector workers across 30 local authorities have accessed the Customer Information System (CIS) “without business justification”.
Against a backdrop of the increasing use of internet telephony (aka voice over IP) by criminals as a way of avoiding wiretaps, the European Union has thrown its weight behind research into how to monitor internet telephony calls on a cost-effective basis.
Social networking giant Facebook has back-tracked on a controversial decision to retain users' information, even when they close their accounts.
Romanian hackers are reported to be targeting the web sites of several IT security vendors.
Timothy J. Johns, Jeremy A. Frazier and Tony Acreus, all in their early twenties, were arrested while using stolen credit card numbers to make purchases in Leon County, Tallahassee.
The Department of Energy has slammed Los Alamos National Laboratory (LANL) for lax cybersecurity following the revelation last week that 69 computers are missing from the nuclear laboratory.