2023

CERT-UA Warns of SmokeLoader and RoarBAT Malware Attacks Against Ukraine

CERT-UA Warns of SmokeLoader and RoarBAT Malware Attacks Against Ukraine 08/05/2023 at 13:56 By An ongoing phishing campaign with invoice-themed lures is being used to distribute the SmokeLoader malware in the form of a polyglot file, according to the Computer Emergency Response Team of Ukraine (CERT-UA). The emails, per the agency, are sent using compromised accounts […]

React to this headline:

Loading spinner

CERT-UA Warns of SmokeLoader and RoarBAT Malware Attacks Against Ukraine Read More »

Western Digital store offline due to March breach

Western Digital store offline due to March breach 08/05/2023 at 13:02 By Helga Labus The Western Digital online store is offline as a result of the “network security incident” it suffered in March 2023. Users have been notified On May 5, 2023, the company emailed its customers to say that an unauthorized party obtained a

React to this headline:

Loading spinner

Western Digital store offline due to March breach Read More »

The WhatsApp of secure computation

The WhatsApp of secure computation 08/05/2023 at 08:09 By Help Net Security A key term when discussing encryption these days is end-to-end (E2E) encryption. The idea with E2E encryption is that data is kept confidential between the encryptor and the intended receiver. This might seem an obvious requirement, but not all so-called secure systems offer

React to this headline:

Loading spinner

The WhatsApp of secure computation Read More »

The true numbers behind deepfake fraud

The true numbers behind deepfake fraud 08/05/2023 at 08:09 By Help Net Security The rise of AI-generated identity fraud like deepfakes is alarming, with 37% of organizations experiencing voice fraud and 29% falling victim to deepfake videos, according to a survey by Regula. In this Help Net Security video, Henry Patishman, Executive VP of Identity

React to this headline:

Loading spinner

The true numbers behind deepfake fraud Read More »

Your voice could be your biggest vulnerability

Your voice could be your biggest vulnerability 08/05/2023 at 08:09 By Help Net Security AI technology is fueling a rise in online voice scams, with just three seconds of audio required to clone a person’s voice, according to McAfee. McAfee surveyed 7,054 people from seven countries and found that a quarter of adults had previously

React to this headline:

Loading spinner

Your voice could be your biggest vulnerability Read More »

Consumer skepticism is the biggest barrier to AI-driven personalization

Consumer skepticism is the biggest barrier to AI-driven personalization 08/05/2023 at 08:09 By Help Net Security Businesses worldwide are eagerly embracing the potential for AI to provide personalized customer experiences, but customers remain cynical, according to Twilio. This year’s report underscores the value of an AI-driven personalization strategy for brands looking to both retain existing

React to this headline:

Loading spinner

Consumer skepticism is the biggest barrier to AI-driven personalization Read More »

Lessons from a 40-year-long automotive OEM leader

Lessons from a 40-year-long automotive OEM leader 08/05/2023 at 08:09 By Help Net Security Paul Cha is a cyber and product security leader, serving as the VP of Cybersecurity at LG Electronics Vehicle component Solutions. Paul held critical positions at Synopsis, Ford Motor Company, and Samsung before joining LG. He found his way to cybersecurity

React to this headline:

Loading spinner

Lessons from a 40-year-long automotive OEM leader Read More »

To fight cyber extortion and ransomware, shift left

To fight cyber extortion and ransomware, shift left 07/05/2023 at 18:25 By How can organizations defend themselves more effectively against ransomware and other forms of cyber extortion? By “shifting left” and adopting proactive cybersecurity strategies to detect attacks sooner, mitigating breaches before they cause harm. This article is an excerpt from Trend Micro Research, News

React to this headline:

Loading spinner

To fight cyber extortion and ransomware, shift left Read More »

Inside the 2022 Email Cyber Threat Landscape

Inside the 2022 Email Cyber Threat Landscape 07/05/2023 at 18:25 By Key trends and predictions you should know about This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source React to this headline:

React to this headline:

Loading spinner

Inside the 2022 Email Cyber Threat Landscape Read More »

Attack on Security Titans: Earth Longzhi Returns With New Tricks

Attack on Security Titans: Earth Longzhi Returns With New Tricks 07/05/2023 at 18:25 By After months of dormancy, Earth Longzhi, a subgroup of advanced persistent threat (APT) group APT41, has reemerged using new techniques in its infection routine. This blog entry forewarns readers of Earth Longzhi’s resilience as a noteworthy threat. This article is an

React to this headline:

Loading spinner

Attack on Security Titans: Earth Longzhi Returns With New Tricks Read More »

To Keep Up With Cybersecurity Laws, Go ‘Federal First’

To Keep Up With Cybersecurity Laws, Go ‘Federal First’ 07/05/2023 at 18:25 By With new cybersecurity laws and regulations rolling out, the best way to maintain broad compliance is to align with the most stringent frameworks. In the U.S., that means taking a ‘federal first’ approach—conforming to the highest security requirements of the United States

React to this headline:

Loading spinner

Read More »

Global Cyber Risk Lowers to Moderate Level in 2H’ 2022

Global Cyber Risk Lowers to Moderate Level in 2H’ 2022 07/05/2023 at 18:25 By Trend’s seventh edition of the Cyber Risk Index (CRI) reveals an in-depth analysis of cyber threat and vulnerabilities This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source React to this headline:

React to this headline:

Loading spinner

Read More »

Using Co-Managed SOC to Derive Maximum Value from a SIEM Investment

Using Co-Managed SOC to Derive Maximum Value from a SIEM Investment 07/05/2023 at 18:25 By Security information and event management (SIEM) systems are crucial to cyber security, providing a solution for collecting and analyzing alerts from all manner of security tools, network infrastructure, and applications. This article is an excerpt from Trustwave Blog View Original

React to this headline:

Loading spinner

Using Co-Managed SOC to Derive Maximum Value from a SIEM Investment Read More »

Trustwave Answers 11 Important Questions on ChatGPT

Trustwave Answers 11 Important Questions on ChatGPT 07/05/2023 at 18:25 By ChatGPT can arguably be called the breakout software introduction of the last 12 months, generating both amazement at its potential and concerns that threat actors will weaponize and use it as an attack platform. This article is an excerpt from Trustwave Blog View Original

React to this headline:

Loading spinner

Trustwave Answers 11 Important Questions on ChatGPT Read More »

Trustwave Briefs Federal Officials on Cybersecurity Trends and Discoveries

Trustwave Briefs Federal Officials on Cybersecurity Trends and Discoveries 07/05/2023 at 18:25 By Karl Sigler, Senior Security Research Manager, SpiderLabs Threat Intelligence, conducted a series of briefings in Washington, D.C., to federal officials on April 12-13, giving an update on what Trustwave SpiderLabs researchers are finding with the Russia-Ukraine War, ChatGPT, and current phishing trends.

React to this headline:

Loading spinner

Trustwave Briefs Federal Officials on Cybersecurity Trends and Discoveries Read More »

Trustwave MDR and Penetration Testing Solutions Win Global InfoSec Awards

Trustwave MDR and Penetration Testing Solutions Win Global InfoSec Awards 07/05/2023 at 18:25 By Trustwave was honored during Cyber Defense Magazine in the 11th Annual Global InfoSec Awards at the 2023 RSA Conference, taking home accolades for Managed Detection and Response (MDR) Service Providers and was named the Market Leader in Penetration Testing. This article

React to this headline:

Loading spinner

Trustwave MDR and Penetration Testing Solutions Win Global InfoSec Awards Read More »

Why It’s Important to Change Default Credentials

Why It’s Important to Change Default Credentials 07/05/2023 at 18:24 By Security best practice guidelines always call for changing default passwords as any password left on the factory preset is considered low hanging fruit, essentially just waiting to be abused by attackers to gain unauthorized access. This article is an excerpt from SpiderLabs Blog from

React to this headline:

Loading spinner

Why It’s Important to Change Default Credentials Read More »

Dissecting Buffer Overflow Attacks in MongoDB

Dissecting Buffer Overflow Attacks in MongoDB 07/05/2023 at 18:24 By Towards the end of 2020, a new vulnerability in MongoDB was found and published. The vulnerability affected almost all versions of MongoDB, up to v4.5.0, but was discussed and patched appropriately. This article is an excerpt from SpiderLabs Blog from Trustwave View Original Source React

React to this headline:

Loading spinner

Dissecting Buffer Overflow Attacks in MongoDB Read More »

CVE-2023-29383: Abusing Linux chfn to Misrepresent /etc/passwd

CVE-2023-29383: Abusing Linux chfn to Misrepresent /etc/passwd 07/05/2023 at 18:24 By Two years ago, I picked out chfn as a candidate to be reviewed for security bugs. Why chfn I hear you ask? (Thanks for asking.) It is one of a small number of Set owner User ID (SUID) programs loaded with Linux which means

React to this headline:

Loading spinner

CVE-2023-29383: Abusing Linux chfn to Misrepresent /etc/passwd Read More »

Scroll to Top