Tag: Threatpost

FBI Plans to Inform States of Election Breaches

The agency changed its policy to provide more timely and actionable information to state and local election officials in the case of a cybersecurity breach to election infrastructure.   Advertise on IT Security News. Read the complete article: FBI Plans…

A Practical Guide to Zero-Trust Security

There are five different pillars to implement when moving to a modern, zero-trust security model.   Advertise on IT Security News. Read the complete article: A Practical Guide to Zero-Trust Security

U.N. Weathers Storm of Emotet-TrickBot Malware

A concerted, targeted phishing campaign took aim at 600 different staffers and officials, using Norway as a lure.   Advertise on IT Security News. Read the complete article: U.N. Weathers Storm of Emotet-TrickBot Malware

Microsoft Patches Major Crypto Spoofing Bug

January Patch Tuesday tackles 50 bugs, with eight rated critical, all as it pushes out its last regular Windows 7 patches.   Advertise on IT Security News. Read the complete article: Microsoft Patches Major Crypto Spoofing Bug

Scammers Dupe Texas School District Out of $2.3M

The wide-scale phishing scam reportedly started in early November and continued through December, before it was discovered by the Texas school district.   Advertise on IT Security News. Read the complete article: Scammers Dupe Texas School District Out of $2.3M

Unpatched Citrix Flaw Now Has PoC Exploits

Over 25,000 servers globally are vulnerable to the critical Citrix remote code execution vulnerability.   Advertise on IT Security News. Read the complete article: Unpatched Citrix Flaw Now Has PoC Exploits

Oil-and-Gas APT Pivots to U.S. Power Plants

Researchers say that physically disruptive attacks aren’t imminent, but an increased focus on U.S. electrical-grid operators doesn’t bode well.   Advertise on IT Security News. Read the complete article: Oil-and-Gas APT Pivots to U.S. Power Plants

Oil-and-Gas Specialist APT Pivots to U.S. Power Plants

Researchers say that physically disruptive attacks aren’t imminent, but an increased focus on U.S. electrical-grid operators doesn’t bode well.   Advertise on IT Security News. Read the complete article: Oil-and-Gas Specialist APT Pivots to U.S. Power Plants

Exploit Fully Breaks SHA-1, Lowers the Attack Bar

Users of GnuPG, OpenSSL and Git could be in danger from an attack that’s practical for ordinary attackers to carry out.   Advertise on IT Security News. Read the complete article: Exploit Fully Breaks SHA-1, Lowers the Attack Bar

4 Ring Employees Fired For Spying on Customers

Ring said that four employees were fired because they for inappropriate access to customers’ connected video feeds.   Advertise on IT Security News. Read the complete article: 4 Ring Employees Fired For Spying on Customers

Drake Lyrics Used as Calling Card in Malware Attack

A hacker who apparently likes the musician Drake leaves lyrics from the artist’s song In My Feelings behind in an attack that delivers malware Lokibot or Azorult.   Advertise on IT Security News. Read the complete article: Drake Lyrics Used…

Man Sentenced in ATM Skimming Conspiracy

A Romanian national has been sentenced to 5 years in prison after racking up almost $400,000 in an ATM skimming scheme.   Advertise on IT Security News. Read the complete article: Man Sentenced in ATM Skimming Conspiracy

TikTok Riddled With Security Flaws

The video sharing app has fixed several flaws allowing partial account takeover and information exposure.   Advertise on IT Security News. Read the complete article: TikTok Riddled With Security Flaws

Google Fixes Critical Android RCE Flaw

Google’s first security update of 2020 addressed seven high and critical severity Android flaws.   Advertise on IT Security News. Read the complete article: Google Fixes Critical Android RCE Flaw

Sodinokibi Ransomware Behind Travelex Fiasco: Report

Researchers suspect the cybercriminals attacked using an unpatched critical vulnerability in the company’s seven Pulse Secure VPN servers.   Advertise on IT Security News. Read the complete article: Sodinokibi Ransomware Behind Travelex Fiasco: Report

Facebook Cracks Down on Deepfake Videos

Despite the difficulties of identifying deepfakes, social media sites are recognizing the need to crack down on the manipulated, misleading videos.   Advertise on IT Security News. Read the complete article: Facebook Cracks Down on Deepfake Videos

Hackers Deface U.S. Gov Website With Pro-Iran Messages

The Federal Depository Library Program (FDLP) website was defaced over the weekend to show a picture of a bloodied President Donald Trump.   Advertise on IT Security News. Read the complete article: Hackers Deface U.S. Gov Website With Pro-Iran Messages

Data Breach Affects 63 Landry’s Restaurants

Landry’s announced that more than 60 of its restaurants may be affected by payment processing system malware.   Advertise on IT Security News. Read the complete article: Data Breach Affects 63 Landry’s Restaurants

TikTok Banned By U.S. Army Over China Security Concerns

The U.S. Army this week has banned TikTok from government-owned devices as scrutiny over the platform’s relationship with China grows.   Advertise on IT Security News. Read the complete article: TikTok Banned By U.S. Army Over China Security Concerns