Skip to main content

Posts

Showing posts from June, 2021

Robinhood ordered to pay $70m penalty to US regulator

It's the largest penalty the Financial Industry Regulatory Authority has ever ordered. https://bit.ly/3AiCNiP

Starlink’s “next-generation” user terminal will cost a lot less, Musk says

Musk expects near-global coverage in August and up to 500,000 users in one year. https://bit.ly/3xeFvUU

Microsoft digitally signs malicious rootkit driver

Company still hasn't revealed the cause of this serious security lapse. https://bit.ly/3w51kET

Hackers exploited 0-day, not 2018 bug, to mass-wipe My Book Live devices

Western Digital removed code that would have prevented the wiping of petabytes of data. https://bit.ly/3AaHQC8

SolarWinds hackers breach new victims, including a Microsoft support agent

Discovery came as Microsoft was investigating new breaches by the same hacker group. https://bit.ly/3zWYdSJ

A well-meaning feature leaves millions of Dell PCs vulnerable

Firmware security tool flaws affect as many as 30m desktops, laptops, and tablets. https://bit.ly/3dgV3iP

NFC flaws let researchers hack an ATM by waving a phone

Flaws in card-reader technology can wreak havoc with point-of-sale systems and more. https://bit.ly/3jjvhhF

“I’m totally screwed.” WD My Book Live users wake up to find their data deleted

Storage-device maker advises customers to unplug My Book Lives from the Internet ASAP. https://bit.ly/3jce2Pu

Hackers are using unknown user accounts to target Zyxel firewalls and VPNs

Authentication bypass attacks allow hackers to change breach network security. https://bit.ly/3h6Ntsf

John McAfee found dead by apparent suicide in Spanish prison cell

McAFee's larger-than-life and often illegal antics came to define his later years. https://bit.ly/2SRUwgr

Altice is reducing cable-Internet upload speeds by up to 86% next month

Altice cuts uploads from 35Mbps to 5Mbps to bring them "in line with other ISPs." https://bit.ly/3xMOfRT

Ahoy, there’s malice in your repos—PyPI is the latest to be abused

Open source repositories can be vectors for badness, so look before you run. https://bit.ly/35NhIiI

A week after arrests, Cl0p ransomware group dumps new tranche of stolen data

Leak shows that, like the rest of the ransomware scourge, Cl0p isn't going away. https://bit.ly/3j9Ofrb

Monero emerges as crypto of choice for cybercriminals

Untraceable "privacy coin" is rising in popularity among ransomware gangs. https://bit.ly/3qoSi4j

Connecting to malicious Wi-Fi networks can mess with your iPhone

The world's most secure consumer OS is bitten by a garden-variety programming bug. https://bit.ly/3wStvIw

Ukraine arrests ransomware gang in global cybercriminal crackdown

Arrests of Cl0p hacker group members adds to pressure on other countries to follow suit. https://bit.ly/3wHgPnx

Newly discovered Vigilante malware outs software pirates and blocks them

Most malware tries to steal stuff. Vigilante, by contrast, takes aim at piracy. https://bit.ly/3iQazG8

Starlink dishes go into “thermal shutdown” once they hit 122° Fahrenheit

Arizona man watered dish to cool it down but still suffered 7-hour outage. https://bit.ly/2SD6RVl

CD Project Red does an about-face, says ransomware crooks are leaking data

Data taken in breach disclosed in February likely related to employees and contractors. https://bit.ly/2TriWxe

EA source code stolen by hacker claiming to sell it online

More organizations feel the pain as the ransomware scourge grows more pernicious. https://bit.ly/2TfY0cg

Mystery malware steals 26M passwords from 3M PCs. Are you affected?

Massive trove can be used for ransomware, espionage, and more. https://bit.ly/2RDI2bp

Hackers can mess with HTTPS connections by sending data to your email server

Cross-protocol attacks could potentially steal login cookies or execute malicious code. https://bit.ly/351JlE2

US seizes $2.3 million Colonial Pipeline paid to ransomware attackers

Funds seized after Justice Department IDs Bitcoin wallet and obtains its private key. https://bit.ly/3x4QoIh

Hacker lexicon: What is a supply chain attack?

From NotPetya to SolarWinds, it’s a problem that’s not going away any time soon. https://bit.ly/3x4lwYb

This is not a drill: VMware vuln with 9.8 severity rating is under attack

Code execution flaw in vCenter is exploited to install web shell on unpatched machines. https://bit.ly/3fSoDNb

Ransomware will now get priority treatment at the Justice Department

Directive comes as ransomware is exposing the fragility of critical supply chains. https://bit.ly/3ckAcL8

Attack on meat supplier came from REvil, ransomware’s most cut-throat gang

Criminals use high-pressure tactics to extort victims. https://bit.ly/2S4VGVa

Shortages loom as ransomware hamstrings the world’s biggest meat producer

Add meat to the list of critical supply chains disrupted by the malware scourge. https://bit.ly/2Tugh5D