Security

Data breach hits security company Verisure, impact considered “limited”

Swedish security company Verisure is currently dealing with a data breach related to Alert Alarm customers in Sweden.
Read more about Data breach hits security company Verisure, impact considered “limited”

Odido fined €1.5M for poorly securing its wiretapping system

The Dutch Authority for Digital Infrastructure (RDI) has investigated the security of Odido’s wiretapping system and concluded that several components didn’t meet legal requirements. Therefore, the RDI has imposed a fine of €1,518,750.
Read more about Odido fined €1.5M for poorly securing its wiretapping system

Credit rating agency Experian fined €2.7M for GDPR violations

The Dutch data protection authority (DPA) has imposed a €2.7 million fine on Experian for violating the General Data Protection Regulation (GDPR).
Read more about Credit rating agency Experian fined €2.7M for GDPR violations

Data brokers are constantly doxing us, and we can’t do anything about it

Data brokers have so much data on us, scraped from all parts of the Internet. But if that data falls in the wrong hands, it can be more dangerous than we might’ve originally thought.
Read more about Data brokers are constantly doxing us, and we can’t do anything about it

The Military-industrial tech complex: GPUs matter more than jets

In the modern-day battlefield, advantage depends less on jets and more on GPUs, less on steel and more on software licenses, less on forward bases and more on cloud regions near undersea cables. Over the past decade, big tech has moved from the periphery of defense to its center. The tools of war now include mobile stacks, satellite links, and model governance checklists.
Read more about The Military-industrial tech complex: GPUs matter more than jets

TikTokers falling for videos spreading fake software activation commands, hiding malware

Cybercriminals on TikTok are collecting thousands of likes for videos that instruct unaware users to download and run malware themselves. TikTokers run malicious PowerShell commands, believing they’re activating Windows or other software for free.
Read more about TikTokers falling for videos spreading fake software activation commands, hiding malware

Collins Aerospace attack claimed by Everest, linking ransomware group to last month's European airport chaos

The Everest ransomware group has claimed responsibility for the September breach of Collins Aerospace and its MUSE check-in software. The attack impacted multiple major airports across Europe and caused travel chaos for days.
Read more about Collins Aerospace attack claimed by Everest, linking ransomware group to last month's European airport chaos

Several PA systems in the U.S. and Canada hacked to praise Hamas and condemn Trump

Hackers wreaked havoc by talking over PA systems, flight information display screens, and public address systems throughout several airports.
Read more about Several PA systems in the U.S. and Canada hacked to praise Hamas and condemn Trump

Hundreds of thousands of F5 systems exposed, potentially vulnerable to “catastrophic” compromise

Internet scanning services warn that hundreds of thousands of F5 systems are exposed online and may potentially be vulnerable to compromise. The company suffered a major breach, exposing severe vulnerabilities, source code, and other data.
Read more about Hundreds of thousands of F5 systems exposed, potentially vulnerable to “catastrophic” compromise

Thousands of companies fall victim to this particular cyberattack. Act now

Ransomware attacks have surged this year, and US-based companies remain the prime target for cybercriminals.
Read more about Thousands of companies fall victim to this particular cyberattack. Act now

Two men arrested for running massive billion-euro gambling ring

European authorities, coordinated by Eurojust, have identified a massive illegal online gambling ring with sales of nearly a billion euros ($1.17 billion). Two individuals have been charged with running several illicit online casino websites.
Read more about Two men arrested for running massive billion-euro gambling ring

Asahi hackers Qilin’s domination fueled by network of bulletproof hosting – report

Qilin ransomware, recently responsible for crippling Asahi breweries in Japan, has emerged as by far the world’s most active ransomware group. A new report by Resecurity revealed that the cartel’s deep connections with shadowy infrastructure providers keep its operations running.
Read more about Asahi hackers Qilin’s domination fueled by network of bulletproof hosting – report

We tricked Snapchat’s AI, and it told us too much

A Cybernews experiment exposed cracks in Snapchat’s AI safeguards, revealing how easily the friendly chatbot could be manipulated into sharing restricted information.
Read more about We tricked Snapchat’s AI, and it told us too much

"Imminent" nation-state threat to F5 devices, CISA urges deployment of critical updates

CISA warns of an imminent threat to federal agencies after nation-state hackers were found targeting F5 devices, issuing an emergency directive to apply critical updates immediately.
Read more about "Imminent" nation-state threat to F5 devices, CISA urges deployment of critical updates

Aadhaar, up close: a digital ID system in India, that can still trip people up

The Aadhaar ID system was first introduced in India in 2010 and has since become a big part of everyday life, with over a billion people using it. However, not everything is as rosy as it seems.
Read more about Aadhaar, up close: a digital ID system in India, that can still trip people up

Not so Secure Boot: 200K Framework computers found to include a bypass

The Secure Boot foundation has once again been shaken by another example of how easily this safety feature, which is supposed to protect against malicious software on boot, can be bypassed. Signed backdoors were found on 200,000 laptop and desktop computers from Framework.
Read more about Not so Secure Boot: 200K Framework computers found to include a bypass

Video meetings app Huddle01 leaking user data: emails, wallet addresses exposed

A video meetings app from the Huddle01 platform, aimed at decentralized Web Real-Time Communication (WebRTC), had promised its users more security. However, sensitive user data, including emails, IPs, and crypto wallet addresses, was found leaking from an unprotected server.
Read more about Video meetings app Huddle01 leaking user data: emails, wallet addresses exposed

UK regulator throws the book at Capita for huge 2023 data breach

The UK regulatory body, the Information Commissioner’s Office (ICO), has issued a fine of £14 million ($18.7 million) to Capita, an international outsourcing company, for failing to protect people’s personal information from a data breach.
Read more about UK regulator throws the book at Capita for huge 2023 data breach

Instagram gets an overhaul with more restrictions for Teen Accounts

Meta is revamping Instagram Teen Accounts by imposing more restrictions on the content teenagers can see and interact with in the default settings.
Read more about Instagram gets an overhaul with more restrictions for Teen Accounts

“We were shocked:” Gear ordered online can intercept secret satellite data

Just $800 worth of off-the-shelf equipment can intercept military communication on satellites, new research has found.
Read more about “We were shocked:” Gear ordered online can intercept secret satellite data