-
News Article Aug 01, 2024
Research from Zimperium has unveiled a sophisticated campaign stealing SMS messages. The research refers to this campaign as the SMS Stealer, revealing that the malicious software has been identified in more than 105,000 samples. This suggests the SMS Stealer has a notable reach.
-
News Article Aug 01, 2024
In an increasingly mobile and connected world, one-time passwords for about a decade have become a popular way for organizations – from financial institutions and retailers to similar businesses – to add another of security to online transactions and accounts.
-
News Article Aug 01, 2024
Automating SSL certificate renewals is essential for businesses of all sizes to avoid outages and security risks associated with expired certificates. The renewal process can be complex and time-consuming, especially for organizations with large or intricate IT infrastructures. With upcoming changes reducing SSL certificate validity periods to 90 days, the need for efficient renewal processes is even more critical. Automated SSL renewal solutions offer significant benefits, including preventing expirations, saving time, and ensuring accuracy. Sectigo’s Certificate Manager Pro provides a comprehensive, automated solution to manage and renew SSL certificates seamlessly, enhancing security and reducing administrative burdens.
-
News Article Jul 31, 2024
Security researchers have identified a new threat known as SMS Stealer that has targeted over 600 global brands.
-
News Article Jul 31, 2024
A novel malware with more than 107,000 samples that has been targeting Android devices for more than two years is stealing SMS messages to acquire one-time passwords (OTPs) and other sensitive user data for further malicious activity.
-
Webinar Jul 31, 2024
Entrust distrust: now what?
Google Chrome and Mozilla have announced that after Oct 31 and Nov 30 respectively the browsers will distrust newly issued public Entrust SSL certificates.
-
News Article Jul 30, 2024
The online tracking technology 'is not good for the web' and should be restricted, the group says, even as Google again delays plans to drop the browser technology.
-
News Article Jul 30, 2024
In a July 29 blog post, Microsoft researchers said during a ransomware attack, having full administrative permission on an ESXi hypervisor can mean that the threat actor can encrypt the file system, which may affect the ability of the hosted servers to run and function. It also lets the threat actor access hosted VMs and potentially exfiltrate data or move laterally within the network.
-
News Article Jul 30, 2024
Recent research has shown the Play ransomware group, also known as PlayCrypt and Balloonfly, is deploying a Linux variant that targets ESXi environments. Play has displayed increases in activity throughout 2024, as the group was ranked the most prolific ransomware group in April of 2024.
-
Podcast Jul 30, 2024
Root Causes 408: Takeaways from Recent Conversations with PQC Experts
We recap key takaways from recent conversations about post-quantum cryptography (PQC) with leading experts.
-
News Article Jul 29, 2024
Internal documents from Leidos Holdings Inc., a leading IT services provider to various U.S. government agencies—including the Defense Department—have been leaked online by hackers. According to a Bloomberg News report on July 23, the documents are believed to have been exfiltrated during a breach of a system operated by Diligent Corp., which Leidos used for its operations.
-
News Article Jul 29, 2024
A Taiwanese company claimed that withdrawing mis-issued software certificates by an industry-agreed deadline could crash air traffic control, paralyse healthcare facilities and bring down parts of the national grid.