-
News Article Jul 31, 2024
Security researchers have identified a new threat known as SMS Stealer that has targeted over 600 global brands.
-
News Article Jul 31, 2024
A novel malware with more than 107,000 samples that has been targeting Android devices for more than two years is stealing SMS messages to acquire one-time passwords (OTPs) and other sensitive user data for further malicious activity.
-
Webinar Jul 31, 2024
Entrust distrust: now what?
Google Chrome and Mozilla have announced that after Oct 31 and Nov 30 respectively the browsers will distrust newly issued public Entrust SSL certificates.
-
News Article Jul 30, 2024
The online tracking technology 'is not good for the web' and should be restricted, the group says, even as Google again delays plans to drop the browser technology.
-
News Article Jul 30, 2024
In a July 29 blog post, Microsoft researchers said during a ransomware attack, having full administrative permission on an ESXi hypervisor can mean that the threat actor can encrypt the file system, which may affect the ability of the hosted servers to run and function. It also lets the threat actor access hosted VMs and potentially exfiltrate data or move laterally within the network.
-
News Article Jul 30, 2024
Recent research has shown the Play ransomware group, also known as PlayCrypt and Balloonfly, is deploying a Linux variant that targets ESXi environments. Play has displayed increases in activity throughout 2024, as the group was ranked the most prolific ransomware group in April of 2024.
-
Podcast Jul 30, 2024
Root Causes 408: Takeaways from Recent Conversations with PQC Experts
We recap key takaways from recent conversations about post-quantum cryptography (PQC) with leading experts.
-
News Article Jul 29, 2024
Internal documents from Leidos Holdings Inc., a leading IT services provider to various U.S. government agencies—including the Defense Department—have been leaked online by hackers. According to a Bloomberg News report on July 23, the documents are believed to have been exfiltrated during a breach of a system operated by Diligent Corp., which Leidos used for its operations.
-
News Article Jul 29, 2024
A Taiwanese company claimed that withdrawing mis-issued software certificates by an industry-agreed deadline could crash air traffic control, paralyse healthcare facilities and bring down parts of the national grid.
-
Podcast Jul 26, 2024
Root Causes 407: Whatever Happened to Passkeys?
WebAuthn arrived last year with great fanfare. But here we are in the latter half of 2024, and they are rarely used. In this episode we discuss why.
-
News Article Jul 25, 2024
The notorious Chinese Smishing Triad gang, known for its SMS phishing attacks against Pakistan, the US, and European nations, has now set its sights on iPhone users in India. The group is exploiting iMessage and the government-owned India Post in a sophisticated phishing scam.
-
News Article Jul 24, 2024
On July 19, several organizations experienced delays to a Microsoft and Crowdstrike outage that began the night before. Complications such as delayed flights continue to affect individuals worldwide days after the outage.