07 Mar Dozens of COVID passport apps put user’s privacy at risk Roughly two-thirds of test digital vaccination applications commonly used today as safe passes and travel passports exhibit behavior that may put users’ privacy at risk. […]
07 Mar FBI: Govt officials impersonated in widespread extortion schemes Scammers are impersonating government officials and law enforcement in active and rampant extortion schemes targeting Americans’ money or personally identifiable information (PII). […]
06 Mar Mozilla Firefox 97.0.2 fixes two actively exploited zero-day bugs Mozilla has released Firefox 97.0.2, Firefox ESR 91.6.1, Firefox for Android 97.3.0, and Focus 97.3.0 to fix two critical zero-day vulnerabilities actively exploited in attacks. […]
06 Mar Adafruit discloses data leak from ex-employee’s GitHub repo Adafruit has disclosed a data leak that occurred due to a publicly-viewable GitHub repository. The company suspects this could have allowed “unauthorized access” to information about certain users on or before 2019. […]
05 Mar Malware now using NVIDIA’s stolen code signing certificates Threat actors are using stolen NVIDIA code signing certificates to sign malware to appear trustworthy and allow malicious drivers to be loaded in Windows. […]
05 Mar SharkBot malware hides as Android antivirus in Google Play The banking trojan tracked as SharkBot has infiltrated the Google Play Store, Android’s official and most trusted app store, posing as an antivirus and system cleaner application. […]
05 Mar Russia shares list of 17,000 IPs allegedly DDoSing Russian orgs The Russian government shared a list of 17,576 IP addresses allegedly used to launch distributed denial-of-service (DDoS) attacks targeting Russian organizations and their networks. […]
04 Mar Amazon: Charities, aid orgs in Ukraine attacked with malware Charities and non-governmental organizations (NGOs) providing critical support in Ukraine are targeted in malware attacks aiming to disrupt their operations and relief efforts seeking to assist those affected by Russia’s war. […]
04 Mar The Week in Ransomware – March 4th 2022 – The Conti Leaks This week’s biggest story is the massive data leak from the Conti ransomware operation, including over 160,000 internal messages between members and source code for the ransomware and TrickBot operation. […]