12 Jun Hackers are quick to notice exposed Elasticsearch servers Bad guys find unprotected Elasticsearch servers exposed on the web faster than search engines can index them. A study found that threat actors are mainly going for cryptocurrency mining and credential theft. […]
11 Jun Live event solutions leader TAIT discloses data breach TAIT, one of the world’s leading live event solutions providers, disclosed a data breach that led to the exposure of personal and financial information stored on a server and on the email accounts of some of its employees. […]
11 Jun Fortune 500 insurance firm Genworth discloses data breach Fortune 500 insurance holding company Genworth Financial disclosed a data breach after an unauthorized party gained access to insurance agents’ online accounts using compromised login credentials. […]
11 Jun Gamaredon hackers use Outlook macros to spread malware to contacts New tools attributed to the Russia-linked Gamaredon hacker group include a module for Microsoft Outlook that creates custom emails with malicious documents and sends them to a victim’s contacts. […]
10 Jun Fake Black Lives Matter voting campaign spreads Trickbot malware A phishing email campaign asking you to vote anonymously about Black Lives Matter is spreading the TrickBot information-stealing malware. […]
10 Jun Expiring SSL certs expected to break smart TVs, fridges, and IoTs On May 30th, select Roku streaming channels stopped working, leaving impacted customers clueless with no idea what was wrong. […]
10 Jun FBI warns of increased hacking risk if using mobile banking apps The U.S. Federal Bureau of Investigation (FBI) today warned mobile banking app users that they will be increasingly targeted by hacker trying to steal their credentials and take over their banking accounts. […]
10 Jun New Windows 10 SMBv3 flaw can be used for data theft, RCE attacks A new security vulnerability was found in the compression mechanism of the Microsoft Server Message Block 3.1.1 (SMBv3) network communication protocol used by multiple versions of Windows 10 and Windows Server. […]
10 Jun Kingminer patches vulnerable servers to lock out competitors Operators of the cryptojacking botnet Kingminer botnet are trying to keep their business humming by applying hotfixes from Microsoft on vulnerable infected computers to lock out other threat actors thay may claim a piece of their pie. […]
10 Jun Self-destructing skimmer steals credit cards of Greenworks customers Payment card data from customers of Greenworks hardware tools website is currently being stolen by hackers via a malicious script with self-cloaking capabilities and anti-tampering protection. […]