The Hacker News-- Complexity is the bane of effective cybersecurity. The need to maintain an increasing array of cybersecurity tools to protect organizations from an expanding set of cyber threats is leading to runaway costs, staff inefficiencies, and suboptimal threat response. Small to medium-sized enterprises (SMEs) with limited budgets and staff are significantly impacted. On … Continue reading Live Webinar: Reducing Complexity by Increasing Consolidation for SMEs
Tag: The Hacker News
SAD DNS — New Flaws Re-Enable DNS Cache Poisoning Attacks
The Hacker News-- A group of academics from the University of California and Tsinghua University has uncovered a series of critical security flaws that could lead to a revival of DNS cache poisoning attacks. Dubbed "SAD DNS attack" (short for Side-channel AttackeD DNS), the technique makes it possible for a malicious actor to carry out … Continue reading SAD DNS — New Flaws Re-Enable DNS Cache Poisoning Attacks
Uncovered: APT ‘Hackers For Hire’ Target Financial, Entertainment Firms
The Hacker News-- A hackers-for-hire operation has been discovered using a strain of previously undocumented malware to target South Asian financial institutions and global entertainment companies. Dubbed "CostaRicto" by Blackberry researchers, the campaign appears to be the handiwork of APT mercenaries who possess bespoke malware tooling and complex VPN proxy and SSH tunneling capabilities. "CostaRicto … Continue reading Uncovered: APT ‘Hackers For Hire’ Target Financial, Entertainment Firms
New ModPipe Point of Sale (POS) Malware Targeting Restaurants, Hotels
The Hacker News-- Cybersecurity researchers today disclosed a new kind of modular backdoor that targets point-of-sale (POS) restaurant management software from Oracle in an attempt to pilfer sensitive payment information stored in the devices. The backdoor — dubbed "ModPipe" — impacts Oracle MICROS Restaurant Enterprise Series (RES) 3700 POS systems, widely used software suite restaurants, and hospitality … Continue reading New ModPipe Point of Sale (POS) Malware Targeting Restaurants, Hotels
MISSIONS — The Next Level of Interactive Developer Security Training
The Hacker News-- If organizations want to get serious about software security, they need to empower their engineers to play a defensive role against cyberattacks as they craft their code. The problem is, developers haven't had the most inspiring introduction to security training over the years, and anything that can be done to make their … Continue reading MISSIONS — The Next Level of Interactive Developer Security Training
Two New Chrome 0-Days Under Active Attacks – Update Your Browser
The Hacker News-- Google has patched two more zero-day flaws in the Chrome web browser for desktop, making it the fourth and fifth actively exploited vulnerabilities addressed by the search giant in recent weeks. The company released 86.0.4240.198 for Windows, Mac, and Linux, which it said will be rolling out over the coming days/weeks to all users. … Continue reading Two New Chrome 0-Days Under Active Attacks – Update Your Browser
Over 2800 e-Shops Running Outdated Magento Software Hit by Credit Card Hackers
The Hacker News-- A wave of cyberattacks against retailers running the Magento 1.x e-commerce platform earlier this September has been attributed to one single group, according to the latest research. "This group has carried out a large number of diverse Magecart attacks that often compromise large numbers of websites at once through supply chain attacks, … Continue reading Over 2800 e-Shops Running Outdated Magento Software Hit by Credit Card Hackers
Build Your 2021 Cybersecurity Plan With This Free PPT Template
The Hacker News-- The end of the year is coming, and it's time for security decision-makers to make plans for 2021 and get management approval. Typically, this entails making a solid case regarding why current resources, while yielding significant value, need to be reallocated and enhanced. The Definitive 2021 Security Plan PPT Template is built … Continue reading Build Your 2021 Cybersecurity Plan With This Free PPT Template
Microsoft Releases Windows Security Updates For Critical Flaws
The Hacker News-- Microsoft formally released fixes for 112 newly discovered security vulnerabilities as part of its November 2020 Patch Tuesday, including an actively exploited zero-day flaw disclosed by Google's security team last week. The rollout addresses flaws, 17 of which are rated as Critical, 93 are rated as Important, and two are rated Low in severity, … Continue reading Microsoft Releases Windows Security Updates For Critical Flaws
Watch Out! New Android Banking Trojan Steals From 112 Financial Apps
The Hacker News-- Four months after security researchers uncovered a "Tetrade" of four Brazilian banking Trojans targeting financial institutions in Brazil, Latin America, and Europe, new findings show that the criminals behind the operation have expanded their tactics to infect mobile devices with spyware. According to Kaspersky's Global Research and Analysis Team (GReAT), the Brazil-based … Continue reading Watch Out! New Android Banking Trojan Steals From 112 Financial Apps