Security News > 2018 > August

Air Canada confirms mobile app data breach, passport numbers were accessed
2018-08-30 15:57

Air Canada has suffered a data breach and is forcing a password reset on all 1.7 million users of its mobile app, though apparently only 20,000 of the mobile app accounts were accessed by the...

Cobalt Group Targets Banks in Eastern Europe with Double-Threat Tactic
2018-08-30 15:27

The campaign uses double infection points and two command-and-control servers.

How one man could have pwned all your PHP programs
2018-08-30 15:13

Popular PHP package repository front end Packagist turned out to have an embarrassing command injection hole - now closed!

Hackers latch onto new Apache Struts megavuln to mine cryptocurrency
2018-08-30 15:05

Underground forums alight with Struts chat, we hear A recently uncovered critical vulnerability in Apache Struts is already being exploited in the wild.…

How Cybercriminals Are Using Blockchain to Their Advantage
2018-08-30 14:17

Cybercriminals Have Been Experimenting With a Blockchain Domain Name System (DNS) read more

Won’t patch systems? Never run malware scans? Welcome to the US State Department!
2018-08-30 14:00

Don’t worry, they’re only in charge of catching visa and passport fraud A branch of the US State Department charged with detecting visa fraud was found to ignoring basic information security practices.…

Loki Bot Attacks Target Corporate Mailboxes
2018-08-30 13:53

Loki Bot’s operators have been targeting corporate mailboxes with their spam messages, Kaspersky Lab reports. read more

Advanced Android Spyware Remained Hidden for Two Years
2018-08-30 13:39

A newly detailed Android spyware that has an incredibly wide-ranging protocol has been active since May 2016, Kaspersky Lab warns. read more

Critical Flaws in Syringe Pump, Device Gateways Threaten Patient Safety
2018-08-30 13:34

The Qualcomm Life Capsule Datacaptor Terminal Server and the Becton Dickinson Alaris TIVA Syringe Pump allow remote access without authentication.

Why pushback on the CCPA is wrong
2018-08-30 13:32

Since GDPR was implemented on May 25th, 2018 one big question has been lurking in the U.S.: When will the U.S. Federal Government follow suit? With the spate of breaches over the past year coupled...