Security News > 2018 > October

Four Critical Flaws Patched in Adobe Digital Edition
2018-10-10 13:57

Adobe Digital Edition has four critical bugs enabling arbitrary code execution.

Magecart Attack Hits 'Shopper Approved'
2018-10-10 13:55

Magecart, the web-based card skimmer campaign that targets popular e-commerce websites, has hit Shopper Approved, an organization that provides rating seals for online stores. read more

SAP Patches Critical Vulnerability in BusinessObjects
2018-10-10 13:37

This week, SAP released its October 2018 set of patches, which includes the first Hot News security note for SAP BusinessObjects in over five years. read more

First GDPR Enforcement is Followed by First GDPR Appeal
2018-10-10 13:37

In what has been billed as the world's first GDPR action, the UK regulator -- the Information Commissioner's Office (ICO) -- quietly issued an enforcement notice against Canadian firm AggregateIQ...

Cyberspy Group 'Gallmaker' Targets Military, Government Organizations
2018-10-10 13:13

A previously undocumented cyber espionage group has been targeting entities in the government, military and defense sectors since at least 2017, according to a report published on Wednesday by...

Worker perks flinger Sodexo pulls Engage website after malware smackdown
2018-10-10 13:02

UK information commish is investigating Employee benefits firm Sodexo has suffered a data breach exposing personal info believed to include names, email addresses and home addresses after its UK...

Magecart hacks Shopper Approved to simultaneously hit many e-commerce sites
2018-10-10 12:04

The cybercriminal groups under the Magecart umbrella strike again and again, and one of them has apparently specialized in compromising third parties to more easily get in as many online shops as...

Magecart Card-Stealing Gang Hits 'Shopper Approved' Plug-In
2018-10-10 11:33

Supply Chain Hack Targets Customer Rating Plug-In Used by Thousands of SitesA notorious group of payment card-stealing gangs called Magecart has been tied to another series of online attacks, this...

Podcast: Key Takeaways For DevOps in BSIMM9
2018-10-10 11:26

From supply chain to orchestration tools, here are the new trends that DevOps should pay attention to in this year's BSIMM report.

Security Vulnerabilities in US Weapons Systems
2018-10-10 11:21

The US Government Accounting Office just published a new report: "Weapons Systems Cyber Security: DOD Just Beginning to Grapple with Scale of Vulnerabilities" (summary here). The upshot won't be a...