Security News > 2019 > March

The Need to Focus on Detection, Remediation
2019-03-29 20:03

Nick Hayes of IntSights on Changing PrioritiesBecause of the wealth of personal information available on the dark web, breach detection and remediation are more urgent than prevention and...

Automate Threat Hunting with Security Analytics & Machine Learning
2019-03-29 20:03

Multi-stage attacks use diverse and distributed methods to circumvent existing defenses and evade detection - spanning endpoints, networks, email and other vectors in an attempt to land and...

A Month After 2 Million Customer Cards Sold Online, Buca di Beppo Parent Admits Breach
2019-03-29 19:22

On Feb. 21, 2019, KrebsOnSecurity contacted Italian restaurant chain Buca di Beppo after discovering strong evidence that two million credit and debit card numbers belonging to the company's...

Critical Bug in Cisco WebEx Browser Extensions Allows Remote Code-Execution
2019-03-29 19:04

Users of the conferencing platform should update immediately.

Brit founder of Windows leaks website BuildFeed, infosec bod spared jail over Microsoft hack
2019-03-29 18:20

26 and 24-year-olds slapped with suspended sentences, community work orders The Brit who ran the BuildFeed website of Windows leaks has been handed a suspended prison sentence – along with a...

Brit founder of Windows leaks website Buildfeed and infosec bod spared jail for hacking Microsoft
2019-03-29 18:20

26 and 24-year-olds slapped with suspended sentences, community work orders The Brit who ran the BuildFeed website of Windows leaks has been handed a suspended prison sentence – along with a...

Analyzing the $7.5 Million UCLA Health Data Breach Settlement
2019-03-29 17:48

A proposed settlement in a class action lawsuit filed against ULCA Health in the wake of a 2015 cyberattack affecting 4.5 million individuals stands apart from other settlements because it...

Microsoft Takes Control of 99 Websites From APT Group
2019-03-29 17:18

Phosphorus Group Waged Spear-Phishing Campaign, Company ReportsMicrosoft is using its legal muscle to push back against an advanced persistent threat group that is says is "widely associated with...

Magento Patches Critical SQL Injection and RCE Vulnerabilities
2019-03-29 16:26

Magento patched 37 flaws Thursday, including a stored cross-site scripting (XSS) vulnerability that could have let an attacker take over a site.

Zero-Day Bug Lays Open TP-Link Smart Home Router
2019-03-29 16:06

However, an attacker would need to already be on the local network to be successful.