Security News > 2020 > May

GitHub blasts code-scanning tool into all open-source projects
2020-05-06 18:30

The aim, said the code repo house, is to help developers suss out potential security vulnerabilities ahead of time, and to do so at a scale that will work for both small and large projects. The feature, based on the code-checking tools GitHub bought last year when it gobbled up UK-based Semmle, automatically graphs and scans code when a new push request is made and checks it for a number of common errors that can cause security vulnerabilities.

Zoom 5.0: How to better secure meetings with the latest features
2020-05-06 18:00

With the new 5.0 version of Zoom, the app has added features to help you protect your virtual meetings from Zoombombing and other unwanted intrusion.

Help us understand the shifting sands of network security: What's working for you – and what's not?
2020-05-06 18:00

With the IT world turned upside-down for many organisations, it's a good time to talk network security. Because while it's something we all need more than ever, there's almost always a gap between demand and budget, or between need and the ability to service that need.

Coronavirus-themed spam surged 14,000% in two weeks says IBM
2020-05-06 18:00

Since February, spam exploiting the novel coronavirus has jumped by 4,300% and 14,000% in the past 14 days, according to IBM X-Force, IBM's threat intelligence group.

Survey: Over half of employees admit to watching adult content on work devices
2020-05-06 17:25

A study from Kaspersky also reveals significant changes in the ways people work since COVID-19. Slightly over half of employees admit to watching adult content on devices they use for work from home, a move that could be introducing security risks, according to newly released data from Kaspersky.

New GitHub Features Help Find Vulnerabilities and Secrets in Code
2020-05-06 16:46

GitHub on Wednesday announced two new security features designed to help developers identify vulnerabilities and potential secrets in their code. These new security features, code scanning and secret scanning, are currently in beta.

Healthcare organizations targeted with password spraying attacks
2020-05-06 16:41

Malicious campaigns are using password spraying as a type of brute-force attack to find weak passwords at healthcare and medical facilities. Specific attacks against healthcare providers detected by security agencies in the UK and US are using password spraying to compromise accounts with weak passwords.

Microsoft Shells Out $100K for IoT Security
2020-05-06 15:31

Microsoft has launched a bug-bounty program for its Azure Sphere offering, which is a security suite for the internet of things that encompasses hardware, OS and cloud elements. Microsoft is offering various resources to program participants, including the Azure Sphere development kit; product documentation; direct communication channels with the Microsoft team; and other Microsoft products and services if needed.

Now That Everyone's Working From Home, How's Your Helpdesk Holding Up?
2020-05-06 15:25

If your organization is one of the many adjusting to the new "Normal" of a virtual workforce, you understand the challenges that come with helping employees, contractors, gig workers and others in the workforce make the transition to working remotely. As you work to reduce adverse impacts on your workforce, don't overlook the impact on the people who are making it all possible for everybody else: your IT and helpdesk teams.

Firefox 76.0 released with critical security patches – update now
2020-05-06 14:58

Firefox just published its latest now-every-fourth-Tuesday release, bringing numerous security fixes, including three denoted critical. CVE-2020-12395: Memory safety bugs fixed in Firefox 76 and Firefox ESR 68.8.