Security News > 2020 > June

Phishers are impersonating companies' IT support team and sending fake VPN configuration change notifications in the hopes that remote employees may be tricked into providing their Office 365 login credentials. "The sender email address is spoofed to impersonate the domain of the targets' respective organizations. The link provided in the email allegedly directs to a new VPN configuration for home access. Though the link appears to be related to the target's company, the hyperlink actually directs to an Office 365 credential phishing website," Abnormal Security explained.

Creeps give away money to harass recipients with abusive transaction descriptions on bank statements
Creeps in Australia have given away money in order to harass people with abusive transaction descriptions that appear in online banking records. Australia's Commonwealth Bank revealed the practice today after finding over 8,000 customers had received such messages.

Jeff Kilford, UK Client Compute Group Director at Intel, says: "All companies are operating some sort of balancing act with a set of competing forces. They're aware that you must have a certain amount of security but need to balance that with certain performance levels. But, of course, companies should absolutely prioritise security above all." The Intel vPro® platform with new 10th gen Intel Core vPro processor can be a game changer for organisations faced with these challenges, A new PC with the 10th Gen Intel® Core™ vPro® processor has up to 40 per cent better overall performance1, and up to 35 per cent faster multitasking1,2 compared to a three-year-old laptop.

The use of open source code in modern software has become nearly ubiquitous. Open source code is distinct from custom code in that its vulnerabilities - and many exploits for them - are published online, making it a particularly attractive target for malicious actors.

A team of researchers in Carnegie Mellon University's CyLab have developed a prototype IoT security and privacy "Nutrition label" that performed well in user tests. To develop the label, the team consulted with a diverse group of 22 security and privacy experts across industry, government, and academia.

The survey found cyberattacks are also continuing to increase, with 32 percent of respondents reporting an increase in the number of attacks relative to a year ago. There is a glimmer of hope-the rate at which the attacks increase is continuing to decline over time; last year, just over 39 percent of respondents answered in the same way.

For more than five months, Lastline security researchers have tracked the evolution of malicious Excel 4.0 macros, observing the fast pace at which malware authors change them to stay ahead of security tools. A central part of many organizations' productivity tools, Excel opens the door for phishing attacks where victims are tricked into enabling macros in malicious documents, which can results in the attackers gaining a foothold on the network, in preparation for additional activities.

Cybercriminals exposed over 5 billion records in 2019, costing over $1.2 trillion to U.S. organizations, according to ForgeRock. Coupled with breaches in 2018 costing over $654 billion, breaches over the last two years have cost U.S. organizations over $1.8 trillion.

Worldwide revenue from the Open Compute Project infrastructure market will reach $33.8 billion in 2024, according to IDC. While year-over-year growth will slow slightly in 2020 due to capital preservation strategies during the COVID-19 situation, the market for OCP compute and storage infrastructure is forecast to see a compound annual growth rate of 16.6% over the 2020-2024 forecast period. "IDC projects massive growth in the amount of data generated, transmitted, and stored worldwide. Much of this data will flow in and out of the cloud and get stored in hyperscale cloud data centers, thereby driving demand for infrastructure," said Kuba Stolarski, research director, Infrastructure Systems, Platforms and Technologies at IDC. OCP technology by segment.

Cloudian announced HyperIQ, a monitoring and observability solution for proactively and efficiently managing Cloudian storage and related infrastructure across on-premise and hybrid cloud environments-all from a single interface. Cloudian is a recognized leader in providing limitlessly scalable, highly cost-effective and geo-distributed object storage managed under a single, global namespace.