Security News > 2020 > November

Malwarebytes Premium is 50% off for Black Friday, Cyber Monday
2020-11-29 11:35

Malwarebytes's Cyber Monday deal is live with 50% off Malwarebytes Premium and 25% off the Malwarebytes for Teams business product. These savings are significant, especially when you purchase multi-year multi-device licenses or bundle it with Malwarebytes Privacy, their new VPN software.

Malwarebytes Cyber Monday Deal: Get 50% off Premium, Teams
2020-11-29 11:35

Malwarebytes's Cyber Monday deal is live with 50% off Malwarebytes Premium and 25% off the Malwarebytes for Teams business product. These savings are significant, especially when you purchase multi-year multi-device licenses or bundle it with Malwarebytes Privacy, their new VPN software.

Week in review: Drupal-based sites open to attack, cPanel 2FA bypass vulnerability
2020-11-29 09:00

Challenges organizations face in combating third-party cyber riskA CyberGRX report reveals trends and challenges organizations of all sizes face in combating third-party cyber risk today. cPanel 2FA bypass vulnerability can be exploited through brute forceA two-factor authentication bypass vulnerability affecting the popular cPanel & WHM software suite may allow attackers to access secured accounts, Digital Defense researchers have found.

Improve your Windows 10 PC with these Microsoft Store apps
2020-11-28 17:39

The Windows Store isn't as populated as Google and Apple's app marketplace, but there are plenty of apps that can improve your Windows 10 experience. Microsoft Store features a decent selection of apps and there are apps which can offer advanced personalization settings such as transparent taskbar.

Customize your Windows 10 appearance with these tools
2020-11-28 17:01

From simply changing the taskbar look using Windows Registry to installing a third-party tool, you've got plenty of ways to customize Windows 10. In this article, we going to share a list of apps that you can use to customize the desktop, Windows Search, and the taskbar.

2021 Healthcare Cybersecurity Priorities: Experts Weigh In
2020-11-28 15:00

With healthcare, in particular, I think that we've seen, you know, obviously, like policy in terms of like cybersecurity policy, IT procurement policy, kind of go to the wayside in order to bolster patient health, patient care and a pandemic. You know, not only are we saying, in healthcare an external attack surface, but absolutely, an internal attack surface increase as well.

Microsoft is working on an Android subsystem for Windows 10
2020-11-28 12:21

Microsoft is reportedly creating a subsystem, similar to the Windows Subsystem for Linux, that allows Android applications to run on Windows 10. Microsoft realizes this and has already started offering limited support for launching Android apps in Windows 10 using the Your Phone app and supported Android devices.

IIoT chip maker Advantech hit by ransomware, $12.5 million ransom
2020-11-28 10:00

Industrial automation and Industrial IoT chip maker Advantech confirmed a ransomware attack that hit its network and led to the theft of confidential, albeit low-value, company documents. The Conti operators behind the attack on Advantech's network have set a ransom of 750 BTC for full data decryption and for removing stolen data from their servers according to a chat log seen by BleepingComputer.

Friday Squid Blogging: Diplomoceras Maximum
2020-11-27 22:33

With luck we mostly avoid them but these days I appear to more than stub my toe on them, guess I need better glasses or something. Speaking of point of measurment sensors on a more down to earth note you mention the infamous Intel paper What it describes has been described by others as the "Roulette Wheel" or "Waggon Wheel" TRNG as it is in reality a "Stroboscopic sensor" and just like the film gate in old movies where the waggon wheels appear slow, stationary or turning backwards on the screen.

Out-of-band Drupal security updates fix bugs with known exploits
2020-11-27 19:57

Drupal has released out-of-band security updates to fix two critical code execution flaws in Drupal core, as "There are known exploits for one of core's dependencies and some configurations of Drupal are vulnerable." CVE-2020-28948 and CVE-2020-28949 are arbitrary PHP code execution vulnerabilities found in the open source PEAR Archive Tar library, which Drupal uses to handle TAR files in PHP. "(The) vulnerabilities are possible if Drupal is configured to allow.