Security News > 2020

Nobody boogies quite like you
2020-01-22 10:38

Surely one does not move the same way in response to a song by Rage Against the Machine as to one by Bob Dylan - and research has indeed shown that audio features extracted from the acoustic signal of music influence the quality of dancers' movements. The original question: could they determine the style of music just by watching how people are dancing? Previous research has indicated that you can: low-frequency sound generated by kick drum and bass guitar relates to how fast you bop your head around, while high-frequency sound and beat clarity have been associated with a wider variety of movement features, including hand distance, hand speed, shoulder wiggle and hip wiggle.

Capita Education Services accidentally spaffs email addresses in Helpdesk snafu
2020-01-22 10:30

Capita Education Services had a bit of an oopsie yesterday as a new helpdesk system spurted potentially thousands of email addresses at unsuspecting users. A Register reader got in touch to express his surprise at receiving an email regarding a helpdesk ticket he didn't open, logged by someone he didn't know.

Saudi Dismisses Link to Hack of Amazon Owner Bezos
2020-01-22 10:18

The Saudi embassy in Washington on Tuesday dismissed suggestions the kingdom hacked the phone of Washington Post owner Jeff Bezos, as media reports linked the security breach to a WhatsApp message from an account of Crown Prince Mohammed bin Salman. The 2018 intrusion into the device led to the release of intimate images of Amazon founder Bezos, whose Post newspaper employed as a contributing columnist Jamal Khashoggi, a Saudi journalist murdered later that same year at Riyadh's consulate in Istanbul.

250 Million Microsoft Customer Support Records Exposed Online
2020-01-22 07:55

If you have ever contacted Microsoft for support in the past 14 years, your technical query, along with some personally identifiable information might have been compromised. Microsoft today admitted a security incident that exposed nearly 250 million "Customer Service and Support" records on the Internet due to a misconfigured server containing logs of conversations between its support team and customers.

Container security requires continuous security in new DevSecOps models
2020-01-22 06:30

When Jordan Liggitt at Google posted details of a serious Kubernetes vulnerability in November 2018, it was a wake-up call for security teams ignoring the risks that came with adopting a cloud-native infrastructure without putting security at the heart of the whole endeavor. There has been the runc container exploit in February, which allowed a malicious container to overwrite the runc binary and gain root on the container host.

Companies risk revenue growth due to innovation achievement gap
2020-01-22 06:00

While a majority of CEOs express strong confidence in the effectiveness of their current IT systems, most are struggling to close the innovation achievement gap to drive growth and revenue, according to a global study by Accenture. Innovation achievement gap: Adopting new technologies.

Email security industry miss rates when encountering threats are higher than 20%
2020-01-22 05:30

Email security miss rates are definitely a huge issue. BitDam conducted an empirical study to measure leading email security products' ability to detect unknown threats at first encounter.

Saudi Prince Allegedly Hacked World's Richest Man Jeff Bezos Using WhatsApp
2020-01-22 05:30

The iPhone of Amazon founder Jeff Bezos, the world's richest man, was reportedly hacked in May 2018 after receiving a WhatsApp message from the personal account of Saudi crown prince Mohammed bin Salman, the Guardian newspaper revealed today. The mysterious file was sent when crown prince Salman and Bezos were having a friendly WhatsApp conversation, and it's 'highly probable' that it exploited an undisclosed zero-day vulnerability of WhatsApp messenger to install malware on Bezos's iPhone.

State CIOs see innovation as critical priority, only 14% report extensive innovation
2020-01-22 05:00

Most state CIOs see innovation as a major part of their job - 83% said innovation is an important or very important part of their day-to-day leadership responsibilities - while only 14% reported extensive innovation initiatives within their organizations, Accenture and the National Association of State Chief Information Officers reveal. Previously, NASCIO had highlighted innovation as a top ten current issue facing state CIOs.

Download: The State of Security Breach Protection 2020 Survey Results
2020-01-22 04:36

The State of Breach Protection 2020 survey provides insights into these questions and others. 1) Lack of consolidation is a protection inhibitor - Organizations that currently deploy advanced security products report that maintaining a multi-product security stack is the main obstacle in reaching the desired protection.