Security News > 2020

Apple App Store Riddled With Money-Sucking Fleeceware Apps
2020-04-10 16:06

Researchers are warning iPhone users of fleeceware apps after finding more than 30 examples of them on Apple's App Store. Many of these fleeceware apps come in the form of image editors, horoscope apps, QR code or barcode scanners, and face filter apps targeted at younger generations.

The pains – and pleasures? – of network security: Tell us exactly what you think about this corner of business IT
2020-04-10 14:00

Love it or hate it, there’s no denying we all need it Reader survey Network security: love it or hate it, there’s no denying we all need it.…

Data Governance Startup Okera Raises $15 Million in Series B Funding
2020-04-10 13:25

Data access and governance provider Okera this week announced the closing of a $15 million Series B funding round that brings the total raised by the company to $29.6 million. Okera's Active Data Access Platform helps companies comply with regulations and better secure their data access in multi-cloud and hybrid cloud environments.

Sophos Releases Sandboxie in Open Source
2020-04-10 13:22

In September last year, Sophos made Sandboxie free, while also announcing that it was transitioning the tool to open source. "Sophos is proud to announce the release of the Sandboxie source code to the community, meaning we are finally an open source tool! We're excited to give the code to the community," the company announced on its forums.

Zoom Credentials Database Available on Dark Web
2020-04-10 13:15

Researchers have found a database of Zoom video conferencing credentials ranging from just an email and password to also include meeting IDs, names and host keys. The latter is possible because Zoom users are remarkably lax about protecting the details - and of course it could be just a small subset of a larger collection of credentials not made available to others.

New Dell Utility Alerts Security Teams of BIOS Attacks
2020-04-10 13:08

Dell on Friday announced the launch of Dell SafeBIOS Events & Indicators of Attack, a utility designed to alert IT and security teams about BIOS configuration changes that could be part of a sophisticated attack. Dell SafeBIOS Events & Indicators of Attack is available immediately worldwide for Dell commercial PCs as part of the company's Trusted Device solution.

Drones Take Italians' Temperature and Issue Fines
2020-04-10 13:03

"Attention! You are in a prohibited area. Get out immediately," commands the drone, about the size of a loaf of bread. A heat sensor takes the offender's temperature and sends the information to a drone operator, who stares at a thermal map on his hand-held screen - shining orange and purple blobs. "Once a person's temperature is read by the drone, you must still stop that person and measure their temperature with a normal thermometer," Matteo Copia, police commander in Treviolo, near Bergamo, told AFP. "But drones are useful for controlling the territory."

Hackers Can Compromise VMware vCenter Server Via Newly Patched Flaw
2020-04-10 12:53

VMware has patched a critical vulnerability that can be exploited to compromise vCenter Server or other services that rely on the Directory Service for authentication. The weakness impacts vCenter Server 6.7 on Windows and virtual appliances, and it has been patched with the 6.7u3f update.

Travelex Pays $2.3M in Bitcoin to Hackers Who Hijacked Network in January
2020-04-10 12:18

Travelex has paid out $2.3 million in Bitcoin to hackers to regain access to its global network after a malware attack at the new year knocked the global currency exchange offline and crippled its business during the month of January. Travelex said in this case it was experts who advised the company pay those responsible for the New Year's Eve attack, which forced the company to shut down its online services and its mobile app.

US Threatens to Block China Telecom From American Market
2020-04-10 12:03

The United States threatened Thursday to cut off Beijing-controlled China Telecom from serving the US market because of legal and security risks, the Justice Department announced Thursday. The agencies making the recommendation - which also included the Justice Department, the Commerce Department, and the US Trade Representative - said China Telecom is vulnerable to "Exploitation, influence and control" by the Chinese government.