Security News > 2021 > January

Getting SASE, Without the Hyperbole
2021-01-04 17:27

In the world of information security, it's hard to flip between internet browser tabs without hearing a new term, and one of the biggest in 2020 was Secure Access Service Edge. SASE can help, preparing the modern business to be ready for the cloud with agility, elasticity and security in place to manage data risk.

T-Mobile Faces Yet Another Data Breach
2021-01-04 17:09

T-Mobile USA has reported a data breach - its fourth in three years. The wireless carrier disclosed the breach last week via its website, saying that it detected and shut down "Malicious, unauthorized access to some information" related to T-Mobile accounts.

Microsoft Defender for Office 365 to allow testing without setup
2021-01-04 17:00

Microsoft wants to add a new Office 365 feature to allow customers to test Microsoft Defender email protection without actually having to configure the environment and devices for your organization. Microsoft Defender for Office 365 provides Office 365 enterprise accounts with email protection from several threats including credential phishing and business email compromise, as well as automated remediation of detected attacks.

Microsoft wants to show ‘Windows is BACK’ with Windows 10 UI refresh
2021-01-04 16:28

A new Microsoft job listing states that the OS developer wants to show customers that "Windows is BACK" with a user interface refresh for Windows 10. According to the job posting, Microsoft is looking for a Senior Engineer to work with the Windows Core User Experience team to "Orchestrate and deliver a sweeping visual rejuvenation of Windows experiences."

Slack Outage Causing Enterprise Security Hiccups
2021-01-04 16:02

Business communications platform Slack is scrambling to recover from an ongoing outage that is proving disruptive to cybersecurity response teams around the world. At 7:15AM PST, the San Francisco, Calif.-based Slack confirmed users were "Having trouble loading channels or connecting to Slack." No other details were provided on the cause of the outage.

Ticketmaster Coughs Up $10 Million Fine After Hacking Rival Business
2021-01-04 15:26

Ticketmaster must pay a hefty $10 million fine after several employees utilized unlawfully obtained passwords to hack a rival company's computer systems - in attempts to "Choke off" its business. The American ticket sales and distribution giant, which is owned by Live Nation, in 2013 hired an employee who formerly worked for Ticketmaster's rival company, according to the Department of Justice last week.

Hardcoded Credentials Expose Zyxel Firewalls and WLAN Controllers to Remote Attacks
2021-01-04 15:12

Several Zyxel firewall and WLAN controller products contain hardcoded credentials for an undocumented user account that has admin privileges. The account was designed for the delivery of automatic firmware updates through FTP and is present on Zyxel USG, ATP, VPN, ZyWALL, and USG FLEX devices.

UK Judge Refuses US Extradition of WikiLeaks Founder Assange
2021-01-04 14:10

A British judge on Monday rejected the United States' request to extradite WikiLeaks founder Julian Assange to face espionage charges, saying he was likely to kill himself if held under harsh U.S. prison conditions. In a mixed ruling for Assange and his supporters, District Judge Vanessa Baraitser rejected defense arguments that the 49-year-old Australian faces a politically motivated American prosecution that rides roughshod over free-speech protections.

New year, new rant: Linus Torvalds rails at Intel for 'killing' the ECC industry
2021-01-04 14:00

Linux creator Linus Torvalds has accused Intel of preventing widespread use of error-correcting memory and being "Instrumental in killing the whole ECC industry with its horribly bad market segmentation." Cost is a factor but what riles Torvalds is that Intel has made ECC support a feature of its Xeon range, aimed at servers and high-end workstations, and does not support it in other ranges such as the Core series.

Apex Laboratory Says Patient Data Stolen in Ransomware Attack
2021-01-04 13:58

At-home laboratory services provider Apex Laboratory said hackers stole some patient data during a ransomware attack that took place several months ago. "However, on December 15, 2020, Apex learned that the hackers posted information on their blog about the attack and listed data taken that contained personal and health information for some patients," the company revealed.