Security News > 2021 > September

IoT Attacks Skyrocket, Doubling in 6 Months
2021-09-06 12:00

The first half of 2021 saw 1.5 billion attacks on smart devices, with attackers looking to steal data, mine cryptocurrency or build botnets. According to a Kaspersky analysis of its telemetry from honeypots shared with Threatpost, the firm detected more than 1.5 billion IoT attacks - up from 639 million during the previous half year, which is more than twice the volume.

Tracking People by their MAC Addresses
2021-09-06 11:11

Another article on the privacy risks of static MAC addresses and always-on Bluetooth connections. Several of the headphones which could be tracked over time are for sale in electronics stores, but according to two of the manufacturers NRK have spoken to, these models are being phased out.

When the bits hit the fan: What to do when ransomware strikes
2021-09-06 10:01

So let's say the worst happens - and you discover data ain't your data any more. Thieves attacking your servers in search of credit card and other valuable data want to stay covert for as long as possible, but when they find they can't call home, they will go for the second bite and start encrypting your data.

Ransomware gangs target companies using these criteria
2021-09-06 10:00

Ransomware gangs increasingly purchase access to a victim's network on dark web marketplaces and from other threat actors. When conducting a cyberattack, ransomware gangs must first gain access to a corporate network to deploy their ransomware.

3 ways to protect yourself from cyberattacks in the midst of an IT security skill shortage
2021-09-06 06:00

With COVID-19 variants on the rise, widespread remote work may be sticking around longer than IT leaders would like, which comes with a heightened risk for cyberattacks that could expose customer data, steal company information, or take control of internal operations. Three out of four "Common" data security breaches are caused by privilege misuse - when employees have unrestricted access to a system even when it's not needed to do their job.

Healthcare cybersecurity under attack: How the pandemic affected rural hospitals
2021-09-06 05:30

In this interview with Help Net Security, Baha Zeidan, CEO at Azalea Health, talks about how rural hospitals have been affected by the pandemic and what steps they should take to boost their cybersecurity posture. How has the pandemic affected rural hospitals in particular and what could the long-term repercussions be?

Enterprises are missing the warning signs of insider threats
2021-09-06 05:00

Organizations struggle to identify the warning signs of insider threats, according to a report by the Ponemon Institute. "The vast majority of security threats follow a pattern or sequence of activity leading up to an attack, and insider threats are no exception," said Dr. Larry Ponemon, Chairman and Founder, Ponemon Institute.

Enterprising criminals are selling direct access to cloud accounts
2021-09-06 04:30

Lacework released its cloud threat report, unveiling the new techniques and avenues cybercriminals are infiltrating to profit from businesses. The rapid shift of applications and infrastructure to the cloud creates gaps in the security posture of organizations everywhere.

Ransomware attacks increased by 288% in H1 2021
2021-09-06 04:00

The number of ransomware attacks analysed by the team has increased by 288% between January-March 2021 and April-June 2021, with organizations continuing to face waves of digital extortion in the form of targeted ransomware. 22% of ransomware data leaks analysed between April and June were attributed to Conti ransomware, which often uses email phishing to remote into a network via an employee's device.

Critical Auth Bypass Bug Affect NETGEAR Smart Switches — Patch and PoC Released
2021-09-06 03:33

Networking, storage and security solutions provider Netgear on Friday issued patches to address three security vulnerabilities affecting its smart switches that could be abused by an adversary to gain full control of a vulnerable device. The flaws, which were discovered and reported to Netgear by Google security engineer Gynvael Coldwind, impact the following models -.