Security News > 2021

Actions Enterprises Can Take to Combat Common Fraud Types
2021-02-17 14:59

Beyond just an initial understanding of each of these types of fraud, I'd also like to examine what enterprises can do to mitigate risk and limit losses for each type. Of course, looking for these signs requires enterprises to have both mature controls and a robust fraud monitoring capability - neither of which is a given.

Dutch Police post "say no to cybercrime" warnings on hacker forums
2021-02-17 14:40

The Dutch Police have begun posting warnings on Russian and English-speaking hacker forums not to commit cybercrime as law enforcement is watching their activity. Since the conclusion of Operation LadyBird, law enforcement's disruption of the Emotet botnet, the Dutch Police state that they are creating forum accounts on hacker forums to warn hackers that they are watching them publicly.

CISO Conversations: Princeton, Cal State and Ohio State CISOs Talk Higher Ed Cybersecurity
2021-02-17 14:35

It requires a special quality of CISO, and in this installment of SecurityWeek's CISO Conversations series, we talk to three of the best: David Sherry, Ed Hudson and Helen Patton. "I've met female CISOs that I hugely respect, and I've met female CISOs I don't; and I think that's true for men as well. So, I'm hesitant to stereotype a class of people, male or female, as being more of this or less of that. I still look at the individual and the circumstance in which they work as being more important."

DevSecOps Firm Spectral Emerges From Stealth With $6.2 Million in Funding
2021-02-17 14:02

DevSecOps company Spectral on Wednesday emerged from stealth mode with $6.2 million in seed funding from Israeli venture capital firms Amiti and MizMaa. Spectral is based in Tel Aviv, Israel, and it was founded in mid-2020 by Dotan Nahum, who will serve as the company's CEO, Lior Reuven, Uri Shamay and Idan Didi.

QNAP patches critical vulnerability in Surveillance Station NAS app
2021-02-17 13:58

QNAP has addressed a critical security vulnerability in the Surveillance Station app that allows attackers to execute malicious code remotely on network-attached storage devices running the vulnerable software. Surveillance Station is QNAP's network surveillance Video Management System, a software solution that can help users manage and monitor up to 12 IP cameras.

Information Posted Online After N Carolina Ransomware Attack
2021-02-17 13:08

An investigation into a ransomware attack on a North Carolina county's computer network showed personal information posted for sale on the "Dark web," the county said. The Chatham County network was hit on Oct. 28 with ransomware that originated in a phishing email with a malicious attachment, The News & Observer of Raleigh reported Tuesday.

Soviet 'Enigma' cipher machine sells for $22k at collapsed museum's exhibits auction
2021-02-17 12:44

A Soviet equivalent of Nazi Germany's Enigma cipher machine has sold for more than double its auction asking price - while a secret camera disguised as a pack of cigarettes went for nearly $20,000. A Fialka M-125-3M 10-rotor cipher code machine complete with accessories sold for $22,400 at a US auction held over the weekend, trumping the device's $8,000-$12,000 estimated sale price.

Windows 10 KB4601380 update fixes screen rendering issues
2021-02-17 12:33

Microsoft has released the KB4601380 non-security update for all editions of Windows 10, version 1909, and Windows 10, version 1809, with fixes for screen rendering and Microsoft Defender for Endpoint high resource usage issues. After installing this preview cumulative update you may experience issues with system and user certificates getting lost if updating with outdated update media from Windows 10 1809 or later versions.

Cybercriminals Leak Files Allegedly Stolen From Law Firm Jones Day
2021-02-17 12:12

A group of cybercriminals known for ransomware attacks has started leaking files allegedly stolen from Jones Day, a major U.S.-based law firm that has represented former president Donald Trump, including in his attempts to overturn the results of the recent election. The cybercriminals behind the ransomware operation known as Clop have been known to encrypt files on compromised systems, as well as stealing files from the victim and threatening to leak them unless a ransom is paid.

Browser Tracking Using Favicons
2021-02-17 12:05

Interesting research on persistent web tracking using favicons. In this paper we introduce a novel tracking mechanism that misuses a simple yet ubiquitous browser feature: favicons.