Security News > 2021

Digital transformation taking shape in 2021
2021-01-07 05:00

Welcome to the New Year, where we believe most organizations will continue to work through their digital transformation practices. These updated practices heavily impact IT and business leaders who need to expedite their migration to public clouds and in many situations minimize their physical data center footprint.

Iridium Edge Solar: A solar-powered remote asset tracking and management device
2021-01-07 01:30

Iridium announced commercial availability of the Iridium Edge Solar - a secure, maintenance-free, solar-powered remote asset tracking and management device. With over-the-air configuration capabilities, the Iridium Edge Solar is ideal for Vessel Monitoring Systems, fisheries management, tracking of freight shipping containers, Supervisory Control and Data Acquisition applications, monitoring of oil and gas pipelines and heavy equipment telematics data reporting.

LogMeIn appoints Jamie Domenici as Chief Marketing Officer
2021-01-07 00:00

LogMeIn has announced that cloud marketing veteran, Jamie Domenici, will join the company as its new Chief Marketing Officer. Jamie comes to LogMeIn from Salesforce, the world's number one CRM company, where she spent the last ten years bringing cloud software to Small and Midsize businesses, leading all post-sales adoption and onboarding grounded in customer success for every customer.

Greg Nicastro joins SmartBear as EVP/GM of Products and Technology
2021-01-06 23:30

SmartBear announced Greg Nicastro has joined the company as EVP/GM of Products and Technology. "Greg's proven track record leading product development organizations to innovate and scale will undoubtedly accelerate our product strategy and accomplishments," said Frank Roe, CEO of SmartBear.

#GM
NSA Urges SysAdmins to Replace Obsolete TLS Protocols
2021-01-06 22:16

"Network connections employing obsolete protocols are at an elevated risk of exploitation by adversaries. As a result, all systems should avoid using obsolete configurations for TLS and SSL protocols." The NSA's alert adds on to an existing collective push for updating TLS protocols, with some of the biggest standards bodies and regulators mandating that web server operators ensure they move to TLS 1.2 before the end of 2020.

United States Congress stormed by violent followers of defeated president, Biden win confirmation halted
2021-01-06 21:38

Supporters of defeated American president Donald Trump this morning stormed the capital's legislative halls, shutting down the process to confirm his replacement. Within minutes of the president speaking at a rally on the nearby Mall in Washington DC, in which he urged his followers to march to the Capitol and put a stop to Joe Biden being officially approved as the next national leader by lawmakers, fights broke out on the steps of the building as thousands attempted to force their way past the relatively few cops present and break into the building.

It’s Not the Trump Sex Tape, It’s a RAT
2021-01-06 21:20

"The email, with the subject"GOOD LOAN OFFER!!," at first glance, looks like a usual investment scam," Lopera said in the report about the find. "No obfuscation in the email headers or body is found. Interestingly, attached to the email is an archive containing a Java Archive file called"TRUMP SEX SCANDAL VIDEO.jar.

How to customize your sudo password prompt
2021-01-06 20:57

In order to actually get anything done, those admins most likely have to make use of sudo. As you are probably well aware, with the help of sudo any number of things can be done to your servers.

Customizing your sudo password prompt
2021-01-06 20:55

If you're looking for a way to easily warn your admins to use caution when working with sudo, Jack Wallen has a sure-fire method.

'Earth Wendigo' Hackers Exfiltrate Emails Through JavaScript Backdoor
2021-01-06 20:44

A newly identified malware attack campaign has been exfiltrating emails from targeted organizations using a JavaScript backdoor injected into a webmail system widely used in Taiwan. As an initial attack vector, the group used spear-phishing emails containing obfuscated JavaScript code meant to load malicious scripts from an attacker-controlled remote server.