Security News > 2021

Cybercriminals evolving their tactics to exploit collective human interest
2021-04-26 04:00

"Gathered from over 285 million real-world endpoints and sensors, and leveraging the extensive BrightCloud network of industry-leading partners, this year's Threat Report clearly shows how cybercriminals are willing and able to evolve their tactics to exploit collective human interest and current events," said Prentiss Donohue, EVP, SMB/C Sales, OpenText. One of which, %appdata%, saw the infection rate jump 59.2% YoY. Consumer devices saw twice as many malware infections when compared to business devices.

How to Test and Improve Your Domain's Email Security?
2021-04-26 03:38

Check Your Domain Today! Use our free tool to examine your domain's DMARC, SPF, DKIM, BIMI, and MTA-STS records instantly to ensure your domain is protected from impersonation and email fraud! The first step towards improving the email security of your domain is to assess how properly it is secured against security breaches, email fraud, BEC, and spoofing.

61% of organizations impacted by ransomware in 2020
2021-04-26 03:30

Enterprises faced unprecedented cybersecurity risk in 2020 from increasing attack volume, the pandemic-driven digital transformation of work, and generally deficient cyber preparedness and training, a Mimecast survey reveals. A full 79% of respondents indicated their companies had experienced a business disruption, financial loss or other setback in 2020 due to a lack of cyber preparedness.

Consumers embracing biometrics to protect their information
2021-04-26 03:00

The study found that 41 percent of North American consumers are more likely to use digital means to open a financial account than a year ago, while 32 percent are less likely to visit a branch to open a new account. Whereas for Americans, these expectations drop to 62 percent, 52 percent and 42 percent respectively.

Volunteer-run pirate Manga website attacked, loses hashed passwords, has ‘nobody’ to fix the mess
2021-04-26 02:28

A "Scanlation" website for Manga has admitted that its members credentials have been stolen and are now being shared online. The site went offline a few days after achieving that rating, after admitting it had been compromised and telling users that continuing operations was not wise until it could perform an upgrade.

Signifyd Return Abuse Prevention gives merchants the flexibility to customize their return-abuse response
2021-04-26 02:00

Signifyd announced the launch of its AI-powered Return Abuse Prevention solution, a customizable innovation that attacks a $43 billion problem by detecting return abuse and empowering merchants to provide friction-free refunds for valued customers while thwarting those seeking to game the system. Signifyd's Return Abuse Prevention solution gives merchants the flexibility to customize their return-abuse response according to the unique needs of their businesses.

InMobi UnifID enables quick integration with identity providers
2021-04-26 01:30

InMobi announced the launch of UnifID, an offering designed to simplify and streamline identity resolution for mobile app publishers and developers. "We are proud to introduce UnifID, as it is truly a one-of-a-kind solution that will help our publisher partners make their inventory more addressable and thus more valuable," said Kunal Nagpal, SVP and GM of InMobi Exchange, a division of InMobi.

NFC Forum specifications offer cryptology security for NFC application development
2021-04-26 01:00

The NFC Forum released two specifications that offer cryptology security for NFC. The new NFC specifications provide security for NFC-enabled mobile devices by using a cryptographic framework to enable development of secure NFC applications protecting the confidentiality and the privacy of NFC communications. The Logical Link Control Protocol Technical Specification 1.4 is the first NFC Forum technical specification to take advantage of NAP 1.0's secured data transfer.

CrowdStrike Security Cloud integrates with NDR and NTA solutions to defend against any threats
2021-04-26 00:45

CrowdStrike announced a series of integrations with CrowdStrike Security Cloud that correlates the CrowdStrike Falcon platform's enriched endpoint and workload telemetry with network telemetry for greater end-to-end visibility and contextual insights to combat threats. These integrations with leaders in network detection and response and network threat analytics help mutual customers build a cohesive platform tailored to protect and defend against any threats across all enterprise software components, wherever those threats are encountered.

Critical RCE Bug Found in Homebrew Package Manager for macOS and Linux
2021-04-26 00:33

A recently identified security vulnerability in the official Homebrew Cask repository could have been exploited by an attacker to execute arbitrary code on users' machines that have Homebrew installed. The issue, which was reported to the maintainers on April 18 by a Japanese security researcher named RyotaK, stemmed from the way code changes in its GitHub repository were handled, resulting in a scenario where a malicious pull request - i.e., the proposed changes - could be automatically reviewed and approved.