Security News > 2021

LinkedIn Spear-Phishing Campaign Targets Job Hunters
2021-04-05 19:46

A threat group called Golden Chickens is delivering the fileless backdoor more eggs through a spear-phishing campaign targeting professionals on LinkedIn with fake job offers, according to researchers at eSentire. "Upon opening the fake job offer, the victim unwittingly initiates the stealthy installation of the fileless backdoor, more eggs."

Microsoft Defender for Endpoint now supports Windows 10 Arm devices
2021-04-05 19:41

Microsoft today announced that Microsoft Defender for Endpoint, the enterprise version of its Defender antivirus, now comes with support for Windows 10 on Arm devices. Windows 10 on Arm, a full-featured version of Windows 10 designed explicitly for Arm devices, has run most apps since the first such devices were launched in late 2017.

Most applications today are deployed with vulnerabilities, and many are never patched
2021-04-05 19:20

Before we talk about what can be done, how do we change this, fix this, how vulnerable are we? With security being left out of the equation oftentimes when it comes to software, where are we seeing that we are vulnerable? Sixty percent of the vulnerabilities we find were never fixed.

Vulnerabilities are high in new applications, expert says
2021-04-05 19:19

Most vulnerabilities are never patched, leaving users susceptible to cyberattacks.

Apple Mail Zero-Click Security Vulnerability Allows Email Snooping
2021-04-05 19:10

A zero-click security vulnerability in Apple's macOS Mail would allow a cyberattacker to add or modify any arbitrary file inside Mail's sandbox environment, leading to a range of attack types. According to Mikko Kenttälä, founder and CEO of SensorFu, exploitation of the bug could lead to unauthorized disclosure of sensitive information to a third party; the ability to modify a victim's Mail configuration, including mail redirects which enables takeover of victim's other accounts via password resets; and the ability to change the victim's configuration so that the attack can propagate to correspondents in a worm-like fashion.

How marketing principles can be used to enhance cybersecurity training
2021-04-05 17:39

Marketing psychology has influenced each of us; experts suggest it could help reduce the angst of cybersecurity training. There is a dilemma when it comes to cybersecurity training.

How To Defend the Extended Network Against Web Risks
2021-04-05 17:28

Aamir Lakhani, cybersecurity researcher for Fortinet's FortiGuard Labs, discusses criminals flocking to web server and browser attacks, and what to do about it. Attackers use email, instant messages, SMS messages and links on social networking to trick at-home workers into installing malware that leads to identity theft, loss of property and, possibly, entry into the corporate network.

CISA, FBI Warn of Attacks Targeting Fortinet FortiOS
2021-04-05 15:59

The U.S. government is warning that Advanced Persistent Threat actors are exploiting vulnerabilities in Fortinet FortiOS in ongoing attacks targeting commercial, government, and technology services networks. The warning, issued in a joint advisory by FBI and the Cybersecurity and Infrastructure Security Agency, follows the recent release of security patches covering serious security flaws in Fortinet's flagship FortiOS product.

15 Cybersecurity Pitfalls and Fixes for SMBs
2021-04-05 15:52

I think a lot of times when you talk to SMBs and talk about their cybersecurity budget, they view it as an operational expense. On a day-in, day-out basis, I think there are all the reasons that you should have two factor authentication, but I think just employee awareness helps drive that as well.

VMware Patches Critical Flaw in Carbon Black Cloud Workload
2021-04-05 15:51

A critical vulnerability recently addressed in the VMware Carbon Black Cloud Workload could be abused to execute code on a vulnerable server, according to a warning from a security researcher who discovered the bug. "A malicious actor with network access to the administrative interface of the VMware Carbon Black Cloud Workload appliance may be able to obtain a valid authentication token, granting access to the administration API of the appliance," VMware notes in an advisory.