Security News > 2022 > December

Telcom and BPO Companies Under Attack by SIM Swapping Hackers
2022-12-06 11:00

"The end objective of this campaign appears to be to gain access to mobile carrier networks and, as evidenced in two investigations, perform SIM swapping activity," CrowdStrike researcher Tim Parisi said in an analysis published last week. Initial access to the target environment is said to be undertaken through a variety of methods ranging from social engineering using phone calls and messages sent via Telegram to impersonate IT personnel.

How to secure application identities at developmental speed
2022-12-06 10:30

Review and manage your consent Here's an overview of our use of cookies, similar technologies and how to manage them. You wonder which mountain to scale first, but it is an impossible choice.

Open Source Ransomware Toolkit Cryptonite Turns Into Accidental Wiper Malware
2022-12-06 06:11

A version of an open source ransomware toolkit called Cryptonite has been observed in the wild with wiper capabilities due to its "Weak architecture and programming." Written in Python, the malware employs the Fernet module of the cryptography package to encrypt files with a ".

How to get cloud migration right
2022-12-06 06:00

If you want to get cloud migration right, you must deal with an inconvenient truth: Cloud or hybrid cloud environments lower the drawbridge between your data center and the internet, and that creates opportunity as well as security risk. Cloud migration cannot succeed without reevaluating the role of DDI services in your enterprise.

What’s the Matter with digital trust in smart home devices?
2022-12-06 05:30

With so many manufacturers and devices to choose from, the smart home landscape is often a mishmash of support and usability. Simply put, until now, the lack of a unifying standard among various smart home technology standards made using devices together complicated and difficult.

Dark web recruiting techniques: Malware, phishing, and carding
2022-12-06 05:00

In this Help Net Security video, Roman Faithfull, Cyber Intelligence Analyst at Digital Shadows, talks about how threat actors mobilize new members within the cybercriminal ecosystem. Cybercriminal forums are awash with users advertising and requesting the services of developers to design fresh new malware.

Economic uncertainty will greatly impact the spread of cybercrime
2022-12-06 04:30

Norton released its top cyber trends to watch in 2023, emphasizing that the economy will have the greatest impact on the spread of cybercrime next year. Experts predict the pressures associated with economic uncertainty and rising costs will create the perfect environment for scammers to take advantage of people when they are more vulnerable.

68% of IT leaders are worried about API sprawl
2022-12-06 04:00

The transformation comes as 68% of respondents cite their fears about API sprawl. Ensuring data security and controlling API sprawl were top concerns, with 68% worrying about complexity due to sprawl and 48% of respondents ranking "Increased security challenges" as their single greatest concern with API growth.

TSA to expand facial recognition across America
2022-12-06 02:30

America's Transport Security Administration, better known as the TSA, has been testing facial recognition software to automatically screen passengers flying across the country in 16 airports. The equipment will snap a live photo of their face and check whether it matches with the one captured on their ID. The pilot program, testing the Credential Authentication Technology 2 system, aims to reduce security screening wait times by automating the process so TSA agents do not need to manually check IDs.

Four suspects cuffed, face extradition over tax refund scam plot
2022-12-06 01:30

Four men suspected of plotting to commit wire fraud and identity theft have been arrested and now face extradition to America. It is alleged they conspired to break into US companies' servers, steal people's personally identifiable information, use that info to file fraudulent tax returns to Uncle Sam, and collect victims' tax refunds.