Security News > 2024 > March

Drones and the US Air Force
2024-03-18 11:03

Fascinating analysis of the use of drones on a modern battlefield-that is, Ukraine-and the inability of the US Air Force to react to this change. The Air Force is planning to buy 1,763 of the aircraft, which will remain in service through the year 2070.

Nissan breach exposed data of 100,000 individuals
2024-03-18 10:43

Nissan Oceania has confirmed that the data breach it suffered in December 2023 affected around 100,000 individuals and has begun notifying them.In early December 2023, the company - a regional Nissan division which includes Nissan Motor Corporation and Nissan Financial Services in Australia and New Zealand - revealed that an unauthorized third party accessed its local IT servers and caused downtime.

WordPress Admins Urged to Remove miniOrange Plugins Due to Critical Flaw
2024-03-18 09:46

WordPress users of miniOrange's Malware Scanner and Web Application Firewall plugins are being urged to delete them from their websites following the discovery of a critical security flaw. The...

43 million workers potentially affected in France Travail data breach
2024-03-18 08:29

French national unemployment agency France Travail and Cap emploi, a government employment service for people with disabilities, have suffered a data breach that might have exposed personal data of 43 million people. The agencies announced on Wednesday that an intrusion exposed data of jobseekers registered in the last 20 years, as well as those with a candidate profile on the sites.

Infosec teams must be allowed to fail, argues Gartner
2024-03-18 07:29

In their keynote at the firm's Security & Risk Management Summit in Sydney, Australia, today, VP analyst Mixter and director analyst Xiu argued that no amount of effort can prevent infosec incidents, and the quality of organizations' response is a more appropriate measure of an infosec team's effectiveness than expecting they will never fail to fend off the never-ending torrent of attacks. "Adrenalin does not scale," Xiu told the event - a reference to the practice of infosec teams responding to incidents by attacking them without a rehearsed plan.

APT28 Hacker Group Targeting Europe, Americas, Asia in Widespread Phishing Scheme
2024-03-18 05:59

The Russia-linked threat actor known as APT28 has been linked to multiple ongoing phishing campaigns that employ lure documents imitating government and non-governmental organizations (NGOs) in...

Filipino police free hundreds of slaves toiling in romance scam operation
2024-03-18 05:46

Filipino police rescued 875 "Workers" - including 504 foreigners - in a raid late last week on a firm that posed as an online gaming company but in reality operated a forced labor camp that housed romance scam operators. The "Gaming company" that ran the operation - which went by Zun Yuan Technology Incorporated - maintains a meager website that may not initially set off alarm bells and appears more targeted toward recruiting staff than clients.

Public anxiety mounts over critical infrastructure resilience to cyber attacks
2024-03-18 05:30

With temporary failures of critical infrastructure on the rise in the recent years, 81% of US residents are worried about how secure critical infrastructure may be, according to MITRE and The Harris Poll. Public views cyberattacks as greatest risk to critical infrastructure.

Harnessing the power of privacy-enhancing tech for safer AI adoption
2024-03-18 05:00

A consensus on regulatory AI frameworks seems distant. The imperative for secure and responsible AI deployment cannot be overstated.

Quicmap: Fast, open-source QUIC protocol scanner
2024-03-18 04:30

Quicmap is a fast, open-source QUIC service scanner that streamlines the process by eliminating multiple tool requirements. It effectively identifies QUIC services, the protocol version, and the supported ALPNs.