Security News > 2024 > June

North Korean Hackers Target Brazilian Fintech with Sophisticated Phishing Tactics
2024-06-14 06:45

Threat actors linked to North Korea have accounted for one-third of all the phishing activity targeting Brazil since 2020, as the country's emergence as an influential power has drawn the...

Modern fraud detection need not rely on PII
2024-06-14 04:30

Trends in online fraud detection often act as the canary in the coal mine when it comes to understanding and combating the next generation of online scams, fraud and cybersecurity threats. As deepfakes and other AI-powered scams trick users into sharing their private information, a privacy-centric approach to fraud prevention - one that doesn't rely on sensitive user data to authenticate a user or transactions - makes good business and technological sense.

Microsoft Delays AI-Powered Recall Feature for Copilot+ PCs Amid Security Concerns
2024-06-14 04:30

Microsoft on Thursday revealed that it's delaying the rollout of the controversial artificial intelligence (AI)-powered Recall feature for Copilot+ PCs. To that end, the company said it intends to...

The biggest downsides of digital ID adoption
2024-06-14 04:00

One of the obstacles on the road to broad adoption of the Digital ID concept is the lack of a general legislative framework for this form of identity proofing. In particular, 74% of respondents underscore the necessity for global digital ID standards and legislation to ensure interoperability of such IDs across borders.

Solving the systemic problem of recurring vulnerabilities
2024-06-14 03:30

In this Help Net Security video, Dr. Pedram Hayati, CEO at SecDim, and Fil Filiposki, founder of AttackForge, discuss how the two companies have formed a strategic collaboration to tackle the major challenge of resurfacing vulnerabilities. By integrating SecDim's AppSec Learning wargame into AttackForge, a PenTest management platform, engineers gain a sandbox to explore real-world vulnerabilities safely.

Microsoft delays Windows Recall amid privacy and security concerns
2024-06-14 02:11

Microsoft is delaying the release of its AI-powered Windows Recall feature to test and secure it further before releasing it in a public preview on Copilot+ PCs. Initially slated for release in a public preview on June 18 with the arrival of the new Copilot+ AI PCs, the company now says they are delaying its release by making it first available for preview with Windows Insiders. "Recall will now shift from a preview experience broadly available for Copilot+ PCs on June 18, 2024, to a preview available first in the Windows Insider Program in the coming weeks," reads an update to a recent Windows Recall blog post.

Microsoft bigwig says the Feds catching Chinese spies in Exchange Online is the cloud working as intended
2024-06-14 00:40

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Truist Bank confirms breach after stolen data shows up on hacking forum
2024-06-13 23:17

Leading U.S. commercial bank Truist confirmed its systems were breached in an October 2023 cyberattack after a threat actor posted some of the company's data for sale on a hacking forum. While BleepingComputer could not independently verify these claims, the data also allegedly contains bank transactions with names, account numbers, balances, and IVR funds transfer source code.

US Space Force wanted $77M to reinforce GPS – and Congress shot it down
2024-06-13 22:42

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Ascension hacked after employee downloaded malicious file
2024-06-13 21:52

Ascension, one of the largest U.S. healthcare systems, revealed that a May 2024 ransomware attack was caused by an employee who downloaded a malicious file onto a company device. Ascension says this was likely an "Honest mistake" as the employee thought they were downloading a legitimate file.