Security News > 2024 > August

SolarWinds fixes hardcoded credentials flaw in Web Help Desk
2024-08-22 15:01

SolarWinds has released a hotfix for a critical Web Help Desk vulnerability that allows attackers to log into unpatched systems using hardcoded credentials. [...]

U.S. charges Karakurt extortion gang’s “cold case” negotiator
2024-08-22 13:05

A member of the Russian Karakurt ransomware group has been charged in the U.S. for money laundering, wire fraud, and extortion crimes. [...]

Low Media Literacy: A Risk to Australia’s Cybersecurity Landscape
2024-08-22 12:54

Explore how low media literacy can have lingering repercussions on Australia’s tech industry.

Ransomware batters critical industries, but takedowns hint at relief
2024-08-22 12:23

Whether attack slowdown continues downward trend is the million dollar question that security researchers can't answer Critical industrial organizations continued to be hammered by ransomware...

Critical GitHub Enterprise Server auth bypass flaw fixed (CVE-2024-6800)
2024-08-22 12:19

A critical vulnerability (CVE-2024-6800) affecting all currently supported versions of GitHub Enterprise Server (GHES) may allow attackers to gain unrestricted access to the instance’s contents....

Australian Digital ID: TEx System Poised to Boost Security By Sharing Less Data With Businesses
2024-08-22 12:00

Australia is building a digital ID and information verification system called Trust Exchange, or TEx, that will see the Government verifying customer details for businesses via a smartphone app.

This uni thought it would be a good idea to do a phishing test with a fake Ebola scare
2024-08-22 10:32

Needless to say, it backfired in a big way University of California Santa Cruz (UCSC) students may be relieved to hear that an emailed warning about a staff member infected with the Ebola virus...

The Facts About Continuous Penetration Testing and Why It’s Important
2024-08-22 10:03

What is Continuous Attack Surface Penetration Testing or CASPT? Continuous Penetration Testing or Continuous Attack Surface Penetration Testing (CASPT) is an advanced security practice that...

Android malware uses NFC to steal money at ATMs
2024-08-22 09:00

ESET researchers uncovered NGate malware, which can relay data from victims’ payment cards via a malicious app installed on their Android devices to the attacker’s rooted Android phone. Attack...

Kick off early Octoberfest with an EUC-fest
2024-08-22 08:57

Visit IGEL’s DISRUPT Munich event this September to learn more about the latest end user computing technologies Sponsored Post The IGEL DISRUPT Munich event promises an opportunity to explore the...