Security News > 2024 > December

UK ICO not happy with Google's plans to allow device fingerprinting
2024-12-23 09:31

Also, Ascension notifies 5.6M victims, Krispy Kreme bandits come forward, LockBit 4.0 released, and more in brief Google has announced plans to allow its business customers to begin...

U.S. Judge Rules Against NSO Group in WhatsApp Pegasus Spyware Case
2024-12-23 09:20

Meta Platforms-owned WhatsApp scored a major legal victory in its fight against Israeli commercial spyware vendor NSO Group after a federal judge in the U.S. state of California ruled in favor of...

Italy Fines OpenAI €15 Million for ChatGPT GDPR Data Privacy Violations
2024-12-23 06:42

Italy's data protection authority has fined ChatGPT maker OpenAI a fine of €15 million ($15.66 million) over how the generative artificial intelligence application handles personal data. The fine...

Evilginx: Open-source man-in-the-middle attack framework
2024-12-23 05:30

Evilginx is an open-source man-in-the-middle attack framework designed to phish login credentials and session cookies, enabling attackers to bypass 2FA safeguards. “Back in 2017, I was...

Maximizing the impact of cybercrime intelligence on business resilience
2024-12-23 05:00

In this Help Net Security interview, Jason Passwaters, CEO of Intel 471, discusses how integrating cybercrime intelligence into an organization’s security strategy enables proactive threat...

How companies can fight ransomware impersonations
2024-12-23 04:30

As these threat actors become increasingly strategic and harder to detect, organizations must take all measures to protect their data, including cybersecurity training. In this Help Net Security...

What open source means for cybersecurity
2024-12-23 04:00

With outdated and inadequately maintained components, along with insecure dependencies, the open-source ecosystem presents numerous risks that could expose organizations to threats. In this...

North Korean hackers stole $1.3 billion worth of crypto this year
2024-12-22 15:19

North Korean hackers have stolen $1.34 billion worth of cryptocurrency across 47 cyberattacks that occurred in 2024, according to a new report by blockchain analysis company Chainalysis. [...]

Week in review: MUT-1244 targets both security workers and threat actors, Kali Linux 2024.4 released
2024-12-22 09:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: MUT-1244 targeting security researchers, red teamers, and threat actors A threat actor tracked as...

New FlowerStorm Microsoft phishing service fills void left by Rockstar2FA
2024-12-21 15:16

A new Microsoft 365 phishing-as-a-service platform called "FlowerStorm" is growing in popularity, filling the void left behind by the sudden shutdown of the Rockstar2FA cybercrime service. [...]