Security News

Amazon Alexa flaws could have revealed home address and other personal data
2020-08-13 13:06

The flaws could also have helped attackers obtain usernames, phone numbers, voice history, and installed skills, says Check Point Research. Silently installed skills and apps on a user's Alexa account.

Amazon Alexa ‘One-Click’ Attack Can Divulge Personal Data
2020-08-13 10:00

UPDATE. Vulnerabilities in Amazon's Alexa virtual assistant platform could allow attackers to access users' personal information, like home addresses - simply by persuading them to click on a malicious link. Researchers with Check Point found several web application flaws on Amazon Alexa subdomains, including a cross-site scripting flaw and cross-origin resource sharing misconfiguration.

Google and Amazon most impersonated brands in phishing attacks
2020-08-04 16:30

Phishing attacks typically try to lure in victims by impersonating well-known companies, brands, and products. Released on Tuesday, Check Point's "Brand Phishing Report for Q2 2020" found that Google and Amazon were the most impersonated brands last quarter, each accounting for 13% of the brand phishing campaigns analyzed.

Amazon Fraud Detector: Use machine learning in the fight against online fraud
2020-07-29 02:00

Using machine learning under the hood and based on over 20 years of fraud detection expertise from Amazon, Amazon Fraud Detector automatically identifies potentially fraudulent activity in milliseconds-with no machine learning expertise required. Amazon Fraud Detector provides a fully managed service that uses machine learning for detecting potential fraud in real time, based on the same technology used by Amazon.com-with no machine learning experience required.

Amazon IVS: Adding live and interactive video streams in mobile and web apps in minutes
2020-07-17 00:30

Amazon Web Services, an Amazon.com company, announced the general availability of Amazon Interactive Video Service, a new fully managed service that makes it easy to set up live, interactive video streams for a web or mobile application in just a few minutes. Customers can then combine the Amazon IVS SDK and APIs to attach structured text data to video streams, and create interactive content, including polls, surveys, and leaderboards, all of which are automatically synchronized to the live video.

Amazon-Themed Phishing Campaigns Swim Past Security Checks
2020-07-16 13:00

Researchers at Armorblox recently spotted a pair of savvy campaigns leveraging Amazon: A credential-phishing attempt using a purported Amazon delivery order failure notice; and a voice phishing attempt also using Amazon delivery order. Both are examples of the ever-more sophisticated phishing efforts being developed by fraudsters that are aimed at gaming traditional email security efforts, researchers said.

Amazon Says Email to Employees Banning TikTok Was a Mistake
2020-07-13 11:43

Roughly five hours after an internal email went out Friday to Amazon employees telling them to delete the popular video app TikTok from their phones, the online retailing giant appeared to backtrack, calling the ban a mistake. U.S. Secretary of State Mike Pompeo said this week that the government was "Certainly looking" at banning the app, setting off confused and irritated posts as well as jokes by TikTok users.

An email banning our staff from using TikTok? Haha, funny story about that, we didn't mean it – Amazon
2020-07-11 00:20

Amazon today said an internal email banning its staff from using TikTok on smartphones connected to their corporate inboxes was sent in "Error." The admission - or climb down, depending on how skeptical you are - came after the memo was obtained and leaked by journalists. So what Amazon's trying to say now is that it was wrong to ban TikTok from mobile devices: its policy is that it's OK to use the software on phones used for work email.

AWS launches Amazon Honeycode to help quickly build mobile and web apps without programming
2020-06-26 00:00

Amazon Web Services, an Amazon.com company, announced Amazon Honeycode, a fully managed service that allows customers to quickly build powerful mobile and web applications - with no programming required. Amazon Honeycode does all of this under the covers by automating the process of building and linking the three tiers of functionality found in most business applications, and then deploying fully interactive web and mobile applications to end users so customers can focus on creating great applications without having to worry about writing code or scaling infrastructure.

Amazon, Apple, Wells Fargo fueling tech hiring resurgence after coronavirus economic damage
2020-06-24 17:27

Tech companies like Amazon, Apple, Wells Fargo, Salesforce, and IBM have continued to hire in cities across the country despite the economic downturn. Amazon, Deloitte, Bloomberg, and Wells Fargo were all hiring widely for tech positions in New York city.