Security News

Zyxel Devices Can Be Hacked via DNS Requests, Hardcoded Credentials
2019-09-03 18:16

Multiple security vulnerabilities have been discovered by SEC Consult in various Zyxel devices, including flaws that involve sending unauthenticated DNS requests and hardcoded FTP credentials. read more

A ransomware revival leads to 2.2 billion stolen credentials on the dark web in Q1
2019-08-28 13:12

In a new report, McAfee Labs said cybercriminals were focusing in on attacking weak IoT devices and extracting huge troves of data from large companies.

Backdoored Ruby gems stole credentials, injected cryptomining code
2019-08-21 11:52

The compromise of several older versions of a popular Ruby software package (aka a Ruby “gem”) has led to the discovery of a more widespread effort to inject malware and mining software through...

Credential Stuffing Attacks vs. Brute Force Attacks
2019-08-19 16:33

What They Are and How to Handle ThemTo explore how credential stuffing attacks and brute force attacks differ, we need to understand what they are and how they operate. Here is a quick summary.

A New Credential for Healthcare Security Leaders
2019-08-12 19:03

A new professional credential aims to help healthcare organizations bolster their security leadership bench strength, says William Brad Marsh, co-chair of a committee that developed the certification.

State Farm Falls Victim to Credential-Stuffing Attack
2019-08-08 21:03

The insurance giant serves at least 83 million U.S. households.

State Farm Investigates Credential-Stuffing Attack
2019-08-08 18:03

Not Yet Clear How Many Customers May Have Been AffectedInsurer State Farm has been hit by a credential-stuffing attack designed to gain access to U.S. customers' online accounts, a company...

Baldr Credential-Stealing Malware Targets Gamers
2019-08-08 16:33

Cybercriminals Look to Steal IDs and Payment InformationSince it was first spotted in January, the Baldr credential stealer has spread from Russian underground forums throughout the global gaming...

Smominru Cryptominer Scrapes Credentials for Half-Million Machines
2019-08-07 14:51

The adversaries have retooled with EternalBlue and credential theft to add a new "access mining" revenue stream.

Cybercrooks attempted credential-stuffing banks 3.5 BEEELLION times in the last 18 months alone
2019-07-31 18:12

All going just as you'd expect, reckons Akamai Content delivery network Akamai Technologies reckons that despite the time and effort spent convincing people not to fall for phishing and other...