Security News

PostgreSQL databases under attack
2024-08-21 13:10

Poorly protected PostgreSQL databases running on Linux machines are being compromised by cryptojacking attackers. Internet-exposed PostgreSQL databases are a favorite target of opportunistic cryptojacking groups and, occasionally, extortionists.

Deadbeat dad faked his own death by hacking government databases
2024-08-21 07:35

A US man has been sentenced to 81 months in jail for faking his own death by hacking government systems and officially marking himself as deceased. In January 2023 Kipf used the credentials of a physician to access Hawaii's Death Registry System and create a "Case" that recorded his own death.

BreachForums v1 database leak is an OPSEC test for hackers
2024-07-24 04:00

The entire database for the notorious BreachForums v1 hacking forum was released on Telegram Tuesday night, exposing a treasure trove of data, including members' information, private messages,...

Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks
2024-06-27 10:04

Cybersecurity researchers have disclosed a high-severity security flaw in the Vanna.AI library that could be exploited to achieve remote code execution vulnerability via prompt injection...

Enterprises increasingly turn to cloud and AI for database management
2024-06-27 03:00

Across various tasks, from predictive analytics to code generation, organizations in all sectors are exploring how AI can add value and increase efficiency. In this Help Net Security video, Ryan Booz, PostgreSQL Advocate at Redgate, discusses the key findings of Redgate's State of the Database Landscape Report.

Dark-web kingpin puts 'stolen' internal AMD databases, source code up for sale
2024-06-18 23:01

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

UK's Total Fitness exposed nearly 500K images of members, staff through unprotected database
2024-06-17 10:35

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

NIST turns to IT consultants to clear National Vulnerability Database backlog
2024-06-03 21:46

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Cybercriminals raid BBC pension database, steal records of over 25,000 people
2024-05-30 14:02

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Hacker defaces spyware app’s site, dumps database and source code
2024-05-24 22:34

A hacker has defaced the website of the pcTattletale spyware application, found on the booking systems of several Wyndham hotels in the United States, and leaked over a dozen archives containing database and source code data. Described by its developers as an "Employee and child monitoring software," pcTattletale is a consumer-grade spyware solution that was leaking guest details and customer information captured from the hotels' check-in systems because of an API security vulnerability, according to TechCrunch.