Security News

How voter registration databases are vulnerable to nefarious actors
2018-10-30 19:15

Cris Thomas (aka Space Rogue), global strategy lead at IBM X-Force Red, discusses the risks of data being changed or removed in voter registration databases and how voters can counter these actions.

Microsoft Incompletely Patches JET Database Vulnerability
2018-10-15 16:29

An out-of-bounds (OOB) write bug in the Microsoft JET Database Engine that could be exploited for remote code execution has been incompletely addressed with the latest Patch Tuesday security...

How DNA Databases Violate Everyone's Privacy
2018-10-15 14:34

If you're an American of European descent, there's a 60% you can be uniquely identified by public information in DNA databases. This is not information that you have made public; this is...

Third-Party Patch Available for Microsoft JET Database Zero-Day
2018-09-25 17:41

An unofficial patch is already available for the unpatched Microsoft JET Database Engine vulnerability that Trend Micro's Zero Day Initiative (ZDI) made public last week. read more

ZDI Shares Details of Microsoft JET Database Zero-Day
2018-09-21 16:14

Trend Micro's Zero Day Initiative (ZDI) on Thursday made public details on a vulnerability impacting the Microsoft JET Database Engine, although a patch isn’t yet available for it. read more

Cybercrime Markets Sell Access to Hacked Sites, Databases
2018-09-21 09:48

Payment Card Theft, Ransomware Facilitated by Cybercrime-as-a-Service OfferingsOne mystery with the recently discovered payment card sniffing attacks against such organizations as British Airways...

Here we Mongo again! Millions of records exposed by insecure database
2018-09-19 11:44

Another day, another poorly configured MongoDB database.

Equifax IT staff had to rerun hackers' database queries to work out what was nicked – audit
2018-09-17 07:07

And let security kit fail for 10 months due to bad cert Equifax was so unsure how much data had been stolen during its 2017 mega-hack that its IT staff spent weeks rerunning the hackers' database...

Veeam holds its hands up, admits database leak was plain 'complacency'
2018-09-14 12:46

Co-CEO: 'We should have done a better job' Veeam has blamed "human error" for the exposure of a marketing database containing millions of names and email addresses.…

Veeam leaves MongoDB database wide open, exposes 445m records
2018-09-13 13:55

The data-management firm's customer database held names, email addresses, some IP addresses and more: a wealth of ammo for phishers.