Security News

Collating Hacked Data Sets
2020-01-30 14:39

Two Harvard undergraduates completed a project where they went out on the Dark Web and found a bunch of stolen datasets. Then they correlated all the information, and then combined it with...

UN hacked: Attackers got in via SharePoint vulnerability
2020-01-30 13:49

The UN did not share that discovery with the authorities, the public, or even the potentially affected staff, and we now know about it only because TNH reporters got their hands on a confidential report by the UN. How was the UN hacked? According to the report, the attack started in July 2019, when the attackers managed to compromise a server located at the UN Office in Vienna through CVE-2019-0604, a security hole in Microsoft SharePoint patched by Microsoft in February 2019 and subsequently widely exploited by attackers to hit a variety of targets worldwide.

Firm Says Wawa Customers' Hacked Credit Card Info Being Sold
2020-01-29 11:49

Convenience store giant Wawa Inc. said Tuesday it is responding to reports that hacked information from its customers' credit cards may be being sold on the dark web. The company said in a news release that customers who may be affected can obtain free credit monitoring and identity theft protection.

UN report alleges that Saudi crown prince hacked Jeff Bezos’s phone
2020-01-23 11:38

A forensic examination of Amazon CEO Jeff Bezos's mobile phone has pointed to it having allegedly been infected by personal-message-exfiltrating malware - likely NSO Group's notorious Pegasus mobile spyware - that came from Saudi Arabia's Crown Prince Mohammed bin Salman's personal WhatsApp account. The UN's report said that full details from the digital forensic exam of Bezos's phone were made available to its special rapporteurs.

Investigators: Saudis Hacked Amazon CEO Jeff Bezos' Phone
2020-01-22 17:03

The mobile phone of Amazon CEO Jeff Bezos was hacked using a malicious file sent directly from the official WhatsApp account of Saudi Arabia's Crown Prince Mohammed Bin Salman, investigators have reportedly found. Hackers stole sensitive information from Bezos' phone "Within hours" of the hack, according to a digital forensic analysis of Bezos' phone conducted by FTI Consulting, a Washington-based business advisory group.

Saudi Arabia Hacked Amazon CEO Jeff Bezos' Phone: Report
2020-01-22 15:03

The mobile phone of Amazon CEO Jeff Bezos was hacked using a malicious file sent directly from the official WhatsApp account of Saudi Arabia's Crown Prince Mohammed Bin Salman, investigators have reportedly found. Hackers stole sensitive information from Bezos' phone "Within hours" of the hack, according to a digital forensic analysis of Bezos' phone conducted by FTI Consulting, a Washington-based business advisory group.

Saudi Prince Allegedly Hacked World's Richest Man Jeff Bezos Using WhatsApp
2020-01-22 05:30

The iPhone of Amazon founder Jeff Bezos, the world's richest man, was reportedly hacked in May 2018 after receiving a WhatsApp message from the personal account of Saudi crown prince Mohammed bin Salman, the Guardian newspaper revealed today. The mysterious file was sent when crown prince Salman and Bezos were having a friendly WhatsApp conversation, and it's 'highly probable' that it exploited an undisclosed zero-day vulnerability of WhatsApp messenger to install malware on Bezos's iPhone.

Russia Hacked Ukrainian Gas Firm at Center of Trump Impeachment
2020-01-14 05:17

Russian spies hacked a Ukrainian energy company at the center of the impeachment trial of US President Donald Trump, a cybersecurity firm said Monday. The GRU figured heavily in the Mueller report on Russian interference in the 2016 presidential campaign, which concluded that Russia hacked the Democratic Party and Hillary Clinton's campaign to help Trump.

If you haven't shored up that Citrix hole, you were probably hacked over the weekend: Exploit code now available
2020-01-13 06:05

Late last month Citrix disclosed a critical security hole in its Application Delivery Controller and Unified Gateway offerings. Up to 80,000 systems were thought to be at risk, with some 25,000 instances found online over the weekend.

Kuwait Denies US Troop Pullout, Says News Agency Hacked
2020-01-08 17:49

Kuwait on Wednesday denied reports that the United States had decided to withdraw its troops from the Gulf state, saying the Twitter account of its official news agency had been hacked. The state-run Kuwait News Agency tweeted that the Kuwaiti defence minister had been informed by the commander of US forces in the emirate of their intention to withdraw from the Arifjan base within three days.