Security News

Domino's India discloses data breach after hackers sell data online
2021-05-25 18:37

Domino's India has disclosed a data breach after a threat actor hacked their systems and sold their stolen data on a hacking forum. In April 2021, a threat actor created a new topic on a hacking forum where they claimed to be selling 13 TB of stolen data, including details for 18 crores orders and 1 million credit cards, from Domino's India.

UK Computer Misuse Act convictions declined last year despite pandemic explosion in online criminal activity
2021-05-21 15:32

Prosecutions under the UK's Computer Misuse Act dropped by a fifth in 2020 even as conviction rates soared to 95 per cent during the year of the pandemic, new statistics have revealed. This week's conviction statistics also showed that the most common CMA crime taken to court was the offence of "Unauthorised access to computer material", accounting for 33 of the year's total of 45 prosecutions under the Act.

(ISC)² launches diversity, equity and inclusion online resource center
2021-05-19 00:15

announced the next phase in its Global Diversity, Equity and Inclusion initiative. It will host a broad range of informative documents, webinars and research that can serve as a toolkit for any visitor who wants to audit, build and measure a DEI initiative in their organization, or simply wants to learn more about these issues.

Vulnerability in popular browsers could be used to track, profile users online
2021-05-17 10:53

A vulnerability affecting desktop versions of four popular web browsers could be exploited by advertisers, malicious actors, and other third parties to track and profile users online even if they switch browsers, use incognito mode or a VPN, researcher and developer Konstantin Darutkin claims. Darutkin and his colleagues from FingerprintJS are calling the vulnerability and its exploitation "Scheme flooding," as attackers can use browsers' built-in custom URL scheme handlers to check if site visitors have 32 different applications installed on their desktops.

Free SANS Cyber Security Summits: Sign up now, learn online, keep your network safe
2021-05-14 15:30

In-depth specialist training is an essential part of this, but it's also important to step back and take a wider view now and again, taking in emerging threats, new techniques, and getting a reality check on how your peers deal with the same problems facing you. First up on this year's schedule is Purple Team Summit and Training 2021, which runs from May 17 to May 28, on US Eastern Time.

Beware fake online trading apps, on iOS as well as Android
2021-05-12 18:30

Well, SophosLabs researchers have just published a report entitled Fake Android and iOS apps disguise as trading andcryptocurrency apps, and it seems that some investment scammers are taking a similar sort of approach. If you've gone to all the trouble of building an imposter website that looks like a genuine online currency trading business, and a fake app that is believable enough to pass muster as belonging to someone else's brand.

City of Tulsa's online services disrupted in ransomware incident
2021-05-10 21:27

The City of Tulsa, Oklahoma, has suffered a ransomware attack that forced the City to shut down its systems to prevent the further spread of the malware. Tulsa is the second-largest city in Oklahoma, with a population of approximately 400,000 people.

Google Chrome's new privacy feature restricts online user tracking
2021-05-09 16:02

In the latest move to improve the privacy of the Chrome browser, Google is adding support for a new HTML tag that prevents user tracking by isolating embedded content from the page embedding it. To prevent this, Google is adding a new form of embedded iframe called a "Fenced frame" to isolate the embedded content and not allow it to see the user data of the embedding page.

First Horizon bank online accounts hacked to steal customers’ funds
2021-04-30 20:04

Bank holding company First Horizon Corporation disclosed the some of its customers had their online banking accounts breached by unknown attackers earlier this month. First Horizon Bank, the company's banking subsidiary, operates a network of hundreds of bank locations in 12 states across the Southeast.

COVID-19 Results for 25% of Wyoming Accidentally Posted Online
2021-04-29 16:17

The Wyoming Department of Health said on Wednesday it accidentally posted COVID test results of state residents onto their public-facing storage buckets. As far as the breath alcohol tests go, the employee accidentally posted the results of 18,312 people - mostly from Wyoming but also from other states - who breathed into a tube for law enforcement in Wyoming as far back as April 19, 2012 and on up until Jan. 27, 2021.