Security News

Cylance confirms data breach linked to 'third-party' platform
2024-06-10 17:42

Cybersecurity company Cylance confirmed the legitimacy of data being sold on a hacking forum, stating that it is old data stolen from a "Third-party platform."The data allegedly includes a substantial amount of information, such as 34,000,000 customer and employee emails and personally identifiable information belonging to Cylance customers, partners, and employees.

Christie's confirms RansomHub crooks stole data on 45K clients
2024-06-10 17:00

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Clean Desk Policy
2024-06-10 16:00

Unsecured USB drives, data files left open on desktops and printouts of confidential documents are just a few examples of items that employees may carelessly leave out when stepping away from their workspaces. The purpose of this customizable Clean Desk Policy, written by Kara Sherrer for TechRepublic Premium, is to provide guidelines for protecting sensitive information and data from unauthorized access when staff are away from their desks.

London hospitals face blood shortage after Synnovis ransomware attack
2024-06-10 15:43

England's NHS Blood and Transplant has issued an urgent call to O Positive and O Negative blood donors to book appointments and donate after last week's cyberattack on pathology provider Synnovis impacted multiple hospitals in London. On June 4, operations at multiple large NHS hospitals in London were disrupted by the ransomware attack that the Russian cybercrime group Qilin launched on Synnovis.

More_eggs Malware Disguised as Resumes Targets Recruiters in Phishing Attack
2024-06-10 15:24

Cybersecurity researchers have spotted a phishing attack distributing the More_eggs malware by masquerading it as a resume, a technique originally detected more than two years ago. The attack,...

Exploit for critical Veeam auth bypass available, patch now
2024-06-10 15:05

A proof-of-concept exploit for a Veeam Backup Enterprise Manager authentication bypass flaw tracked as CVE-2024-29849 is now publicly available, making it urgent that admins apply the latest security updates. Veeam issued a security bulletin about the critical flaw on May 21, warning about a critical vulnerability enabling remote unauthenticated attackers to log in to VBEM's web interface as any user.

23andMe data breach under investigation in UK and Canada
2024-06-10 15:00

Privacy authorities in Canada and the United Kingdom have launched a joint investigation to assess the scope of sensitive customer information exposed in last year's 23andMe data breach. The joint investigation will also examine if 23andMe alerted affected individuals and the privacy regulators as required by Canadian and UK privacy and data protection laws.

The number of known Snowflake customer data breaches is rising
2024-06-10 12:44

US-based Snowflake is a cloud data storage and analytics company with 9,800+ global customers, including Mastercard, Honeywell, Pfizer, Wolt, Adobe, and others. Ten days ago, it was revealed that a threat actor has been stealing data from organizations that use the Snowflake cloud-based platform, and that the attacks began in April 2024.

Snowflake tells customers to enable MFA as investigations continue
2024-06-10 12:30

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Two cuffed over suspected smishing campaign using 'text message blaster'
2024-06-10 11:31

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.