Security News

BBC suffers data breach impacting current, former employees
2024-05-30 14:02

The BBC has disclosed a data security incident that occurred on May 21, involving unauthorized access to files hosted on a cloud-based service, compromising the personal information of BBC Pension Scheme members. As per the reports, the incident impacted roughly 25,000 people, including current and former employees of Britain's national public service broadcaster.

Cybercriminals raid BBC pension database, steal records of over 25,000 people
2024-05-30 14:02

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Researchers Uncover Active Exploitation of WordPress Plugin Vulnerabilities
2024-05-30 13:49

Cybersecurity researchers have warned that multiple high-severity security vulnerabilities in WordPress plugins are being actively exploited by threat actors to create rogue administrator accounts...

IT worker sued over ‘vengeful’ cyber harassment of policeman who issued a jaywalking ticket
2024-05-30 13:00

Over the following two weeks, the officer - identified only as John Doe - said he believed Spatafore was trying to break into his personal email and Xfinity accounts. The original complaint [PDF], filed on October 19 2021 alleges that Spatafore contacted "Thousands" of companies and that contact attempts persisted up until the complaint was filed.

How to Build Your Autonomous SOC Strategy
2024-05-30 11:44

Security leaders are in a tricky position trying to discern how much new AI-driven cybersecurity tools could actually benefit a security operations center (SOC). The hype about generative AI is...

IBM spin-off Kyndryl accused of discriminating on basis of age, race, disability
2024-05-30 11:14

Exclusive Kyndryl, the IT services firm spun out of IBM, has been accused by multiple employees within its CISO Defense security group of discrimination on the basis of age, race, and disability, in both internal complaints and formal charges filed with the US Equal Employment Opportunity Commission. In an email exchange earlier this month, a Kyndryl security analyst, who having returned from short-term disability in December, felt he was being treated differently, and asked a manager whether he was facing retaliation for taking that time off.

Supply Chain Attack against Courtroom Software
2024-05-30 11:04

A software maker serving more than 10,000 courtrooms throughout the world hosted an application update containing a hidden backdoor that maintained persistent communication with a malicious website, researchers reported Thursday, in the latest episode of a supply-chain attack. The software, known as the JAVS Viewer 8, is a component of the JAVS Suite 8, an application package courtrooms use to record, play back, and manage audio and video from proceedings.

NIST says NVD will be back on track by September 2024
2024-05-30 10:50

The NVD started slowing down its CVE enrichment efforts earlier this year, and NIST confirmed that they are working on a multi-pronged solution that will include improved tools and methods, as well as establishing a consortium that will help addressed various challenges. Tanya Brewer, program manager at the NVD, said in April that the NVD program is considering many changes to improve software identification, automate CVE analysis activities, make NVD data more easy to "Consume" and customize, develop capabilities to publish additional kinds of data, and more.

Europol Shuts Down 100+ Servers Linked to IcedID, TrickBot, and Other Malware
2024-05-30 10:40

Europol on Thursday said it shut down the infrastructure associated with several malware loader operations such as IcedID, SystemBC, PikaBot, SmokeLoader, Bumblebee, and TrickBot as part of a...

Do VPNs Change or Hide Your IP Address?
2024-05-30 10:37

Of course, VPNs also impact your IP address to provide extra security for your online connections. VPNs add a layer of security to your online presence by routing your encrypted internet data to a VPN server that disguises your IP address.