Security News

Bitcoin Forensic Analysis Uncovers Money Laundering Clusters and Criminal Proceeds
2024-05-01 14:25

A forensic analysis of a graph dataset containing transactions on the Bitcoin blockchain has revealed clusters associated with illicit activity and money laundering, including detecting criminal...

Microsoft says April Windows updates break VPN connections
2024-05-01 14:07

Microsoft has confirmed that the April 2024 Windows security updates break VPN connections across client and server platforms. The company explains on the Windows health dashboard that "Windows devices might face VPN connection failures after installing the April 2024 security update or the April 2024 non-security preview update."

Android Malware Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers
2024-05-01 13:41

Cybersecurity researchers have discovered a previously undocumented malware targeting Android devices that uses compromised WordPress sites as relays for its actual command-and-control (C2)...

A closer look at Apiiro’s SHINE partner program
2024-05-01 13:40

In this Help Net Security video, Adam LaGreca, Founder of 10KMedia, sat down with John Leon, VP of Partnerships at Apiiro, discusses the company's new technology partner program SHINE. The name stands for the program's guiding principles - Seamless, Holistic, Integrated, Vendor-Neutral, and Enriched - doubling down on the company's goal to integrate across stacks, from security testing tools, CMDBs, WAFs, runtime API security solutions, training, risk management systems, and development tools. Apiiro technology partners can now seamlessly integrate into its Deep ASPM platform and leverage the unique context of Apiiro's Risk Graph.

Qantas app exposed sensitive traveler details to random users
2024-05-01 13:21

Qantas Airways confirms that some of its customers were impacted by a misconfiguration in its app that exposed sensitive information and boarding passes to random users. Earlier today, several users of the Qantas app reported on social media that they could view other users' travel details, including personally identifiable information, boarding passes for upcoming flights, and other account information.

Adobe Adds Firefly and Content Credentials to Bug Bounty Program
2024-05-01 13:00

Security researchers in Adobe's bug bounty program can now pick up rewards for finding vulnerabilities in Adobe Firefly and Content Credentials. Members of Adobe's public bug bounty program will be eligible to work with Adobe Firefly and Content Credentials in the second half of 2024, and applications for the private program are open.

New Cuttlefish malware infects routers to monitor traffic for credentials
2024-05-01 13:00

A new malware named 'Cuttlefish' has been spotted infecting enterprise-grade and small office/home office routers to monitor data that passes through them and steal authentication information. Lumen Technologies' Black Lotus Labs examined the new malware and reports that Cuttlefish creates a proxy or VPN tunnel on the compromised router to exfiltrate data discreetly while bypassing security measures that detect unusual sign-ins.

AI Voice Scam
2024-05-01 11:09

Scammers tricked a company into believing they were dealing with a BBC presenter. They faked her voice, and accepted money intended for her.

How to Make Your Employees Your First Line of Cyber Defense
2024-05-01 11:03

There’s a natural human desire to avoid threatening scenarios. The irony, of course, is if you hope to attain any semblance of security, you’ve got to remain prepared to confront those very same...

Are VPNs Legal To Use?
2024-05-01 11:01

VPNs are legal to use in most countries, including the United States, United Kingdom, Canada, some European Union countries, Australia and Japan. So while VPNs provide privacy and security, they don't exempt users from legal responsibilities.