Security News

Google Chrome: Security and UI Tips You Need to Know
2024-04-16 16:00

Google's Chrome web browser held a 64.41% command of the global browser market share in January 2024. This guide, written by Jack Wallen for TechRepublic Premium, will provide you with some of the most important tips for using Google's Chrome web browser.

SIM swap crooks solicit T-Mobile US, Verizon staff via text to do their dirty work
2024-04-16 15:30

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Cisco Duo provider breached, SMS MFA logs compromised
2024-04-16 15:20

Hackers have managed to compromise a telephony provider for Duo, the Cisco-owned company providing secure access solutions, and steal MFA SMS message logs of Duo customers."The threat actor downloaded message logs for SMS messages that were sent to certain users under your Duo account between March 1, 2024 and March 31, 2024," the Cisco Data Privacy and Incident Response Team notified its MSP partners.

OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt
2024-04-16 15:16

Security researchers have uncovered a "credible" takeover attempt targeting the OpenJS Foundation in a manner that evokes similarities to the recently uncovered incident aimed at the open-source...

PuTTY SSH client flaw allows recovery of cryptographic private keys
2024-04-16 15:01

A vulnerability tracked as CVE-2024-31497 in PuTTY 0.68 through 0.80 could potentially allow attackers with access to 60 cryptographic signatures to recover the private key used for their generation. PuTTY is a popular open-source terminal emulator, serial console, and network file transfer application that supports SSH, Telnet, SCP, and SFTP. System administrators and developers predominantly use the software to remotely access and manage servers and other networked devices over SSH from a Windows-based client.

UnitedHealth: Change Healthcare cyberattack caused $872 million loss
2024-04-16 14:24

UnitedHealth Group reported an $872 million impact on its Q1 earnings due to the ransomware attack disrupting the U.S. healthcare system since February. Change Healthcare is the biggest payment exchange platform used by doctors, healthcare providers, and over 70,000 pharmacies within the United States healthcare system.

Speedify VPN Review: Features, Security & Performance
2024-04-16 14:15

Visit Speedify VPN. As its name suggests, Speedify VPN focuses on speed to set it apart from the competition. If you're looking for a free VPN that doesn't have a data limit, you should consider ProtonVPN instead. Speedify VPN Pros Speedify VPN Cons.

Open sourcerers say suspected xz-style attacks continue to target maintainers
2024-04-16 14:07

Open source groups are warning the community about a wave of ongoing attacks targeting project maintainers similar to those that led to the recent attempted backdooring of a core Linux library. Higher-ups at the OpenJS Foundation and Open Source Security Foundation believe the attempt to plant a backdoor into Linux's xz data compression library "May not be an isolated incident" given their recent observations.

How to make your web apps resistant to social engineering
2024-04-16 14:02

Despite this, there are still things that you can do to make your web apps more resistant to social engineering. With this in mind, consider implementing these strategies at your organization to protect your web applications and reduce the chance of falling victim to social engineering.

TA558 Hackers Weaponize Images for Wide-Scale Malware Attacks
2024-04-16 13:39

The threat actor tracked as TA558 has been observed leveraging steganography as an obfuscation technique to deliver a wide range of malware such as Agent Tesla, FormBook, Remcos RAT, LokiBot,...