Security News

Crypto miner arrested for skipping on $3.5 million in cloud server bills
2024-04-15 18:10

The U.S. Department of Justice has announced the arrest and indictment of Charles O. Parks III, known as "CP3O," for allegedly renting large numbers of cloud servers to conduct crypto mining and then skipping out on paying the bills. The DOJ explains that the defendant created a unique scheme that utilized $3.5 million worth of cloud computing resources to mine $970,000 worth of cryptocurrency at the expense of two cloud service providers.

Intel and Lenovo BMCs Contain Unpatched Lighttpd Server Flaw
2024-04-15 16:51

A security flaw impacting the Lighttpd web server used in baseboard management controllers (BMCs) has remained unpatched by device vendors like Intel and Lenovo, new findings from Binarly reveal....

Chipmaker Nexperia confirms breach after ransomware gang leaks data
2024-04-15 16:00

Dutch chipmaker Nexperia confirmed late last week that hackers breached its network in March 2024 after a ransomware gang leaked samples of allegedly stolen data. In a press statement on Friday, the company disclosed a data breach that forced it to shut down IT systems and launch an investigation to determine the scope of impact.

Roku makes 2FA mandatory for all after nearly 600K accounts pwned
2024-04-15 15:32

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Daixin ransomware gang claims attack on Omni Hotels
2024-04-15 15:01

The Daixin Team ransomware gang claimed a recent cyberattack on Omni Hotels & Resorts and is now threatening to publish customers' sensitive information if a ransom is not paid. "Since Friday, March 29, Omni Hotels & Resorts has been responding to a cyberattack on its systems. Upon learning of this issue, Omni immediately took steps to shut down its systems to protect and contain its data," the hotel chain told BleepingComputer.

Cisco Duo warns third-party data breach exposed SMS MFA logs
2024-04-15 14:52

Cisco Duo's security team warns that hackers stole some customers' VoIP and SMS logs for multi-factor authentication messages in a cyberattack on their telephony provider. In emails sent to customers, Cisco Duo says an unnamed provider who handles the company's SMS and VOIP multi-factor authentication messages was compromised on April 1, 2024.

Delinea Secret Server customers should apply latest patches
2024-04-15 14:00

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

TechRepublic’s Review Methodology for VPNs
2024-04-15 13:31

While our algorithm is subject to change, these categories are the main pillars by which we assess each VPN. If you have differing opinions on our chosen criteria, we encourage you to use our methodology and reviews to inform your own evaluation of a particular VPN. Below is the breakdown of how we review VPNs. The specified template was not found. Know how you're going to use the VPN. Another important step is to figure out how your business is going to use a VPN. While all VPNs encrypt online traffic, some solutions place more priority on certain features over others.

AI Copilot: Launching Innovation Rockets, But Beware of the Darkness Ahead
2024-04-15 13:30

Imagine a world where the software that powers your favorite apps, secures your online transactions, and keeps your digital life could be outsmarted and taken over by a cleverly disguised piece of...

Muddled Libra Shifts Focus to SaaS and Cloud for Extortion and Data Theft Attacks
2024-04-15 13:29

The threat actor known as Muddled Libra has been observed actively targeting software-as-a-service (SaaS) applications and cloud service provider (CSP) environments in a bid to exfiltrate...