Security News

AT&T now says data breach impacted 51 million customers
2024-04-10 14:18

AT&T is notifying 51 million former and current customers, warning them of a data breach that exposed their personal information on a hacking forum. These notifications are related to the recent leak of a massive amount of AT&T customer data on the Breach hacking forums that was offered for sale for $1 million in 2021.

Reusing passwords: The hidden cost of convenience
2024-04-10 14:02

End-users tend to choose passwords that are easy to remember and often recycle them across multiple accounts to avoid the hassle of managing numerous complex passwords. Even if end-users are made aware of the risks through training, there's often an attitude of 'it won't be me' that encourages them to prioritize the convenience of reusing passwords.

Rust rustles up fix for 10/10 critical command injection bug on Windows in std lib
2024-04-10 13:15

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Raspberry Robin Returns: New Malware Campaign Spreading Through WSF Files
2024-04-10 13:10

Cybersecurity researchers have discovered a new Raspberry Robin campaign wave that propagates the malware through malicious Windows Script Files (WSFs) since March 2024. "Historically, Raspberry...

Beware: GitHub's Fake Popularity Scam Tricking Developers into Downloading Malware
2024-04-10 12:38

Threat actors are now taking advantage of GitHub's search functionality to trick unsuspecting users looking for popular repositories into downloading spurious counterparts that serve malware. The...

Develop Advanced Cybersecurity Skills for Just $64
2024-04-10 12:30

TL;DR: Develop the skills you need to advance in the lucrative cybersecurity field with The 2023 Ultimate Advanced CyberSecurity Professional Certification Bundle - it's currently on sale for just $80. You now have the opportunity to develop advanced cybersecurity skills at your own pace with The 2023 Ultimate Advanced CyberSecurity Professional Certification Bundle. To help serve that demand for your business and potentially for others, you can dive into this advanced cybersecurity course bundle.

IT pros targeted with malicious Google ads for PuTTY, FileZilla
2024-04-10 11:41

An ongoing malvertising campaign is targeting IT administrators looking to download system utilities such as PuTTY and FileZilla. "We have reported this campaign to Google but no action has been taken yet," , Malwarebytes researcher Jérôme Segura shared.

In Memoriam: Ross Anderson, 1956-2024
2024-04-10 11:08

About Bruce Schneier I am a public-interest technologist, working at the intersection of security, technology, and people. I've been writing about security issues on my blog since 2004, and in my monthly newsletter since 1998.

Malicious Visual Studio projects on GitHub push Keyzetsu malware
2024-04-10 11:00

Threat actors are abusing GitHub automation features and malicious Visual Studio projects to push a new variant of the "Keyzetsu" clipboard-hijacking malware and steal cryptocurrency payments. Users downloading files from those repositories become infected with malware hidden within Visual Studio project files and stealthily executed during the project build.

Hands-on Review: Cynomi AI-powered vCISO Platform
2024-04-10 11:00

The need for vCISO services is growing. SMBs and SMEs are dealing with more third-party risks, tightening regulatory demands and stringent cyber insurance requirements than ever before. However,...

#AI