Security News

Surviving the “quantum apocalypse” with fully homomorphic encryption
2024-03-19 06:00

Quantum computing spreads across a wide range of disciplines both on the hardware research and application development fronts, including elements of computer science, physics, and mathematics. The goal is to combine these subjects to create a computer that utilizes quantum mechanics to solve complex problems faster than on classical computers.

Cybersecurity jobs available right now: March 19, 2024
2024-03-19 05:30

The role involves working within a security team to protect the organization's cloud environments, implement and maintain security systems, and contribute to incident response efforts. This role will work cross functionally across many security teams within the Cybersecurity Operations Center and will report directly to the Director of the Cybersecurity Operations Center.

New Phishing Attack Uses Clever Microsoft Office Trick to Deploy NetSupport RAT
2024-03-19 05:28

A new phishing campaign is targeting U.S. organizations with the intent to deploy a remote access trojan called NetSupport RAT. Israeli cybersecurity company Perception Point is tracking the...

Why is everyone talking about certificate automation?
2024-03-19 05:00

Digital Certificates are not new. In this Help Net Security video, Andreas Brix, Senior Program Manager at GlobalSign, discusses why they are back in the news and what you should do about it. The...

E-Root Marketplace Admin Sentenced to 42 Months for Selling 350K Stolen Credentials
2024-03-19 04:47

A 31-year-old Moldovan national has been sentenced to 42 months in prison in the U.S. for operating an illicit marketplace called E-Root Marketplace that offered for sale hundreds of thousands of...

Outsmarting cybercriminal innovation with strategies for enterprise resilience
2024-03-19 04:30

The rise of advanced persistent threats, phishing-as-a-service, ransomware-as-a-service models, and nation-state-sponsored cyber-attacks further compounds the complexity of the threat landscape. It's crucial for enterprises to adapt swiftly, implementing threat intelligence programs to expedite vulnerability remediation and the deployment of suitable security controls tailored to the dynamic threat environment evolution.

Lynis: Open-source security auditing tool
2024-03-19 04:00

Lynis is a comprehensive open-source security auditing tool for UNIX-based systems, including Linux, macOS, and BSD. Hardening with Lynis. Lynis conducts a thorough security examination of the system directly.

Investment advisers pay $400K to settle ‘AI washing’ charges
2024-03-18 21:38

The U.S. Securities and Exchange Commission announced today that two investment advisers, Delphia and Global Predictions, have settled charges of making misleading statements regarding the use of artificial intelligence technology in their products. Both companies have agreed to pay $400,000 in civil penalties for their "Al washing" activities: Delphia will pay a civil penalty of $225,000, while Global Predictions will pay $175,000.

#AI
Don't be like these 900+ websites and expose millions of passwords via Firebase
2024-03-18 21:29

At least 900 websites built with Google's Firebase, a cloud database, have been misconfigured, leaving credentials, personal info, and other sensitive data inadvertently exposed to the public internet, according to security researchers. Among these websites, it's estimated that at least 125 million user records were found to be publicly accessible, including billing information and plaintext passwords.

Chinese Earth Krahang hackers breach 70 orgs in 23 countries
2024-03-18 20:49

A sophisticated hacking campaign attributed to a Chinese Advanced Persistent Threat group known as 'Earth Krahang' has breached 70 organizations and targeted at least 116 across 45 countries. Specifically, the hackers have compromised 48 government organizations, 10 of which are Foreign Affairs ministries, and targeted another 49 government agencies.