Security News

New details reveal how hackers hijacked 35 Google Chrome extensions
2024-12-31 18:54

New details have emerged about a phishing campaign targeting Chrome browser extension developers that led to the compromise of at least thirty-five extensions to inject data-stealing code,...

US Treasury Department outs the blast radius of BeyondTrust's key leak
2024-12-31 15:30

Data pilfered as miscreants roamed affected workstations The US Department of the Treasury has admitted that miscreants were in its systems, accessing documents in what has been called a "major incident."…

Over 3.1 million fake "stars" on GitHub projects used to boost rankings
2024-12-31 15:13

GitHub has a problem with inauthentic "stars" used to artificially inflate the popularity of scam and malware distribution repositories to appear more popular, helping them reach more unsuspecting...

China's cyber intrusions took a sinister turn in 2024
2024-12-31 12:15

From targeted espionage to pre-positioning - not that they are mutually exclusive The Chinese government's intrusions into America's telecommunications and other critical infrastructure networks...

Gift Card Fraud
2024-12-31 12:02

It’s becoming an organized crime tactic: Card draining is when criminals remove gift cards from a store display, open them in a separate location, and either record the card numbers and PINs or...

New U.S. DoJ Rule Halts Bulk Data Transfers to Adversarial Nations to Protect Privacy
2024-12-31 11:26

The U.S. Department of Justice (DoJ) has issued a final rule carrying out Executive Order (EO) 14117, which prevents mass transfer of citizens' personal data to countries of concern such as China...

Massive healthcare breaches prompt US cybersecurity rules overhaul
2024-12-31 07:32

The U.S. Department of Health and Human Services (HHS) has proposed updates to the Health Insurance Portability and Accountability Act of 1996 (HIPAA) to secure patients' health data following a...

Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents
2024-12-31 05:42

The United States Treasury Department said it suffered a "major cybersecurity incident" that allowed suspected Chinese threat actors to remotely access some computers and unclassified documents. ...

Why software is the key to FI risk management
2024-12-31 05:30

Risk management is important, but it’s not always exciting. Many risk professionals still rely on spreadsheets and manual methods despite the availability of better options. Excel is familiar and...

Regulations, security, and remote work: Why network outsourcing is booming
2024-12-31 05:00

A growing number of enterprises in the US are adopting managed network services to support AI and other new technologies across increasingly complex networks, according to ISG. US enterprises lead...