Security News

Oops. Apple relied on bad code while flaming Google Chrome's Topics ad tech
2024-07-24 20:44

Apple last week celebrated a slew of privacy changes coming to its Safari browser and took the time to bash rival Google for its Topics system that serves online ads based on your Chrome history. It's feared netizens could be still be tracked around the web using the Topics API in Chrome, or folks who have tried to hide their identity from advertisers could be rediscovered using the tech.

Docker fixes critical 5-year old authentication bypass flaw
2024-07-24 19:00

Docker has issued security updates to address a critical vulnerability impacting certain versions of Docker Engine that could allow an attacker to bypass authorization plugins (AuthZ) under...

Microsoft fixes bug behind Windows 10 Connected Cache delivery issues
2024-07-24 18:05

Microsoft has fixed a known Windows 10 update issue that broke Microsoft Connected Cache node discovery on enterprise networks. The fix is included with the KB5040525 July 2024 preview update for Windows 10 22H2 released yesterday, which also comes with fixes for WDAC issues causing memory leaks and app failures,.

KnowBe4 mistakenly hires North Korean hacker, faces infostealer attack
2024-07-24 17:30

American cybersecurity company KnowBe4 says a person it recently hired as a Principal Software Engineer turned out to be a North Korean state actor who attempted to install information-stealing on its devices. Before hiring the threat actor, KnowBe4 performed background checks, verified the provided references, and conducted four video interviews to ensure they were a real person and that his face matched the one on his CV. However, it was later determined that the person had submitted a U.S. person's stolen identity to dodge the preliminary checks, and also used AI tools to create a profile picture and match that face during the video conference calls.

Uncle Sam opens probe into CrowdStrike turbulence at Delta Air Lines
2024-07-24 17:02

The US Department of Transportation is investigating Delta Air Lines over its handling of the global IT outage caused by CrowdStrike's content update. Delta has had a particularly rough time since Friday, consistently cancelling hundreds of flights a day.

F5: AI Applications Will Complicate ‘Unsustainable’ Hybrid Multicloud Sprawl in Australia
2024-07-24 16:28

The hybrid multicloud strategies that many Australian enterprises have adopted over the last decade could be made more complex by new AI applications. The only solutions could be rationalisation...

Google Chrome now asks for passwords to scan protected archives
2024-07-24 16:09

Google Chrome now warns when downloading risky password-protected files and provides improved alerts with more information about potentially malicious downloaded files. The Chrome browser now also sends suspicious files to the company's servers for a deeper scan for users with Enhanced Protection mode enabled in Safe Browsing, providing extra protection while "Reducing user friction."

Google Chrome now warns about risky password-protected archives
2024-07-24 16:09

Google Chrome now warns when downloading risky password-protected files and provides improved alerts with more information about potentially malicious downloaded files. [...]

Summer Olympics: What IT Teams Need to Do Before & During the Event for Their Businesses
2024-07-24 16:03

Remind employees to be wary of fake apps and too-good-to-be-true streaming options on the eve of the Games.

Robot Dog Internet Jammer
2024-07-24 15:25

Supposedly the DHS has these: The robot, called “NEO,” is a modified version of the “Quadruped Unmanned Ground Vehicle” (Q-UGV) sold to law enforcement by a company called Ghost Robotics....