Security News

Cisco Patches Critical Flaws in IP Phones, UCS Director
2020-04-17 04:11

Cisco this week released security patches to address numerous vulnerabilities across its products, including critical severity flaws that impact IP Phones and UCS Director. The critical vulnerability patched in IP Phones impacts the web server and could allow a remote, unauthenticated attacker to execute code with root privileges.

Google and Apple Plan to Turn Phones into COVID-19 Contact-Tracking Devices
2020-04-17 02:46

Tech giants Apple and Google have joined forces to develop an interoperable contact-tracing tool that will help individuals determine if they have come in contact with someone infected with COVID-19. Zero Use of Location Data Unlike existing apps developed by different countries that use real-time location tracking to enforce quarantine rules, the proposed system doesn't involve tracking user locations or other identifying data.

Cisco IP Phone Harbors Critical RCE Flaw
2020-04-16 18:49

Cisco is warning of a critical flaw in the web server of its IP phones. Cisco issued patches in a Wednesday advisory for the flaw, which affects various versions of its Cisco IP phones for small- to medium-sized businesses.

COVID-19: How cell phones are helping to track future cases
2020-04-16 15:12

Why cell phones can hold the key to tracking future cases of COVID-19 with artificial intelligence. TechRepublic's Karen Roby talked with Ari Trachtenberg, a professor of electrical and computer engineering at Boston University, about the work researchers are doing to help in the fight against COVID-19.

COVID-19: How cell phones are helping to track future cases
2020-04-16 14:55

Why cell phones can hold the key to tracking future cases of COVID-19 with artificial intelligence.

Using Cisco IP phones? Fix these critical vulnerabilities
2020-04-16 10:10

Among the vulnerabilities fixed are critical flaws affecting a variety of Cisco IP phones and Cisco UCS Director and Cisco UCS Director Express for Big Data, its unified infrastructure management solutions for data center operations. Jacob Baines, a research engineer with Tenable, unearthed two critical flaws affecting the Cisco Wireless IP Phone 8821.

Fingerprint-Exposing Flaw in OnePlus 7 Phone Highlights TEE Issues
2020-04-14 13:03

OnePlus 7 Pro devices made by China-based smartphone manufacturer OnePlus Technology were affected by a vulnerability that could have been exploited to obtain users' fingerprints. Synopsys will release technical details at a later date, but a brief advisory made public on Tuesday reveals that the vulnerability could have been exploited by a malicious Android application with root privileges on the targeted OnePlus 7 Pro phone to obtain bitmap fingerprint images from the device's trusted execution environment, an area designed to keep sensitive data and code isolated and protected against unauthorized access.

Phone carriers must authenticate calls to fight robocalls, says FCC
2020-04-02 11:44

Rather, they enable carriers to authenticate calls, after which consumers will be able to tell if a number is likely to be a robocall. The FCC says STIR/SHAKEN should help to protect consumers against malicious caller ID spoofing, often used in robocall scams to trick us into answering our phones so telemarketers and/or scammers can bleat at us.

Has Houseparty really hacked your phone and stolen your bank details?
2020-03-30 20:12

If anyone is using that house party app DELETE IT My friends email account been hacked into by it And managed to get bank account details too and has hacked that. To be honest, we can't tell you that the Houseparty app is bug-free, because we haven't decompiled or analysed it, and even if we had, working out that an app is totally free of vulnerabilities is a close-to-impossible exercise, as are many tasks where you are expected to prove a negative.

Poured your info out on a call to 118 118 Money? Bad luck. Credit provider 'fesses up that hacker nabbed customer service phone recordings
2020-03-30 13:14

The digital burglary at 118 118 Money exposed recordings of customer service calls that included a raft of personal information although thankfully not payment data. As revealed last week, the parent company of the personal loans and credit card provider - the sister business of the better-known UK directory enquiries service - pulled its website offline after spotting an unauthorised intruder.