Security News

Security Researcher Sued for Disproving Government Statements
2024-09-04 11:03

This story seems straightforward. A city is the victim of a ransomware attack. They repeatedly lie to the media about the severity of the breach. A security researcher repeatedly proves their...

Vulnerability allows Yubico security keys to be cloned
2024-09-04 10:22

Researchers have unearthed a cryptographic vulnerability in popular Yubico (FIDO) hardware security keys and modules that may allow attackers to clone the devices. But the news is not as...

Samba 4.21 comes with upgraded security features
2024-09-04 08:55

Samba is the standard suite of programs that enables seamless interoperability between Linux/Unix and Windows systems. Version 4.21 has been officially released. Hardening In previous versions of...

Transport for London is dealing with a cyber security incident
2024-09-03 09:34

Transport for London (TfL) has sent out notifications to customers on Sunday evening saying that they “are currently dealing with an ongoing cyber security incident.” The government body that...

Managing low-code/no-code security risks
2024-09-03 04:30

Continuous threat exposure management (CTEM) – a concept introduced by Gartner – monitors cybersecurity threats continuously rather than intermittently. This five-stage framework (scoping,...

Transport for London discloses ongoing “cyber security incident”
2024-09-02 18:20

Transport for London (TfL), the city's transport authority, is investigating an ongoing cyberattack that has yet to impact its services. [...]

Verkada to pay $2.95M for security failures leading to breaches
2024-09-02 16:06

The Federal Trade Commission (FTC) proposes a $2.95 million penalty on security camera vendor Verkada for multiple security failures that enabled hackers to access live video feeds from 150,000...

SQL Injection Attack on Airport Security
2024-09-02 11:07

Interesting vulnerability: …a special lane at airport security called Known Crewmember (KCM). KCM is a TSA program that allows pilots and flight attendants to bypass security screening, even when...

Docker-OSX image used for security research hit by Apple DMCA takedown
2024-08-31 14:16

The popular Docker-OSX project has been removed from Docker Hub after Apple filed a DMCA (Digital Millennium Copyright Act) takedown request, alleging that it violated its copyright. [...]

Researchers find SQL injection to bypass airport TSA security checks
2024-08-30 19:02

Security researchers have found a vulnerability in a key air transport security system that allowed unauthorized individuals to potentially bypass airport security screenings and gain access to...