Security News

Of course a Bluetooth-using home COVID test was cracked to fake results
2021-12-22 03:58

Security vendor F-Secure has faked a COVID test result on a Bluetooth-equipped home COVID Test. The firm tested the Ellume COVID-19 Home Test, a device selected specifically because it uses a "Bluetooth connected analyzer for use with an app on your phone."

F-Secure uses flaw in at-home COVID-19 test to fake results
2021-12-21 14:10

Security researchers found a vulnerability in a home test for COVID-19 that a bad actor could use to change test results from positive to negative or vice versa. Here's how the test works: A user downloads an app, answers a few screening questions, watches an informational video and then performs the test.

Pen Test Partners: Anyone could view Gumtree users' GPS location by pressing F12
2021-12-15 15:31

UK online used goods bazaar Gumtree exposed its users' home addresses in the source code of its webpages, and then tried to squirm out of a bug bounty after infosec bods alerted it to the flaw. British company Pen Test Partners spotted the data leakage, which meant anyone could view a Gumtree user's name and location by pressing F12 in their web browser.

How to test if your Linux server is vulnerable to Log4j
2021-12-14 16:24

Here's a single command you can run to test and see if you have any vulnerable packages installed. Are you using it as part of a Java project, is it rolled into a container, did you install it with your distribution package manager, and which log4j packages did you install? Or did you install it from source? Because of this, you might not even know if your server is vulnerable.

Eurostar tests facial recognition system on London train station
2021-12-06 19:25

Eurostar is testing a new biometric facial recognition technology on passengers traveling from London's St Pancras International station to continental Europe. The system will involve two facial scans, one at the ticket gate to verify the ticket check and one at the UK Exit Checkpoint, to confirm that the passport information is valid.

Test your CCSP knowledge with interactive flash cards
2021-11-09 03:30

The² Certified Cloud Security Professional stands out as the industry's premier cloud security credential and broadens your operational knowledge beyond vendor-specific platforms, differentiating you as a global leader in cloud security architecture, data security and infrastructure. Wondering if you're ready for the CCSP exam? Find out with the Official² CCSP Flash Cards, an interactive self-study tool that tests knowledge across all six CCSP domains.

Before and After a Pen Test: Steps to Get Through It
2021-10-21 10:52

While it is good with a pen test to test against your production infrastructure to ensure all potential cybersecurity vulnerabilities are found, it is also good to establish boundaries. The company carrying out the pen test will generally gather information needed for the pen test.

Microsoft tests smarter delivery for Windows 11 update improvements
2021-10-15 12:00

Microsoft is testing a new method to deliver Windows update improvements starting with Insiders in the Dev Channel running Windows 11 Insider Preview Build 22478. The new feature, dubbed Update Stack Package, will deliver improvements to the update experience outside of major OS updates before monthly or feature Windows updates.

Cheating on Tests
2021-10-04 14:40

Interesting story of test-takers in India using Bluetooth-connected flip-flops to communicate with accomplices while taking a test. What’s interesting is how this cheating was discovered. It’s not...

Google tests if 'Chrome/100.0' user agent breaks websites
2021-09-23 13:30

Google is testing whether changing the Chrome user agent to three-digit 'Chrome/100' will cause loss of functionality on websites that are expecting a two digit version number. A user agent is a string sent by a web browser to a website to let the site know what browser the visitor is using, its version, and integrated technology.