Security News

US govt warns that buying fake COVID-19 vaccine cards is a crime
2021-03-30 18:50

US federal agencies have warned today against making or selling fake COVID-19 vaccination record cards as this is breaking the law. Using fake vaccination record cards could also put others at risk, increasing the chance of contracting COVID-19 or infecting others.

Child Unknowingly Tweets From US Nuclear Command's Account
2021-03-30 15:12

Some jokingly said the cryptic tweet, ";l;;gmlxzssaw," was a US nuclear launch code. Now the US Strategic Command, which runs the country's powerful nuclear weapons force, says the enigmatic posting on its Twitter account in fact came from the hands of a precocious kid.

Report: US Gov Executive Order to Mandate Data Breach Disclosure
2021-03-26 16:54

A proposed executive order would set new rules on the disclosure of data breaches that also affect United States government agencies, according to a Reuters news report. The report said the executive order, which could be released as soon as the next week, would require software vendors to notify U.S. government customers of cyber-security breaches that also affect them.

EU, US Make New Attempt for Data Privacy Deal
2021-03-26 16:52

Europe and the United States will use a thaw in ties to strike a pact that would allow for the exchange of private data across the Atlantic, replacing previous agreements struck down by an EU court. Facebook, Google, Microsoft and thousands of other companies want such a deal to keep the internet traffic flowing without facing significant legal jeopardy over European privacy laws.

US Cyber Experts Conducted Operations to Safeguard Election
2021-03-25 17:09

The U.S. Cyber Command conducted more than two dozen operations aimed at preventing interference in last November's presidential election, the general who leads the Pentagon's cyber force said Thursday. He said his command's operations were designed "To get ahead of foreign threats before they interfered with or influenced our elections in 2020.".

Defense of Convicted Cypriot Hacker in US Not Seeking Appeal
2021-03-22 18:28

A lawyer for a Cypriot hacker who has served almost four years behind bars said he will not appeal against a one-year jail sentence in the US for cyber-crimes he committed as a minor. A Georgia court handed down the jail term on Thursday in the trial of Joshua Pelloso Epifaniou, now 22, who was arrested in Cyprus in May 2017 and last year became the first Cypriot national ever extradited to the United States.

US Sentences Russian, North Macedonian in Cyber Fraud Case
2021-03-22 13:20

The United States sentenced a Russian and a North Macedonian on Friday to prison for their roles in a vast cyber crime operation. Sergey Medvedev, 33, of Russia and Marko Leopard, 31, of North Macedonia, were sentenced to ten and five years respectively, according to a Justice Department statement.

China Slams US Plan to Expel Phone Carriers in Tech Clash
2021-03-20 16:53

China's government on Thursday called on Washington to drop efforts to expel three state-owned Chinese phone companies from the United States in a new clash over technology and security. The United States should "Stop the wrong practice of generalizing the concept of national security and politicizing economic issues" and "Stop abusing state power to unreasonably suppress Chinese enterprises," said a ministry spokesman, Zhao Lijian.

FBI warns of BEC attacks increasingly targeting US govt orgs
2021-03-19 14:09

The Federal Bureau of Investigation is warning US private sector companies about an increase in business email compromise attacks targeting state, local, tribal, and territorial government entities. "From 2018 through 2020, the FBI observed increases in business email compromise actors targeting state, local, tribal, and territorial government entities for financial gain due to vulnerability exploitation and transparency requirements," the FBI said.

Swiss security provocateur who leaked Intel secrets indicted by US authorities
2021-03-19 04:59

Readers may remember Kottman pointed out holes in a security skills assessment website run by Deloitte, dropped 20GB of Intel secrets onto the web and shamed the security of DevOps tool SonarQube by releasing third-party code created with the project. Illegally accessing computers belonging to a security device manufacturer located in the Western District of Washington and stealing proprietary data.