Security News

FBI warns of BEC attacks increasingly targeting US govt orgs
2021-03-19 14:09

The Federal Bureau of Investigation is warning US private sector companies about an increase in business email compromise attacks targeting state, local, tribal, and territorial government entities. "From 2018 through 2020, the FBI observed increases in business email compromise actors targeting state, local, tribal, and territorial government entities for financial gain due to vulnerability exploitation and transparency requirements," the FBI said.

Swiss security provocateur who leaked Intel secrets indicted by US authorities
2021-03-19 04:59

Readers may remember Kottman pointed out holes in a security skills assessment website run by Deloitte, dropped 20GB of Intel secrets onto the web and shamed the security of DevOps tool SonarQube by releasing third-party code created with the project. Illegally accessing computers belonging to a security device manufacturer located in the Western District of Washington and stealing proprietary data.

US Charges Swiss ‘Hacktivist’ for Data Theft and Leaks
2021-03-19 03:09

The Justice Department has charged a Swiss hacker with computer intrusion and identity theft, just over a week after the hacker took credit for helping to break into the online systems of a U.S. security-camera startup. Swiss authorities said they had raided Kottmann's home in Lucerne late last week at the request of U.S. authorities.

Entrust and SYNNEX offer Entrust nShield HSMs and cybersececurity solutions across the US and Canada
2021-03-19 00:45

Entrust announced a master distributor agreement with SYNNEX to offer its comprehensive range of Entrust nShield hardware security modules and cybersecurity solutions to customers across the United States and Canada. This North America distribution agreement with SYNNEX provides its resellers with Entrust nShield HSMs to protect customer data and secure emerging technologies such as cloud, IoT, blockchain, and digital payments.

How cybercriminals are targeting US taxpayers as tax season approaches
2021-03-18 16:45

The latest scams use phishing emails to deliver remote access trojans to control a victim's computer and steal sensitive data, says Cybereason. With the usual April 15 deadline approaching, a report released Thursday by security provider Cybereason reveals the latest scams against taxpayers and offers advice on how to avoid them.

US taxpayers targeted with RAT malware in ongoing phishing attacks
2021-03-18 15:58

US taxpayers are being targeted by phishing attacks attempting to take over their computers using malware and steal sensitive personal and financial information. "The potential for damage is serious and the malware allows threat actors to gain full control over a victim's machine and steal sensitive information from users or their employers."

McAfee, the company, says Chinese attackers targeted Asian and US telcos
2021-03-18 06:58

Security vendor McAfee has detected an attack it believes was likely aimed at telecoms companies in the hope of stealing information related to 5G networks. McAfee has named the attack "Operation Diànxùn" and says it resembles past attacks perpetrated by groups named RedDelta and Mustang Panda.

US Teen 'Mastermind' in Epic Twitter Hack Sentenced to Prison
2021-03-17 13:23

A Florida teenager accused of masterminding a Twitter hack of celebrity accounts in a crypto currency scheme has been sentenced to three years in juvenile prison in a plea agreement, officials said. State prosecutors announced the deal Tuesday in the case of Graham Ivan Clark, 18, described as the mastermind of the July 2020 "Bit-Con" worldwide hack of Twitter accounts of Elon Musk, Bill Gates, Barack Obama, Joe Biden and others.

FBI Warns of PYSA Ransomware Attacks on Education Institutions in US, UK
2021-03-17 04:30

An alert issued on Tuesday by the FBI warns about an increase in PYSA ransomware attacks on education institutions in the United States and the United Kingdom. According to the FBI, PYSA attacks have been launched by "Unidentified cyber actors" against higher education, K-12 schools and seminaries in a dozen U.S. states, as well as the U.K. The threat actors behind PYSA attacks are known to encrypt data on compromised systems, but they also steal information from victims and threaten to leak it in an effort to increase their chances of getting paid.

US Office of National Intelligence says Russia, Iran tried to mess with 2020 elections, China sat it out
2021-03-17 02:57

The USA's Office of National Intelligence today released its previously classified assessment of "Foreign Threats to the 2020 US Federal Elections" and found "Some successful compromises of state and local government networks prior to Election Day-as well as a higher volume of unsuccessful attempts". It's described as the intelligence community's collective assessment of attempts to disrupt the 2020 election and to contain "Analytic judgments identical to those in the classified version" but without "Full supporting information" or information on "Specific intelligence reports, sources , or methods."