How Stack Overflow was hacked?
This week Stack Overflow developers released a security report related to the incident that compromised their systems in 2019. According to this report, the threat actor pretended to be oneRead More →
This week Stack Overflow developers released a security report related to the incident that compromised their systems in 2019. According to this report, the threat actor pretended to be oneRead More →
In a recent report, the U.S. Department of Justice (DOJ) publicly disclosed the shutdown of the Netwalker ransomware operation, as well as bringing charges against Canadian citizen Sebastien Vachon-Desjardins ofRead More →
A report from the U.S. Department of Justice (DOJ) reveals that Jerry Ji Guo has been convicted of his participation in a cryptocurrency fraud scheme. According to Craig D. Fair,Read More →
The specialized team FireEye Email Security has published a report on the detection of multiple phishing campaigns in which operators use source code obfuscation of compromised or malicious domains. ThreatRead More →
Cybersecurity specialists reported the finding of a critical vulnerability in WeChat, the messaging service, phone calls and social media platform developed by the China-based technology company Tencent. According to theRead More →
Sudo maintainers announced a fix for a vulnerability that could have allowed local users to obtain root privileges on Unix-like systems without any authentication. Sudo is an UNIX program withRead More →
The Norwegian authorities have notified Grindr LLC of its intention to impose a fine of approximately €10 million on account of the multiple infringements of the European Union’s General DataRead More →
Because of an analysis error, Google Chrome’s Secure Browsing Service has labeled the popular Network Mapper (Nmap) project as a potential “security threat”. This is another example of misidentification ofRead More →
Over the last several years, QA test automation has become a trend in software development. Not surprisingly, as with its help, one can enhance testing processes starting from a simpleRead More →
Cybersecurity specialists reported the finding of at least four vulnerabilities affecting Honeywell OPC UA Tunneller. According to the report, successful exploitation of these flaws would allow malicious hackers to accessRead More →
A recent security report details the detection of a new malware variant for Android devices deployed automatically via instant messaging platforms, mainly WhatsApp. According to Lukas Stefanko, author of theRead More →
Information security specialists reported that a group of threat actors has released an exploit to abuse a critical security flaw in SAP enterprise software. This exploit is capable of compromisingRead More →
SonicWall security team has issued a security alert related to a hacking group exploiting a zero-day flaw in its virtual private network (VPN) solutions that could allow the deployment ofRead More →
Alphabet Inc., through its cybersecurity subsidiary Jigsaw, announced the launch of Outline, a project that allows any user to create and run their own virtual private network (VPN) server toRead More →
Last Thursday the Goods and Service Tax Network (GSTN) posted a tweet mentioning that its security team detected “some activity in the cyberspace by unscrupulous elements”. According to the post,Read More →
During the last weeks the cybersecurity community has identified a new data breach outbreak related to the leaker known as ShinyHunters, who has been attacking multiple organizations worldwide. This time,Read More →
While it is obvious to mention that the threat actors behind the attack on SolarWinds have advanced knowledge, the cybersecurity community had not been able to specifically define its methodsRead More →
After a few convulsed weeks resulting from a highly controversial electoral process, Joe Biden has finally begun to serve as president of the United States and, although there are noRead More →
Relevant cybercriminal groups have been performing massive online scans to detect servers affected by a critical SAP vulnerability for which a fully functional exploit already exists. The flaw was trackedRead More →
Cybersecurity experts reported the detection of a sophisticated malvertising campaign. Dubbed “LuckyBoy”, the operators rely on strong obfuscation and cloaking to avoid detection by security solutions in iOS, Android andRead More →