Browsing tag

cybersecurity

These 17 iOS apps contain malware, uninstall them immediately

A group of ethical hacking experts has discovered a malware variant present in at least 17 apps for Apple, all available in the App Store. The company has started to remove malicious apps from the official store, although it is reported that a considerable number of users would have downloaded at least one of these […]

Amazon Web Services servers and customers affected by a massive DDOS attack for hours

According to digital forensics specialists, Amazon Web Services (AWS), the technology giant’s cloud computing services division, has been the victim of a sustained denial of service (DoS) attack. Apparently, the threat actors kept the attack for more than eight hours. The attack affected the company’s DNS Router 53 service, although many other outages were reported […]

CEOs of companies that sell or misuse personal data will face up to 20 years in prison and 5M USD fines. New law coming

A new measure against misuse of personal information involves severe penalties for executives of any company. According to data protection experts, the US Congress has proposed a new bill known as the “Mind Your Own Business Act”. As set forth in this project, senior executives of any company who engage in erroneous information management practices […]

Medical records of millions of people around the world exposed by insecure software

A group of information security specialists from the security firm WizCase (complete report here) has reported the finding of multiple data leaks from medical websites and software solutions around the world. The compromised information includes prescriptions, diagnoses, Social Security numbers and, in many cases, full names and addresses. All databases were found unsecured, as experts […]

NordVPN servers were hacked; users’ traffic was exposed by the attackers

Virtual private network services (VPN) company NordVPN has revealed a hacking incident that occurred last year. According to web application security experts, in March 2018 a threat actor broke into one of the company’s servers, located in Finland, exposing some data on the browsing habits of its customers. NordVPN states that the server did not […]

Avira Antivirus 2019 software is vulnerable; update as soon as possible

A recent investigation by vulnerability testing specialists at security firm SafeBreach Labs has revealed the presence of a critical vulnerability in the Avira 2019 antivirus tool software. Tracked as CVE-2019-17449, this vulnerability could have been used to evade target system defenses, gain persistence, and perform privilege escalations by loading an arbitrary dynamic link library (DLL) […]

Chinese hackers could install backdoors on Microsoft SQL 11 and 12 servers using a “magic word”

The activities of government-sponsored hacker groups can have disastrous consequences. A group of digital forensics experts from ESET has revealed the existence of a new malware developed by Winnti, a hacking group backed by the Chinese government, with the purpose of gaining persistence in a targeted Microsoft SQL Server system. Identified as skip-2.0, this malware […]

Avast internal networks were hacked. Did attackers install backdoors in CCleaner? Is it secure to use this tool?

Even security companies are exposed to cyberattacks. IT system audit specialists report that security software developer Avast has become victim of an attack on their internal networks. Through a statement, the Czech-based company mentioned that hackers most likely tried to inject malware into the CCleaner tool code, similar to the incident occurred a couple of […]

Hackers stole and leak Demi Lovato’s nudes

A new hacking incident against famous actresses has been revealed. Cybersecurity experts report that singer and actress Demi Lovato has become the victim of a threat actor, an incident that led to the mass posting of some intimate photos. Hackers exposed online some screenshots of the actress’ Instagram and Snapchat accounts; although his face is […]

Free music files on the Internet could contain malware and backdoors

Digital forensics specialists report a new attack method consisting of the use of WAV audio files to hide and deliver backdoors and software for the mining of the Monero cryptocurrency on infected systems. Other variants of this method injected malware by hiding their payloads in JPEG or PNG image files using steganography, a technique widely […]

Amazon’s Kindle tablets and Echo speakers affected by critical WiFi vulnerability

A report by vulnerability testing experts states that a relatively old WiFi vulnerability affects millions of Amazon Echo and Kindle devices from different generations. This flaw, known as a KRACK attack, allows threat actors to deploy Man-in-The-Middle (MiTM) attacks to access a WiFi network with WPA2 protection. The Key Reinstallation Attack (KRACK) vulnerability was first […]