Browsing tag

cybersecurity

20-Year-Old Man Arrested For Carrying Out Germany’s Biggest Data Leak

German federal police have arrested a 20-year-old local student for stealing and publishing a massive trove of personal data of hundreds of politicians, journalists and other public figures last month. The young man, whose identity has not been revealed by the police, was arrested after police raided his parent’s house in west-central German State of […]

Zerodium Offers to Buy Zero-Day Exploits at Higher Prices Than Ever

Well, there’s some good news for hackers and vulnerability hunters, though terrible news for tech manufacturers! Exploit vendor Zerodium is now willing to offer significantly higher payouts for full, working zero-day exploits that allow stealing of data from WhatsApp, iMessage and other online chat applications. Zerodium—a startup by the infamous French-based company Vupen that buys […]

NSA to release its GHIDRA reverse engineering tool for free

The United States’ National Security Agency (NSA) is planning to release its internally developed reverse engineering tool for free at the upcoming RSA security conference 2019 that will be held in March in San Francisco. The existence of the framework, dubbed GHIDRA, was first publicly revealed by WikiLeaks in CIA Vault 7 leaks, but the […]

Town of Salem Data Breach Exposes 7.6 Million Gamers’ Accounts

A massive data breach at the popular online role-playing game ‘Town of Salem’ has reportedly impacted more than 7.6 million players, the game owner BlankMediaGames (BMG) confirmed Wednesday on its online forum. With the user base of more than 8 million players, Town of Salem is a browser-based game that enables gamers (which range from […]

Hackers Leak Personal Data from Hundreds of German Politicians On Twitter

Germany has been hit with the biggest hack in its history. A group of unknown hackers has leaked highly-sensitive personal data from more than 100 German politicians, including German Chancellor Angela Merkel, Brandenburg’s prime minister Dietmar Woidke, along with some German artists, journalists, and YouTube celebrities. The leaked data that was published on a Twitter […]

Adobe Issues Emergency Patches for Two Critical Flaws in Acrobat and Reader

I hope you had biggest, happiest and craziest New Year celebration, but now it’s time to come back at work and immediately update your systems to patch new security flaws that could exploit your computer just by opening a PDF file. Adobe has issued an out-of-band security update to patch two critical vulnerabilities in the […]

Thousands of Google Chromecast Devices Hijacked to Promote PewDiePie

A group of hackers has hijacked tens of thousands of Google’s Chromecast streaming dongles, Google Home smart speakers and smart TVs with built-in Chromecast technology in recent weeks by exploiting a bug that’s allegedly been ignored by Google for almost five years. The attackers, who go by Twitter handles @HackerGiraffe and @j3ws3r, managed to hijack […]

Google Partially Patches Flaw in Chrome for Android 3 Years After Disclosure

Google has finally patched a privacy vulnerability in its Chrome web browser for Android that exposes users’ device model and firmware version, eventually enabling remote attackers to identify unpatched devices and exploit known vulnerabilities. The vulnerability, which has not yet given any CVE number, is an information disclosure bug that resides in the way the […]

Hacker group launches cyberattack campaign against lawyer firms

Dark Overlord hackers have pledged to leak information related to the 9/11 terrorist attacks in New York As the world prepared to receive the New Year, the hacker group known as The Dark Overlord made a statement that took the whole cybersecurity community by surprise because, according to specialists from the International Institute of Cyber […]

Cyberattacks against newspapers continue

Various American media were attacked with malware, delaying the distribution of their newspapers Cybersecurity and ethical hacking specialists from the International Institute of Cyber Security report that a malware-based attack, originating outside the United States, affected some of the country’s major printed media, delaying the distribution of the physical samples of some journals. The first […]

The Importance of Security-Aware App Development

The dependence of many companies with externally-developed software grew to new leaps and bounds for the last decades. Enterprises would like to focus with their core business, and less with developing an in-house team that will create, maintain and decommission a critical application or process. These so-called external 3rd party apps, whether their source is […]

Records of thousands of children and teenagers for sale in dark web forums

Cybercriminals obtain these records by compromising the systems of hospitals or academic institutions According to cybersecurity experts from the International Institute of Cyber Security, several groups of cybercriminals are focused on stealing personal records of thousands of children, information stored by schools or children medical attention institutions, for the purpose of selling them in some […]

Data breach affects over 500k students and employees

Over 500k students and workers have been affected by this incident Personal information belonging to more than 500k employees and students from the academic institutions of San Diego, California, could have been stolen by malicious actors, as reported by cybersecurity experts from the International Institute of Cyber Security. Through a statement, the San Diego School […]

IoT malware grows over 200% during 2018

Several malware variants showed significant growth this year According to cybersecurity specialists from the International Institute of Cyber Security, the amount of malicious software that affects Internet of Things (IoT) devices grew 72% in total this year. As for the malware in general, its presence increased by 200% with respect to the amount registered during […]

FBI seizes multiple websites offering DDoS attacks for hire

The agency will file charges against the individuals involved Experts in ethical hacking and cybersecurity from the International Institute of Cyber Security report that the Federal Bureau of Investigation (FBI) has seized the domains of 15 websites offering services to launch distributed denial of service (DDoS) attacks; in addition, the agency has accused three people […]

US Indicts Two Chinese Government Hackers Over Global Hacking Campaign

The US Department of Justice on Thursday charged two Chinese hackers associated with the Chinese government for hacking numerous companies and government agencies in a dozen countries. The Chinese nationals, Zhu Hua (known online as Afwar, CVNX, Alayos and Godkiller) and Zhang Shilong (known online as Baobeilong, Zhang Jianguo and Atreexp), are believed to be […]

FBI Seizes 15 DDoS-For-Hire Websites, 3 Operators Charged

The FBI just saved the Christmas. The U.S. Justice Department announced earlier today that the FBI has seized domains of 15 “DDoS-for-hire” websites and charged three individuals running some of these services. DDoS-for-hire, or “Booter” or “Stresser,” services rent out access to a network of infected devices, which then can be used by anyone, even […]

Hacker Discloses New Unpatched Windows Zero-Day Exploit On Twitter

A security researcher with Twitter alias SandboxEscaper today released proof-of-concept (PoC) exploit for a new zero-day vulnerability affecting Microsoft’s Windows operating system. SandboxEscaper is the same researcher who previously publicly dropped exploits for two Windows zero-day vulnerabilities, leaving all Windows users vulnerable to the hackers until Microsoft patched them. The newly disclosed unpatched Windows zero-day […]

Microsoft Issues Emergency Patch For Under-Attack IE Zero Day

Microsoft today issued an out-of-band security update to patch a critical zero-day vulnerability in Internet Explorer (IE) Web browser that attackers are already exploiting in the wild to hack into Windows computers. Discovered by security researcher Clement Lecigne of Google’s Threat Analysis Group, the vulnerability, tracked as CVE-2018-8653, is a remote code execution (RCE) flaw […]