Browsing tag

IT security audit

Scotiabank source code and login credentials were hacked. Users should contact the bank to secure their money

A severe incident has been confirmed by IT system audit specialists. Scotiabank has mistakenly leaked some of its internal source code as well as confidential login credentials for its back-end systems. The bank’s security teams have spent the last twelve hours deleting repositories on GitHub that stored sensitive information, which were available to any user […]

After Maryland and Florida, Georgia police suffer ransomware infection

Severe ransomware attacks against public institutions in the United States are becoming very common, IT security audit specialists say. From schools, libraries, and public administration systems, incidents keep happening in cities such as Florida, New York, Louisiana, and more. Recently, U.S. authorities disclosed a ransomware attack on the Georgia State Patrol. Lt. Chris Stallings, head […]

Ransomware attacks five major health companies in the US

Security audit specialists report that at least five U.S. medical services companies have suffered ransomware attacks over the past week. While some of the affected organizations have been operating without their computer systems, others have decided to give in to the demands of hackers and pay the demanded ransom. NEO Urology, a medical services company […]

Critical remote code execution vulnerability in Cisco industrial software

Experts from the IICS web applications security course reported the presence of a severe vulnerability that, if exploited, would allow remote attackers to hijack Cisco’s Industrial Network Director, developed for enterprise deployment. The company announced a patch to correct this flaw yesterday afternoon, noting that no workarounds are known so far, so it is necessary […]

A new critical race condition vulnerability in Docker

According to IT security audits specialists all versions of the Docker software are impacted by a race condition vulnerability that, if exploited, could allow hackers to access the compromised system with root privileges. In the CVE-2018-15664vulnerability report, it is explained that the API endpoints of ‘Docker cp’, a command to copy files between the host […]

New Windows zero-day vulnerabilities revealed for third day in a row

A specialist in IT security audit services known under the pseudonym of SandboxEscaper has just revealed new zero-day vulnerabilities in Windows; this is the third consecutive day that the investigator reveals the discovery of new flaws in the operating system. The investigator published in her GitHub account the code of a proof of concept for […]

Data breach exposes confidential information at IT company HCL

Information security audit specialists reported that HCL, an important IT services company, left exposed online the passwords of its employees, among other data, such as confidential information related to the company clients’ projects. According to reports, an online portal of the company’s human resources area exposed names of newly-entered employees, usernames for the platform, and […]

Group of hackers is arrested in Mexico; they stole nearly $40M USD to local banks

Mexican authorities achieved the arrest of Hector Ortiz, also known as ‘El H-1’, alleged leader of “Bandidos Revolutions Team”, a criminal group dedicated to bank robbery through hacking activities in the state of Guanajuato, Mexico. According to IT security audit specialists, these hackers stole a figure close to 40 million dollars to Mexican banks injecting […]