Category: News

BlackMatter Strikes Iowa Farmers Cooperative, Demands $5.9M Ransom

Critical infrastructure appears to be targeted in latest ransomware attack, diminishing the hopes of governments to curb such attacks.

Amazon Driver-Surveillance Cameras Roll Out, Sparking Debate

Drivers bristle under constant surveillance by artificial-intelligence (AI) tech, but Amazon says it works and boosts safety.

Europol Breaks Open Extensive Mafia Cybercrime Ring

Organized crime ring thrived on violence, intimidation and $12 million in online fraud profits.

Payment API Bungling Exposes Millions of Users’ Payment Data

Misconfigured APIs make any app risky, but when you’re talking about financial apps, you’re talking about handing ne’er-do-wells the power to turn your pockets inside-out.

Bring Your APIs Out of the Shadows to Protect Your Business

APIs are immensely more complex to secure. Shadow APIs—those unknown or forgotten API endpoints that escape the attention and protection of IT¬—present a real risk to your business. Learn how…
Read more

Porn Problem: Adult Ads Persist on US Gov’t, Military Sites

Cities, states, federal and military agencies should patch the Laserfiche CMS post-haste, said the security researcher whose jaw dropped at 50 sites hosting porn and Viagra spam.

Ditch the Alert Cannon: Modernizing IDS is a Security Must-Do

Jeff Costlow, CISO at ExtraHop, makes the case for implementing next-gen intrusion-detection systems (NG-IDS) and retiring those noisy 90s compliance platforms.

AT&T Phone-Unlocking Malware Ring Costs Carrier $200M

With the help of malicious insiders, a fraudster was able to install malware and remotely divorce iPhones and other handsets from the carrier’s U.S. network — all the way from…
Read more

Microsoft MSHTML Flaw Exploited by Ryuk Ransomware Gang

Microsoft and RiskIQ researchers have identified several campaigns using the recently patched zero-day, reiterating a call for organizations to update affected systems.

CISA, FBI: State-Backed APTs May Be Exploiting Critical Zoho Bug

The newly identified bug in a Zoho single sign-on and password management tool has been under active attack since early August.