New Magecart Attack Delivered Through Compromised Advertising Supply Chain
by Chaoying Liu and Joseph C. Chen On January 1, we detected a significant increase in activity from one of the web skimmer groups we’ve been tracking. During this time, we found their malicious skimming code (detected by Trend Micro as JS_OBFUS.C.) loaded on 277 e-commerce websites providing ticketing, touring, and flight booking services as […] more…Synchronized security is the right arsenal for modern CSOs: Sophos exec
Securing the endpoints first, or ensuring the network is secure becomes more of a dilemma for CSOs and IT leaders in the digital era. CSO India had an intriguing chat with Joergen Jakobsen, senior vice president and managing director, APJ Sales, Sophos on the company’s big focus to steer its value proposition to the organizations. […] more…6 Ways to Help Kids Steer Clear of Cyberbullies During Summer Break
Wouldn’t it be nice if kids could leave the veiled threats and cutting words behind when the bell rings for summer break? Unfortunately, bullies rarely take a break from intimidating others over the summer and may even step up their game. To date, nothing has humbled me quite like this parenting gig. Once upon a […] more…News in brief: Berners-Lee warns on privacy; drone complaints up sharply; space researchers seek volunteers
Your daily round-up of some of the other stories in the news more…Malware: 5 Tips for Fighting the Malicious Software
Malware—the term seems to be at the center of the news every day, with each headline telling of a new way the cyber threat has inserted itself into our lives. From an entire attack campaign on banks worldwide, to a strain residing within medical devices, to a variant that has learned to self-heal, the list […] more…How Google fought back against a crippling IoT-powered botnet and won
In September, KrebsOnSecurity—arguably the Internet’s most intrepid source of security news—was on the receiving end of some of the biggest distributed denial-of-service attacks ever recorded. The site soon went dark after Akamai said it would no longer provide the site with free protection, and no other DDoS mitigation services came forward to volunteer their services. […] more…Researchers Hijack Jeep’s Steering, Brakes, Acceleration
Charlie Miller and Chris Valasek, the researchers who last year showed that cars can be remotely hijacked, are back with a new demonstration, and this time they managed to take over a vehicle’s acceleration, brakes and steering. read more more…Your car’s computers might soon get malware protection
Modern cars contain tens of specialized computers that control everything from infotainment functions to steering and brakes. The pressing need to protect these computers from hackers will likely open up a new market for car-related software security products. Karamba Security, a start-up based in Ann Arbor, Michigan, is one of the companies that has stepped […] more…Code.org Flaw Exposes Volunteer Email Addresses
Code.org, a non-profit organization that helps students learn computer science, informed users over the weekend that a flaw on its website allowed unauthorized parties to access the email addresses of its volunteers. read more Incoming search termsteercot more…Code.org volunteer emails exposed in information leak
As a result, a Singaporean firm decided to try and poach a few members. more…Cane uses facial recognition to steer the blind to friends and family
Students at Birmingham City University in England have created a cane that recognises familiar faces and vibrates to let its blind owner know that they’re near people they know. Incoming search termsSilong Teernitcom more…Crypto-Ransomware Sightings and Trends for 1Q 2015
It seems that cybercriminals have yet to tire of creating crypto-ransomware malware. Since the start of 2015, we have spotted several variants of crypto-ransomware plague the threat landscape. In January, the Australia-New Zealand region was beset by variants of TorrentLocker. But we soon discovered that TorrentLocker infections were not limited to that region; Turkey, Italy, […] more…Doing more with less: Steering a quantum path to improved internet security
New research may lead to greatly improved security of information transfer over the internet. Physicists have demonstrated the potential for ‘quantum steering’ to be used to enhance data security over long distances, discourage hackers and eavesdroppers and resolve issues of trust with communication devices. more…Malware served through rogue Tor exit node tied to cyberespionage group
A malware program distributed recently through a rogue server on the Tor anonymity network was also used in targeted attacks against European government agencies. The malware has been dubbed OnionDuke by security researchers from antivirus firm F-Secure, who believe it is connected to MiniDuke, a cyberespionage threat of Russian origin that was used to attack […] more…Civilians steer NASA satellite from an old McDonald’s
I hadn’t been aware that, if you ask NASA nicely, you’ll be allowed to take the controls of a satellite floating in outer space. Clearly, I need to get out more, as this is what a group of very interested civilians are doing from their headquarters in a McDonald’s. Let’s be fair, it’s an old […] more…22-year-old "organized crime" cybercrook convicted under racketeering law gets TWENTY years
David Ray Camez was just 17 when he embarked on life as a cyberfraudster, ending up in prison for seven years. But he was subsequently also convicted under racketeering laws, which provide for stiffer penalties. Now he’s been sentenced… more…More information
- How the top social networks compare on privacy — in one handy chart
- 62-year-old man arrested over tweeting as ‘ghost’ of murdered toddler James Bulger
- Hacker Collectibles to Be Auctioned at #HITB2012KUL, Funds Raised for Cancer Patients
- SAP NPM Packages Targeted in Supply Chain Attack
- Resolved: Network Service degradation
- Creepy T-shirts designed to baffle Facebook facial-recognition software
- How to Shed the Security Operations Doldrums
- Microsoft Internet Explorer CVE-2014-2784 Remote Memory Corruption Vulnerability
- Following MITRE’s footsteps in analyzing malware behavior
- HackingTeam mobile, PC spyware for governments spans many countries